<?xml version="1.0" encoding="UTF-8" ?><!-- generator=Zoho Sites --><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><atom:link href="https://www.actisofttechnology.com/blogs/tag/human-firewall/feed" rel="self" type="application/rss+xml"/><title>ActiSoft Technology - Blog #Human Firewall</title><description>ActiSoft Technology - Blog #Human Firewall</description><link>https://www.actisofttechnology.com/blogs/tag/human-firewall</link><lastBuildDate>Thu, 23 Apr 2026 21:18:34 +0200</lastBuildDate><generator>http://zoho.com/sites/</generator><item><title><![CDATA[Your Money or Your Data! A Guide to Ransomware]]></title><link>https://www.actisofttechnology.com/blogs/post/your-money-or-your-data-a-guide-to-ransomware</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/Images/Small/iStock-1277291171.jpg"/>What is Ransomware?&nbsp; Ransomware is a kind of malicious code that renders a device, server or file unusable until a payment is made to a cybercrimi ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_uxWrIAHjQsyZ1nFmh4MeZw" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_ZlAznbvKStivVXW8WAVMyw" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"> [data-element-id="elm_ZlAznbvKStivVXW8WAVMyw"].zprow{ border-radius:1px; } </style><div data-element-id="elm_m2v5V-UYSfKXTcz8OTuO6A" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_m2v5V-UYSfKXTcz8OTuO6A"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_1vqchQpK6wvaX1moa5UKrg" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_1vqchQpK6wvaX1moa5UKrg"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:24px;">What is Ransomware?&nbsp;</span></div><br><div>Ransomware is a kind of malicious code that renders a device, server or file unusable until a payment is made to a cybercriminal. Attacks have more than doubled since 2020, and a recent study found that incidents reported to the ICO grew from 326 to 654 between 2020 and 2021. Actual figures will be much higher, as not all incidents are reported (although of course they should be!). The heavily impacted sectors according to the report are finance, education and insurance, but all sorts of businesses have been affected.</div><br><div>Over the years ransomware has evolved and become increasingly sophisticated. While some malicious software of this kind just encrypts certain files, others have the power to completely destroy entire file systems.</div></div></div></div></div></div>
</div><div data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> @media (min-width: 992px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width: 500px ; height: 334.02px ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width:500px ; height:334.02px ; } } @media (max-width: 767px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width:500px ; height:334.02px ; } } [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="" data-size-mobile="" data-align="left" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimagetext-container zpimage-with-text-container zpimage-align-left zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="/security-awareness-training" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Small/iStock-803934282.jpg" width="500" height="334.02" loading="lazy" size="medium" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="color:inherit;font-size:24px;">How it Works</span></div><div><br></div><div><span style="color:inherit;font-size:18px;">As soon as the malware has been installed – usually as the result of a user clicking on a link – the hacker takes control of the system and freezers the user out until they pay up. They often ask for payment in Bitcoin, due to its anonymity, but cyber criminals will sometimes ask for bank details or other types of payment such as Amazon gift vouchers too. Even once the ransom has been paid, there’s no guarantee users will regain full access to their files afterwards. In fact, while over half of victims pay up, but only 8% get all their data back.</span><span style="font-size:18px;"><br></span></div><div><span style="font-size:24px;color:inherit;"><br></span></div><div><span style="font-size:24px;color:inherit;">The Cost of Ransomware Attacks</span><br></div><div style="color:inherit;"><br><div><div><span style="font-size:18px;">According to Yubico, the average cost of a ransomware attack was $1.85 million (£1.4m) in 2021. Along with the initial monetary demands, other costs include business downtime, lost sales, operating costs and legal fees. In the case of attacks where more sensitive information is compromised, costs can be as much as $4.44 million (£3.5m).</span></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div>
