Install
KnowBe4's blog keeps you informed about the latest in security including social engineering, ransomware and phishing attacks.
- 23articles · 30d
- 2+ day agolatest article
- Aug 14, 2026earliest in window
- 100%with images
- 303avg words
- cybersecurity 21
- security 21
- technology 18
- artificial intelligence 17
- malware 15
- cybercrime 13
- phishing 13
- ai 11
- cloud security 7
- cyber security 7
- cyber security news 7
- business 6
- email security 6
- incident response 5
- windows 5
- account takeover 4
- computer security 4
- computers 4
- cyberattacks 4
- infosec 4
- Science & Technology 18
- Software 17
- Computers & Electronics 12
- Internet & Telecom 8
- Conflict, War & Peace 3
- Crime & Law 2
- Law & Government 2
- Science & Nature 2
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Direct Send: How Attackers Weaponize Your Infrastructure Against You
2+ day, 17+ hour ago (975+ words) An employee at your company receives an email from [email protected]. The domain matches. There is no warning banner. The message asks them to review a payment approval document. They click. That email was never sent by your HR team. An…...
Greatness Phishing Kit Can Now Launch Sophisticated Attacks
4+ day, 12+ hour ago (154+ words) Researchers at ZeroBEC are tracking a phishing platform called “Greatness” that’s been significantly upgraded since it surfaced in 2023. “Since its initial discovery, the platform has evolved significantly,” the researchers write. “It now supports adversary-in-the-middle (AiTM) credential and token theft, device…...
CyberheistNews Vol 16 #35 [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector
1+ week, 4+ day ago (1657+ words) [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. "Phishing was the primary…...
CyberheistNews Vol 16 #34 Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026
2+ week, 4+ day ago (1654+ words) Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026 Researchers at Microsoft warn that phishing emails are still the top initial access vector, with more than two billion phishing threats detected each month during the second quarter of 2026. "Notable campaigns observed during the…...
Report: Phishing Remains the Primary Initial Access Vector
2+ week, 4+ day ago (152+ words) Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. Talos highlights a sophisticated QR code phishing campaign that’s targeting Australians in order to steal…...
Securing the Tip of the Spear: Guam’s Path to Human and AI Resilience
3+ week, 1+ day ago (335+ words) I have observed a proactive shift toward onboarding various agencies to a unified security framework. However, as we embrace the next era of training, moving from human-centric to AI-integrated defense, Guam’s organizations must benchmark themselves against the broader APJ landscape…...
Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer
3+ week, 2+ day ago (1347+ words) Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal Phishing is a form of social engineering that has evolved beyond simple lures into complex, multi-stage attacks exploiting trusted software, cloud identities and business platforms to bypass traditional security. Attackers leverage these…...
The Rise of the 'Non-Human Insider': When AI Agents Become the Threat
3+ week, 2+ day ago (1079+ words) For years, cybersecurity has had a familiar villain: the external attacker. The hacker breaking through the firewall, stealing credentials or exploiting an unpatched vulnerability. It is the scenario we have trained for, built defenses around and spent decades trying to…...