Install
KnowBe4's blog keeps you informed about the latest in security including social engineering, ransomware and phishing attacks.
- 23articles · 30d
- 2+ day agolatest article
- Aug 14, 2026earliest in window
- 100%with images
- 303avg words
- cybersecurity 21
- security 21
- technology 18
- artificial intelligence 17
- malware 15
- cybercrime 13
- phishing 13
- ai 11
- cloud security 7
- cyber security 7
- cyber security news 7
- business 6
- email security 6
- incident response 5
- windows 5
- account takeover 4
- computer security 4
- computers 4
- cyberattacks 4
- infosec 4
- Science & Technology 18
- Software 17
- Computers & Electronics 12
- Internet & Telecom 8
- Conflict, War & Peace 3
- Crime & Law 2
- Law & Government 2
- Science & Nature 2
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
CyberheistNews Vol 16 #36 [Text Alert] Don't Reply to a "Wrong Number." You Will Become a Scam Target
2+ day, 17+ hour ago (1591+ words) [Text Alert] Don't Reply to a "Wrong Number." You Will Become a Scam Target Attackers are using "wrong-number" texts to identify potential targets for scams, according to researchers at Malwarebytes. These texts appear to be harmless messages meant for another…...
Direct Send: How Attackers Weaponize Your Infrastructure Against You
3+ day, 1+ hour ago (975+ words) An employee at your company receives an email from [email protected]. The domain matches. There is no warning banner. The message asks them to review a payment approval document. They click. That email was never sent by your HR team. An…...
Greatness Phishing Kit Can Now Launch Sophisticated Attacks
4+ day, 20+ hour ago (154+ words) Researchers at ZeroBEC are tracking a phishing platform called “Greatness” that’s been significantly upgraded since it surfaced in 2023. “Since its initial discovery, the platform has evolved significantly,” the researchers write. “It now supports adversary-in-the-middle (AiTM) credential and token theft, device…...
Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy
1+ week, 1+ day ago (838+ words) In addition to everyday users, Google's infrastructure is trusted by email security gateways, enterprise firewalls and automated URL detonation platforms. Threat actors know this. The result is a campaign that looks legitimate at every layer a defender is likely to…...
New Phishing Kit Uses AI to Fully Automate Vishing Attacks
1+ week, 3+ day ago (146+ words) A new phishing kit is using generative AI to fully automate voice phishing (vishing) attacks, according to researchers at Group-IB. The phishing platform, called “Balonx,” includes a module dubbed “CallFlow” that the researchers say “represents a fundamental evolution” in the…...
CyberheistNews Vol 16 #35 [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector
1+ week, 4+ day ago (1657+ words) [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. "Phishing was the primary…...
Attackers Abuse Enterprise Collaboration Tools to Avoid Detection
1+ week, 5+ day ago (119+ words) Threat actors’ abuse of enterprise collaboration tools increased fourfold over the past twelve months, according to researchers at Palo Alto Networks’ Unit 42. Nearly all of this malicious activity begins with a traditional phishing attack. Once the attackers have access to…...
CyberheistNews Vol 16 #34 Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026
2+ week, 4+ day ago (1654+ words) Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026 Researchers at Microsoft warn that phishing emails are still the top initial access vector, with more than two billion phishing threats detected each month during the second quarter of 2026. "Notable campaigns observed during the…...
Report: Phishing Remains the Primary Initial Access Vector
2+ week, 4+ day ago (152+ words) Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. Talos highlights a sophisticated QR code phishing campaign that’s targeting Australians in order to steal…...
Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer
3+ week, 2+ day ago (1347+ words) Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal Phishing is a form of social engineering that has evolved beyond simple lures into complex, multi-stage attacks exploiting trusted software, cloud identities and business platforms to bypass traditional security. Attackers leverage these…...