Human Risk Management Blog

Security Awareness Training

Read the latest news about security awareness training, best practices, why you need it, and what happens when you don't have it in place.

SHOCKER: Point-Of-Failure Phishing Training Does Not Work

The Govinfosecurity site just reported on some very interesting scientific research that finds so-called "embedded training" is ineffective. Let's quickly define "embedded", they chose ...

IT security more critical now than executives expected two years ago

David Braue at CSO reported on some very interesting results of the 11th Annual Information Security Trends report by CompTIA: "28 per cent of respondents said information security was a ...

Consider security training before high-end technology

CompterWeekly.com's "Security Think Tank" section has an opinion piece by Mike Gilespie that's right out of the KnowBe4 playbook.

Target Databreach Now 110 Mil Cards - Neiman Marcus Hacked Too

It goes from bad to worse. The initial 40 million turns out to be really 110 million. Apparently the forensics team discovered another 70 million cards exfiltrated. And then the news ...

5 Most Dangerous Phishing Email Subjects

Websense has posted some interesting new phishing research a few days ago. They started out: "With cloud infrastructure easily scalable and rented botnets coming on the cheap, the cost of ...

McAfee on Intel's decision to drop the name McAfee priceless

Oh, this one is priceless.

KnowBe4 Grows 427% Year Over Year

Fake Adobe licence key delivery phishing emails carry malware

Interesting info on phishing and social engineering on 60 minutes

Last weekend, 60-minutes had a special about the NSA which spoke out on Snowden and spying. The headline was: "The NSA gives unprecedented access to the agency's HQ and, for the first ...

10 Social Engineering Predictions for 2014

Here are 10 predictions for 2014, all cyber attacks using social engineering to penetrate the network. Have fun reading, and I will try to report back in 12 months which ones came out as ...

Data Security Laws And Penalties: Pay IT Now Or Pay Out Later

KnowBe4 Customers By Industry 2013

We took a look at our customers in December 2013, and saw some interesting numbers when we broke them out by industry. Over 400 organizations, Banking and Finance together are 35% of the ...

Ponemon: Phishing part of 50% of APT's

Social Engineering Causes Seattle Hospital 90K Databreach

Personal Health Information of 90,000 patients was accesssed by hackers because an employee opened an infected email attachment early October this year. When will they learn that ...

The Antivirus Industry’s Dirty Little Secret

[Updated 5/1/2016]. The Antivirus industry has a dirty little secret that they really don’t want anyone to know. Despite the claims of their marketing departments, their products are not ...

Your AntiVirus Does Not See NSA's Botnet

The revelations are getting wilder by the week. The NSA has its own botnet, they infected more than 50,000 computer networks worldwide with malicious software designed to steal sensitive ...

Why you shouldn’t connect to just any free Wi-Fi

Our friends at MalwareBytes put up a great blog post that explains in detail why you should not just connect to any free Wi-Fi. The risk is that you will connect to a hostile Wi-Fi access ...

Edward Snowden Used Social Engineering To Hack NSA

Ex-NSA contractor Edward Snowden used user names and passwords that colleagues at a spy base in Hawaii gave him to access some of the classified material he exfiltrated. Around 20-25 ...

A Serious Legal Liability: Bad or No Security Awareness Training

Please read this article and then forward it to the head of your legal department or the person in your organization who is responsible for compliance. Recently, the Department of Health ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.