Security Awareness Training Blog

Security Awareness Training Blog

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

Security Rule-Breaking from Ignorance, Convenience, Curiosity

Ignorance of security policies and security threats is one of the primary reasons why employees break cybersecurity rules, says Ericka Chickowski at Dark Reading. A study conducted by ...
Continue Reading

Everyone’s Cyber-Worried; No One’s Cyber-Prepared

New data from the 2018 Chubb Cyber Risk Survey shows people and companies have a false sense of cybersecurity and aren’t really doing much about it.
Continue Reading

Three Out of Ten People Would Fall for Impersonation Scams

Phony police calls in the US have been telling people they need to pay a fine for missing jury duty. In the UK the scams take a different form: the bogus police are asking for the ...
Continue Reading

Your Users Need to be Smarter than the Scammers

Fraudsters have all but eliminated indicators used to detect fake identities on line, reports Socure, a predictive analytics provider. The difference between authentic and fake identities ...
Continue Reading

Add Wi-Fi Proximity to Your Cyberattack Concern List

The latest attack from the Russian GRU involves both traditional spear phishing and close access attacks in an attempt to thwart an investigation of the nerve agent attack in the UK.
Continue Reading

Users Sharing Passwords Put Organizations at Higher Risk

Cybercriminals thrive on misuse of credentials, and users sharing them only makes the criminal’s job easier. The latest report from LastPass shows password sharing is rampant.
Continue Reading

Don’t Be Scammed Twice: Check Your Cyber Insurance!

You’re already worried about the possibility of becoming a victim of a cyber scam. Be sure you clearly understand what your cyber insurance coverage is, or you may feel like you got taken ...
Continue Reading

KnowBe4 Introduces New Features: Virtual Risk Officer and Advanced Reporting

We are excited to announce the availability of two new features, Virtual Risk Officer and Advanced Reporting.
Continue Reading

[InfoGraphic] 20 Ways to Block Mobile Attacks

To start your National Cyber Security Awareness Month (NCSAM) here is a goodie for your users to kick things off.
Continue Reading

The Cybercrime Economy Makes It Impossible to Stop

The operation run by botnet author Peter Levashov demonstrates how easy it is for would-be criminals to get into the business.
Continue Reading

The Human Element is Essential to Safe Social Networking

This is common wisdom, but it bears repeating, because common wisdom is easily overlooked. People are often called an organization's greatest asset. They're also its greatest ...
Continue Reading

The Lowly USB Drive Remains A Critical Cyberthreat

Curtin Franklin at Darkreading correctly observed: "USB thumb drives may be used less frequently than before, but they are still commonly used as infection vectors for a wide variety of ...
Continue Reading

Adwind Trojan Uses Phishing To Circumvent Antivirus And Infect Workstations

Charlie Osborne reported at ZDNet that Adwind, a Remote Access Trojan (RAT) previously connected to attacks against industries worldwide, is back with a new toolkit designed to trick ...
Continue Reading

Microsoft Office Macros Remain Top Choice for Malware Delivery

Microsoft Office documents containing malicious macros accounted for 45 percent of malware loaders in August 2018, according to a blog post by Cofense. These macros were used to deliver a ...
Continue Reading

Your Users May Be Too Embarrassed to Report Email Scams

New research shows 25% of users falling victim to impersonation fraud were so ashamed they chose not to report it. Even worse, many don’t know how to spot the scam.
Continue Reading

Want to Know How to Break into a Henhouse? Hire a Fox

Red teaming starts with research. So does social engineering. Red teaming is the practice of thinking and acting like an attacker to test an organization’s defenses, according to security ...
Continue Reading

What is the secret to keeping your network safe? Training and automation

Just in time before October's Cybersecurity Awareness Month, DomainTools released its second annual Cybersecurity Report Card in which infosec pros were surveyed about their security ...
Continue Reading

When Russian InfoSec White Hats Go Black

This latest story about one specific cybercriminal group shows how even the most trusted of white-hats can give in to the lure of financial profit, following Evgeniy Bogachev who retired ...
Continue Reading

You're Invited To Participate In The Inaugural 2018 Security Awareness Training Deployment Trends and Usage Survey.

KnowBe4 is running its Inaugural 2018 Security Awareness Training Deployment Trends and Usage Survey.
Continue Reading

Campaign Email Security "as Bad as 2016"

The founder of Tech Solidarity, a not-for-profit interested in helping the campaigns of progressive Democrats, has been talking to those campaigns about their email security. He's found ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews