Human Risk Management Blog

Social Engineering

Latest social engineering news, analysis, tactics the bad guys are using and what you can do to defend your organization.

Why We Are Doing This

Some of you might remember Sunbelt Software, which from 1996 to 2010 sold system admin and security tools for Windows Server. I am one of the two co-founders of Sunbelt. After ...

Black Hole Malware Dominates Web So Train Your Employees

[caption id="" align="alignleft" width="460" caption="Microsoft Security Intelligence Report Volume 13"][/caption] Microsoft released their Security Intelligence Report (SIR) last week, ...

Scam Of The Week You Have Been Targeted For Assasination

The last few weeks, the Internet Crime Complaint Center (IC3) reported they received complaints about the latest version of 'Hit Man scam' which now tells people via e-mail they have been ...

Beware Of iPhone Delivery Phishes

Hackers have a great new reason to send you a UPS notification regarding your new iPhone 5 shipment. In times like this – when people are eagerly waiting for an email of this type – the ...

I was quoted on CNNMoney re mobile security

[caption id="" align="alignleft" width="230" caption="Mobile Security"][/caption] NEW YORK (CNNMoney) -- Security experts have warned for years that our smartphones are due for a major ...

Scam Alert: Naked Prince Harry Pictures

[caption id="" align="alignleft" width="175" caption="Scam Alert: Naked Prince Harry Pictures"][/caption] Wath out for the latest Internet craze. The bad guys are having a field day with ...

Top hacker details how to avoid cybercrime

[caption id="" align="alignleft" width="300" caption="(Flickr user Alan Cleaver)"][/caption] (MoneyWatch) With the National Republican Convention fast approaching at the end of August, ...

Special Scam Of The Week: Big Brand Hijacking

An existing KnowBe4 customer tweeted about a fresh scam with the hashtag #RedFlag, and sure enough it had quite a few Red Flags. The bad guys are getting quite inventive, this time ...

Apple social engineered - Allows access to iCloud

[caption id="" align="alignleft" width="300" caption="Apple Tech Social Engineered"][/caption] [UPDATED August 7] Former Gizmodo reporter Mat Honan was hacked hard. He found out that an ...

Bank Sues Customer Over ACH/Wire Fraud

[caption id="" align="alignleft" width="180" caption="Bank Sues Customer"][/caption] Tracy Kitten at BankInfo Security reported on this: "In another legal wrangling over liability linked ...

I Was Interviewed On TV Thursday

[caption id="" align="aligncenter" width="500" caption="Stu TV Interview"][/caption] Cyber threats reported by U.S. energy companies, public water districts and other infrastructure ...

Scam Of The Week Payroll Phish

The nakedsecurity blog over at Sophos highlighted a new phishing scam that would be good to alert your employees about. The bad guys are pretending to be payroll processing company ADP. ...

Malware Metastasizes

A few days ago I wrote about a 60 million Euro cyberheist. I have been digging into this a bit more, as it's the most advanced attack yet. Cybercrime is not revolutionary, it clearly ...

OMG - I did not know it was THIS horrible.

More from Brian Krebs's astounding blog post today. "As the chart I compiled above indicates, attackers are switching the lure or spoofed brand quite often, but popular choices include ...

A Closer Look: Email-Based Ransomware Attacks

With the increase of email phishing attacks being the primary attack vector, ransomware payments have risen to 60%, it's important to take a closer look at email-based ransomware attacks.

Kevin Mitnick Security Awareness Training Success Stories

Kevin Mitnick Partners With KnowBe4

Kevin Mitnick, at One Time the World's Most-Wanted Hacker, Joins Forces With Leading Internet Security Awareness Training Company KnowBe4, LLC CLEARWATER, Fla., June 18, 2012 -- Internet ...

F-Secure Cautions about Fresh Olympic-themed Spam

F-Secure the security company based in Finland has recently cautioned that spam mails themed on the Olympics are targeting Internauts while carrying web-links to one malevolent PDF file ...

Fake LinkedIn Emails To Reset Your Password

Since LinkedIn had their IPO, they have been in the news a lot more, even if only to compare them with the recent Facebook IPO Debacle. But the better known you are, the bigger target you ...

Malicious PowerPoint File Contains Exploit, Drops Backdoor

TrendLabs discovered a malicious MS PowerPoint document that arrives attached to email messages. The file contains an embedded Flash file, which exploits a software bug found in specific ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.