</div></div><div data-element-id="elm_OskkLb6t4OhaCYamgKZmvA" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> @media (min-width: 992px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width: 160px !important ; height: 600px !important ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width:160px ; height:600px ; } } @media (max-width: 767px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width:160px ; height:600px ; } } [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="" data-size-mobile="" data-align="right" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/11.27_Phish_Your_Users_160x600.jpg" width="160" height="600" loading="lazy" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:18px;">There are severe reputational costs to consider too. New strains of ransomware can affect entire supply chains, which puts partner organisations and their customers at risk. Under GDPR regulations all breaches must be reported to the ICO, which means they are also made public. Insurance companies are less likely to touch organisations that have been hit hard by ransomware attacks, and if they do, you can expect your premiums to rocket.</span></div><br><div><span style="font-size:18px;">Once an organisation has been targeted – and agreed to pay the ransom – they then become an easy target for future ransomware attacks.</span></div><br><div><span style="font-size:18px;">Although most cybercriminals are motivated by money and other financial rewards, others act out of spite or for political reasons. They often use a range of different methods to extort money or information, and in some cases if ransoms aren’t paid they’ll even go as far as contacting customers direct and demanding money from them.&nbsp;</span></div><br><div style="color:inherit;"><div><span style="font-size:24px;">How to Prevent a Ransomware Attack&nbsp;</span></div><br><div><div><span style="font-size:18px;">A while ago, all you needed to protect against a ransomware attack was a secure backup system and fast data restore process. Things have changed in recent years. At their worst, modern attacks can bring entire organisations to their knees, so traditional methods are no longer enough, so you need a more comprehensive, multi layered line of defence in place.&nbsp;</span></div></div></div></div></div></div></div></div></div></div><div><div style="color:inherit;"></div></div></div></div>
</div></div><div data-element-id="elm_A1QoO-f5O0Co97QGobPxHg" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_A1QoO-f5O0Co97QGobPxHg"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="font-size:14px;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:18px;">But as with most other cyber-attacks, the best way to avoid a costly ransomware attack is by creating a culture of awareness and making sure your staff have the right training. Malicious software can only be installed if a human allows it, so it’s essential that everyone knows what to look out for.&nbsp;</span></div><br><div><span style="font-size:18px;"><span style="color:inherit;">Here are some steps you can take to minimise the risks:</span><br></span></div><div><ul><ul><li><span style="color:inherit;font-size:18px;">Make sure everyone in your organisation is trained and knows to never click on unverified links</span></li><li><span style="font-size:18px;">Have all your emails scanned for malware</span></li><li><span style="font-size:18px;">Install firewalls and Endpoint Protection&nbsp;</span></li><li><span style="font-size:18px;">Only ever download from trusted sites that your IT team have approved</span></li><li><span style="font-size:18px;">Keep regular backups of all your files</span></li><li><span style="font-size:18px;">Avoid using public Wi-Fi&nbsp;</span></li><li><span style="font-size:18px;">Never allow unverified, unfamiliar USBs in any of your devices</span></li><li><span style="font-size:18px;">Install robust security software&nbsp;</span></li><li><span style="font-size:18px;">Never share sensitive data with anyone you’re not 100% certain of&nbsp;</span></li></ul></ul></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div>
</div><div data-element-id="elm_rxlNLk2J77PSfK5fUmonSw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_rxlNLk2J77PSfK5fUmonSw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><span style="color:inherit;">As specialists in cyber security, our team at Actisoft can talk you through all the risks and provide you with all the tools you need to avoid a ransomware attack. From <a href="/firewall" title="firewalls" target="_blank" rel="">firewalls</a> and <a href="/endpoint-protection" title="Endpoint Protection" target="_blank" rel="">Endpoint Protection</a> to <a href="/cybersmart" title="Cyber Essentials" target="_blank" rel="">Cyber Essentials</a> accreditation and much more, we’re here to help.&nbsp;</span><br></div></div></div></div></div>
