Website profile

@Knowbe4

KnowBe4's blog keeps you informed about the latest in security including social engineering, ransomware and phishing attacks.

  • 23articles · 30d
  • 2+ day agolatest article
  • Aug 14, 2026earliest in window
  • 100%with images
  • 303avg words
articles per day
Categories
  • Science & Technology 18
  • Software 17
  • Computers & Electronics 12
  • Internet & Telecom 8
  • Conflict, War & Peace 3
  • Crime & Law 2
  • Law & Government 2
  • Science & Nature 2

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

@KnowBe4
blog.knowbe4.com > cyberheistnews-vol-16-36-text-alert-dont-reply-to-a-wrong-number-you-will-become-a-scam-target

CyberheistNews Vol 16 #36 [Text Alert] Don't Reply to a "Wrong Number." You Will Become a Scam Target

2+ day, 17+ hour ago   (1591+ words) [Text Alert] Don't Reply to a "Wrong Number." You Will Become a Scam Target Attackers are using "wrong-number" texts to identify potential targets for scams, according to researchers at Malwarebytes. These texts appear to be harmless messages meant for another…...

@KnowBe4
blog.knowbe4.com > direct-send-how-attackers-weaponize-your-infrastructure-against-you

Direct Send: How Attackers Weaponize Your Infrastructure Against You

3+ day, 1+ hour ago   (975+ words) An employee at your company receives an email from [email protected]. The domain matches. There is no warning banner. The message asks them to review a payment approval document. They click. That email was never sent by your HR team. An…...

@KnowBe4
blog.knowbe4.com > greatness-phishing-kit-can-now-launch-sophisticated-attacks

Greatness Phishing Kit Can Now Launch Sophisticated Attacks

4+ day, 20+ hour ago   (154+ words) Researchers at ZeroBEC are tracking a phishing platform called “Greatness” that’s been significantly upgraded since it surfaced in 2023. “Since its initial discovery, the platform has evolved significantly,” the researchers write. “It now supports adversary-in-the-middle (AiTM) credential and token theft, device…...

@KnowBe4
blog.knowbe4.com > bypassing-the-gatekeepers-how-a-global-phishing-campaign-turns-googles-infrastructure-into-a-trust-proxy

Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy

1+ week, 1+ day ago   (838+ words) In addition to everyday users, Google's infrastructure is trusted by email security gateways, enterprise firewalls and automated URL detonation platforms. Threat actors know this. The result is a campaign that looks legitimate at every layer a defender is likely to…...

@KnowBe4
blog.knowbe4.com > new-phishing-kit-uses-ai-to-fully-automate-vishing-attacks

New Phishing Kit Uses AI to Fully Automate Vishing Attacks

1+ week, 3+ day ago   (146+ words) A new phishing kit is using generative AI to fully automate voice phishing (vishing) attacks, according to researchers at Group-IB. The phishing platform, called “Balonx,” includes a module dubbed “CallFlow” that the researchers say “represents a fundamental evolution” in the…...

@KnowBe4
blog.knowbe4.com > cyberheistnews-vol-16-35-new-report-phishing-is-still-the-no.-1-initial-threat-access-vector

CyberheistNews Vol 16 #35 [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector

1+ week, 4+ day ago   (1657+ words) [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. "Phishing was the primary…...

@KnowBe4
blog.knowbe4.com > attackers-abuse-enterprise-collaboration-tools-to-avoid-detection

Attackers Abuse Enterprise Collaboration Tools to Avoid Detection

1+ week, 5+ day ago   (119+ words) Threat actors’ abuse of enterprise collaboration tools increased fourfold over the past twelve months, according to researchers at Palo Alto Networks’ Unit 42. Nearly all of this malicious activity begins with a traditional phishing attack. Once the attackers have access to…...

@KnowBe4
blog.knowbe4.com > cyberheistnews-vol-16-34-microsoft-observed-7-6-billion-phishing-emails-in-q2-2026

CyberheistNews Vol 16 #34 Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026

2+ week, 4+ day ago   (1654+ words) Microsoft Observed 7.6 Billion Phishing Emails in Q2 2026 Researchers at Microsoft warn that phishing emails are still the top initial access vector, with more than two billion phishing threats detected each month during the second quarter of 2026. "Notable campaigns observed during the…...

@KnowBe4
blog.knowbe4.com > report-phishing-remains-the-primary-initial-access-vector

Report: Phishing Remains the Primary Initial Access Vector

2+ week, 4+ day ago   (152+ words) Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos. Talos highlights a sophisticated QR code phishing campaign that’s targeting Australians in order to steal…...

@KnowBe4
blog.knowbe4.com > anatomy-agent-tesla-bec-attack-in-memory-infostealer

Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer

3+ week, 2+ day ago   (1347+ words) Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal Phishing is a form of social engineering that has evolved beyond simple lures into complex, multi-stage attacks exploiting trusted software, cloud identities and business platforms to bypass traditional security. Attackers leverage these…...