Security Awareness Training Blog

Spear Phishing Blog

Learn about current spear phishing attacks, specific examples, and techniques the bad guys are currently using so your users don't fall for these attacks.

Interesting info on phishing and social engineering on 60 minutes

Last weekend, 60-minutes had a special about the NSA which spoke out on Snowden and spying. The headline was: "The NSA gives unprecedented access to the agency's HQ and, for the first ...
Continue Reading

10 Social Engineering Predictions for 2014

Here are 10 predictions for 2014, all cyber attacks using social engineering to penetrate the network. Have fun reading, and I will try to report back in 12 months which ones came out as ...
Continue Reading

Social Engineering Causes Seattle Hospital 90K Databreach

Personal Health Information of 90,000 patients was accesssed by hackers because an employee opened an infected email attachment early October this year. When will they learn that ...
Continue Reading

The Antivirus Industry’s Dirty Little Secret

[Updated 5/1/2016]. The Antivirus industry has a dirty little secret that they really don’t want anyone to know. Despite the claims of their marketing departments, their products are not ...
Continue Reading

Your AntiVirus Does Not See NSA's Botnet

The revelations are getting wilder by the week. The NSA has its own botnet, they infected more than 50,000 computer networks worldwide with malicious software designed to steal sensitive ...
Continue Reading

Why you shouldn’t connect to just any free Wi-Fi

Our friends at MalwareBytes put up a great blog post that explains in detail why you should not just connect to any free Wi-Fi. The risk is that you will connect to a hostile Wi-Fi access ...
Continue Reading

A Serious Legal Liability: Bad or No Security Awareness Training

Please read this article and then forward it to the head of your legal department or the person in your organization who is responsible for compliance. Recently, the Department of Health ...
Continue Reading

Even the tech-savvy get their accounts hacked...

By Steve Ragan , Staff Writer at CSO wrote: "October 22, 2013 — The millennial generation, those of us who were born and raised alongside the Internet, should be wise enough to avoid ...
Continue Reading

Spear phishing alert: Hong Kong Monetary Authority Invoice

Experts warn that cybercriminals are using fake Hong Kong Monetary Authority invoices to distribute a piece of malware. The emails are entitled “Invoice #3404196 – Remit File” and they ...
Continue Reading

More Likely to Fall for a Phishing Scam If You’re a Neurotic Woman?

Softpedia published an article I have a problem with. There is so much wrong with this that I don't even know where to start. They started out with:
Continue Reading

Inside The Adobe Databreach Disaster

Last week Adobe announced probably the worst news ever for a tech company. Both their source code and customer lists had been stolen. EPIC FAIL!
Continue Reading

Scam Of The Week: Affordable Health Care "Advisers"

Tomorrow, Tuesday October 1, 2013, the first stage of the new health care act kicks in. You can start shopping for policies on new insurance "marketplaces". There is going to be an ...
Continue Reading

Your Employees' Identity -Has- Been Stolen

There is the expression that there are two kinds of companies. The ones that know they are hacked and the ones that don't. It's safe to assume your network has already been compromised ...
Continue Reading

FBI: “Beta Bot” malware kills your anti-virus and steals data

This week, the FBI sent out a warning that a strain of malware known as "Beta Bot" can turn off your antivirus, stops access to the websites of antivirus vendors so that your antivirus ...
Continue Reading

Is Your Security Awareness Training Program Broken?

Steve Ragan over at CSO Magazine wrote:
Continue Reading

RAPID7 SECURING USER RISK

Rapid7 found 66% of IT professionals conduct user security awareness training to reduce the risk of successful phishing attacks.
Continue Reading

Kevin Mitnick Details Modern IT Threats; spear phishing and more

One of the most infamous hackers of all time talks about Website security and what users should do to protect themselves. In the world of computer security hackers, few are as well-known ...
Continue Reading

SEA used spear-phishing in attack on NY Times

A spear-phishing attack, one of the most common and oldest cyber tricks in the book, enabled hackers to hijack and modify the DNS records for several domains on Tuesday, including The New ...
Continue Reading

Cybercrime Automates Fake ID's For Spear-phishing

Today it was reported through several sources that a new Cybercrime-as-a-Service option is available: creation of fake scanned passports, ID cards, driver's licenses and fake scanned ...
Continue Reading

IT Security Is Broken Bad

With the TV show Breaking Bad in its last season, this seems to be a fun title. However, the topic is not all that much fun. You should realize it's not a question of when you will be ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews