Security Awareness Training Blog

Security Awareness Training Blog

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

New York DFS Cybersecurity Regulation FAQ And Security Awareness Training

In New York, a new cybersecurity regulatory regime will go into effect March 1st 2017. The proposed cybersecurity regulation, known as 23 NYCRR 500, has grabbed the attention of companies ...
Continue Reading

Bad News: Your Antivirus Detection Rates Have Dramatically Declined In 12 Months

We all had the nagging suspicion that antivirus is not cutting it anymore, but the following numbers confirm your intuition. I have not seen more powerful ammo for IT security budget to ...
Continue Reading

Download This Hacked App And Die - Literally.

In the WSJ of Dec 22, 2016 there is an article that hides the real headline. It talks about the research done by CrowdStrike which shows that the DNC hack was done by a hacker group known ...
Continue Reading

KnowBe4 Selected as SC Media 2017 Professional Award Finalist

KnowBe4, the world's most popular platform for new-school security awareness training was named a finalist in the SC Awards 2017 for exemplary professional leadership in cybersecurity. ...
Continue Reading

KnowBe4 Ranked Number 50 Fastest Growing Company in North America on Deloitte’s 2016 Technology Fast 500™

Some very good news! Tampa Bay, FL — November 16, 2016 — KnowBe4, provider of the world’s most popular platform for security awareness training and simulated phishing attacks, today ...
Continue Reading

Yahoo Hack Triggers 'Material Adverse Change' Clause

The Wall Street Journal reported that Verizon's lawyers are looking at using the "material adverse clause' to renegotiate the terms of the $4.8 billion deal they struck on July. Verizon’s ...
Continue Reading

October Is The Time To Kill Old-School Security Awareness Training

CSO had an excellent article that states the case that you need to get rid of old-school awareness training which you do for compliance reasons only. Their photo illustration was funny as ...
Continue Reading

Funny Phishing Story: Your Online Order Receipt

A customer sent us this: Hi, I wanted to share with you a funny story…. My boss calls me into her office, very serious like. She sits me down and asks “Did you use the company credit card ...
Continue Reading

KnowBe4 Debuts at #139 on Inc 500 List of America’s Fastest Growing Private Companies

I have some exciting news: KnowBe4 made it in the Inc 500! To start off with, a very big thank you to all our customers who understood the need to manage the ongoing problem of social ...
Continue Reading

Cyber Attack Maps...Accurate Or Just Eye Candy?

Here are the top 5 Cyber Attack Maps found in Google. They all seem to show the cyber attacks in a slightly different perspective. This is the Norse attack map as an example:
Continue Reading

The fine art of not being stupid - security awareness training

Brian Honan wrote a GREAT post at HelpnetSecurity. This is a cross-post of his excellent article, nothing changed, all the internal links to helpnet security were left in place. "There is ...
Continue Reading

"What methodologies does KnowBe4 use in developing our training?"

Someone interested in using our integrated platform for training and phishing asked us: ""What methodologies does KnowBe4 use in developing our training?" We use the ARCS Model. ARCS is ...
Continue Reading

[ALERT] 2016 Is A Ransomware Horror Show. Here's The Roundup Of 32 New Strains!

If you've been in the IT trenches over the past year, you've probably noticed the announcements of new strains of ransomware are accelerating. The research team at Proofpoint just ...
Continue Reading

Users Really Do Plug in USB Drives They Find

Been suspecting that your users are plugging in any USB stick they find, to see what is on it? Well, you are right, they actually do that. Fresh scientific research by Google, and the ...
Continue Reading

Tampa Bay Business Owner Affected By Ransomware

Ransomware continues to be a successfull business for the cybercriminals of the world. It can easily get past even the best anti-virus software through a user just clicking once on ...
Continue Reading

Deadly Dridex Cybercrime Gang Has Just Moved Into Ransomware

One thing that is driving mainstream recognition of ransomware is the move by the Dridex banking Trojan gang into ransomware with their Locky strain. They have taken over from CryptoWall, ...
Continue Reading

Hackers Spoil Their $1 Billion Cyberheist With a Typo

It helps to know how to spell when you try to rob a billion from a dirt poor country. A spelling mistake thwarted hackers in stealing a $1 billion dollars from the Bangladesh Bank, and ...
Continue Reading

Snapchat Employee Fell For W-2 Phishing Scam

A Snapchat employee fell for a W-2 phishing scam last week, compromising the identity information of other existing and ex-employees. The FBI calls this a Business Email Compromise, also ...
Continue Reading

The KnowBe4 Phish Alert Button Versus JSocket RAT

Since releasing its free PhishAlert button in November 2015, KnowBe4 has been receiving a steady stream of emails flagged by users as potential phishing attacks. The email threats ...
Continue Reading

When do end-users click on phishing links?

We had a data scientist take a look at more than 4 years of aggregated clicking data and he came up with some interesting results, expressed in graphs. Here are some of the highlights:
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews