With this week being Identity Management Day on April 8th, it’s the perfect reminder for organizations to focus on protecting their employees’ digital identities.
Author Archives: Anthony Peyson
The Real Deal: How Cybercriminals Exploit Legitimate Domains
When it comes to secure email gateways (SEGs), the narrative is quite simple. For years, organizations have relied on SEGs as the foundation of their email security.
North Korea Expands Its Fraudulent IT Worker Operations
North Korea’s fraudulent employment operations have expanded to hit countries around the world, with a particular focus on Europe, according to researchers at Google’s Threat Intelligence Group.
Online Gaming Platform Steam Tops List of Most Imitated Brands For the First Time
Steam was the most impersonated brand in phishing attacks during the first quarter of 2025, according to a new report from Guardio. The researchers note that the gaming platform’s surge to the top comes as “a bit of a shock.”
Your KnowBe4 Compliance Plus Fresh Content Updates from March 2025
Check out the March updates in Compliance Plus so you can stay on top of featured compliance training content.
Upgraded Phishing-as-a-Service Platform Drives a Wave of Smishing Attacks
A phishing-as-a-service (PhaaS) platform dubbed ‘Lucid’ is driving a surge in SMS phishing (smishing) attacks, according to researchers at Prodaft.
Your KnowBe4 Fresh Content Updates from March 2025
Check out the 58 new pieces of training content added in March, alongside the always fresh content update highlights, new features and events.
Phishing Attacks Lead to Theft in the Shipping Industry
Phishing attacks are driving a surge in “double brokering” scams in the shipping industry, according to Christian Reilly, Cloudflare’s Field CTO for EMEA.
Warning: QR Code Phishing (Quishing) Becoming Increasingly Stealthy
Attackers are using new tactics in QR code phishing (quishing) attacks, according to researchers at Palo Alto Networks’ Unit 42.
Malicious Memes: How Cybercriminals Use Humor to Spread Malware
Internet memes and viral content have become a universal language of online culture. They’re easily shareable, often humorous, and can spread rapidly across various platforms.
Compliance Plus Library Reaches 800 Pieces of Content
It seems like only yesterday that we launched the Compliance Plus training library as a result of customers asking us to address their needs beyond security awareness training.
Most Phishing Emails Rely Purely on Social Engineering
99% of phishing emails that reached inboxes last year did not contain malware, according to a new report from Fortra.
The State of NIS2: A Fragmented Implementation Across the EU
The Network and Information Systems Directive 2022 (NIS2) was designed to strengthen the cybersecurity resilience of critical infrastructure across the European Union. However, while member states were required to transpose NIS2 into national law by October of 2024, many fell … Read More
Exploring the Implications of DORA: A New Global Standard For Financial Cybersecurity
As of January 17, 2025, the Digital Operational Resilience Act (DORA) came into force across all European Union member states, with the crucial aim of strengthening the IT security of financial entities such as banks, insurance companies and investment firms.
Report: Phishing Remains the Most Prevalent Cyber Threat
INKY has published its annual report on email security, finding that phishing accounted for 30% of all reported cybercrimes last year.
Surge in Phishing Attacks Hijacking Legitimate Microsoft Communications
A KnowBe4 Threat Lab PublicationAuthors: By James Dyer, Threat Intelligence Lead at KnowBe4 and Lucy Gee, Cybersecurity Threat Researcher at KnowBe4 On March 3, 2025, the KnowBe4 Threat Labs team observed a massive influx of phishing attacks originating from legitimate Microsoft … Read More
Amount of Money Requested In BEC Attacks Nearly Doubled in Q4 2024
The average amount of money requested in business email compromise (BEC) attacks spiked to $128,980 in the fourth quarter of 2024, according to the Anti-Phishing Working Group’s (APWG’s) latest report.