Human Risk Management Blog

Security Awareness Training

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

KnowBe4 and Kevin Mitnick Featured in USA Today Cybersecurity Supplement

We recently participated in USA Today's “Cyber Security” campaign that aims to encourage readers to recognize the importance of cyber security in their personal, financial and business ...

Apple's OS X Security Honeymoon Is Over

Unfortunately, bad guys are business people too. Their time is money, and they follow market leaders. By now, Apple's market share of desktop computers is close to 17 percent. OS X, ...

Healthcare pros do not get enough security awareness training

Healthcare pros surprisingly get very little security awareness training. Only 38 percent of these employees get security training at least twice a year -- 49 percent get training once a ...

Postal employees fall to internal phishing sting

Aaron Boyd wrote: "Determined not to fall victim to another network breach, the U.S. Postal Service is phishing its own employees, testing their ability to recognize a scam before it's ...

Near-flawless Social Engineering attack spoiled by single flaw

Steve Ragan at CSO has a great story about a CEO Fraud social engineering attack that was caught just in time because the employees were given effective security awareness training. This ...

Fixing the #1 Problem in Computer Security: A Data-Driven Defense

This is a great whitepaper you can download for free at Microsoft written by IT Security Guru Roger Grimes. Here is the Executive Summary: "Many companies do not appropriately align ...

Report: Phishing costs average organization $3.7 million per year

If you extrapolate the total annual cost of phishing for the average organization it comes to more than $3.7 million. You could shave that down by $1.8 million though, with the right ...

Breaking News: Got Hacked? The FTC Can Now Sue You

For organizations that get hacked like Anthem, Target and recently Ashley Madison, the problems are only starting. Apart from towering legal fees and a damaged reputation, now an appeals ...

Pentagon Top Brass Spear-phished

The Pentagon divulged that its computer networks were penetrated by suspected Russian hackers using spear-phishing. The hackers got into their unclassified email network used by the Joint ...

Phish or Be Phished? The Choice is Yours

By Guest Blogger Brad Mathis, Senior Consultant, Information Security It is mid-2015. By now, we have all seen incoming emails claiming we have been bequeathed a huge sum of money from a ...

You Asked For Training Campaigns And We Built It For You

By far the most requested feature in the KnowBe4 console was Training Campaigns. We're excited to tell you they are here now, in version 5.2 of your console. When it comes to rolling out ...

Blackhat 2015 Survey: End-User Wins Easily As IT's Big Worry

According to the 2015 Black Hat Attendee Survey, nearly three quarters (73 percent) of top security professionals think it likely that their organizations will be hit with a major data ...

Spear Phishing Attack Results In $5.3 Million Bitcoin Cyberheist

"Newly leaked, confidential documents have revealed details into a cyberattack aimed at Bitstamp, a company that fundamentally deals as a cryptocurrency trader, according to a report in ...

What KnowBe4 Customers Say About Us July 3, 105

Hi Stu, "We're happy with the product. Getting good feedback from users who've gone through the programme and my management is highly impressed with the quality of the information given. ...

Scam Of The Week: Payment By Facebook Friend

As of last Tuesday, Facebook has switched on person-to-person (P2P) payments for users in the US to "instant-message" money to their friends, using the debit cards connected to their bank ...

Confidence In Antivirus Falls To All-time Low

Bromium is a company with a new antivirus mousetrap, so it will try to make old mousetraps look, well... old. However, they do point out correctly that traditional antivirus is starting ...

The Seven Deadly Social Engineering Vices Updated

You may not be aware that there is a scale of seven deadly vices connected to social engineering (SE). The deadliest SE attacks are the ones that have the highest success rates, often ...

Gone phishing: How I taught my users to stop clicking everything

Familiar with SpiceWorks? It's the world's largest IT Admin community. One user wrote the 392nd entry in their Spotlight on IT. This is the story. There is a link at the end to the ...

The Truth About The Massive OPMgate Hacking Scandal

The recent U.S. Government Office of Personnel Management hack is getting worse by the day. In Saturday's Wall Street Journal they revealed that apart from more than 4 million personal ...

Some Interesting Security Awareness Computer-Based Training Numbers

You may know Gartner, the 800-pound gorilla in the IT Analyst space. When a market is mature enough they create their so-called Magic Quadrant (MQ) with the leading vendors in that ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.