</div><div data-element-id="elm_jjS7Nt0qWE1PaMe19EVS9Q" data-element-type="image" class="zpelement zpelem-image "><style> @media (min-width: 992px) { [data-element-id="elm_jjS7Nt0qWE1PaMe19EVS9Q"] .zpimage-container figure img { width: 500px ; height: 644.35px ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_jjS7Nt0qWE1PaMe19EVS9Q"] .zpimage-container figure img { width:500px ; height:644.35px ; } } @media (max-width: 767px) { [data-element-id="elm_jjS7Nt0qWE1PaMe19EVS9Q"] .zpimage-container figure img { width:500px ; height:644.35px ; } } [data-element-id="elm_jjS7Nt0qWE1PaMe19EVS9Q"].zpelem-image { border-radius:1px; margin-block-start:38px; } </style><div data-caption-color="" data-size-tablet="" data-size-mobile="" data-align="center" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimage-container zpimage-align-center zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://forms.zohopublic.eu/actisofttechnologycom/form/RansomwareHostageRescueManual/formperma/ExFgdkf-qEuo0YuygKbyjaALHXy3Cz2XnvBwpFhxDiw" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/images/Ransomware%20Hostage%20Rescue%20Manual.png" width="500" height="644.35" loading="lazy" size="medium"/></picture></a></figure></div>
</div><div data-element-id="elm_CNIUcAeX7iaMEqD7sOzU-g" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_CNIUcAeX7iaMEqD7sOzU-g"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-center "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://forms.zohopublic.eu/actisofttechnologycom/form/RansomwareHostageRescueManual/formperma/ExFgdkf-qEuo0YuygKbyjaALHXy3Cz2XnvBwpFhxDiw" target="_blank"><span class="zpbutton-content">Get the Manual</span></a></div>
</div><div data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag" data-element-type="divider" class="zpelement zpelem-divider "><style type="text/css"> [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"].zpelem-divider{ border-radius:1px; } </style><style> [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"] .zpdivider-container .zpdivider-common:after, [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"] .zpdivider-container .zpdivider-common:before{ border-color:#000000 } </style><div class="zpdivider-container zpdivider-line zpdivider-align-center zpdivider-width100 zpdivider-line-style-solid "><div class="zpdivider-common"></div>
</div></div><div data-element-id="elm_u3hJ-CTfVPi4KmS61br2Hg" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_u3hJ-CTfVPi4KmS61br2Hg"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Start Your Free Phishing Security Test</span><br></h2></div>
<div data-element-id="elm_Zdf2go9Bp_5oSFUJ4J-rOQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_Zdf2go9Bp_5oSFUJ4J-rOQ"].zpelem-heading { border-radius:1px; margin-block-start:-1px; } </style><h5
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Find out what percentage of your employees are Phish-prone</span></h5></div>
<div data-element-id="elm_oCZY4nh3u_YRXAYbn7EnOQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_oCZY4nh3u_YRXAYbn7EnOQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div>Did you know that 91% of successful data breaches started with a spear phishing attack?</div><br><div>Find out what percentage of your employees are Phish-prone™ with your free phishing security test. Plus, see how you stack up against your peers with the new phishing Industry Benchmarks!</div><div><br></div><div>IT pros have realised that simulated phishing tests are urgently needed as an additional security layer. Today, phishing your own users is just as important as having antivirus and a firewall. It is a fun and an effective cybersecurity best practice to patch your last line of defence: USERS</div><div><br></div><div><div><span style="color:inherit;font-style:italic;font-weight:700;">Why? If you don't do it yourself, the bad guys will.</span><br></div></div></div></div></div></div>
</div><div data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA" data-element-type="imageheadingtext" class="zpelement zpelem-imageheadingtext "><style> @media (min-width: 992px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width: 300px !important ; height: 254px !important ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width:300px ; height:254px ; } } @media (max-width: 767px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width:300px ; height:254px ; } } [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"].zpelem-imageheadingtext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimageheadingtext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/Picture3.png" width="300" height="254" loading="lazy" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-headingtext-container"><h3 class="zpimage-heading zpimage-text-align-left " data-editor="true"><span style="font-weight:700;">Here's how it works:</span></h3><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div><div><div style="color:inherit;"><div style="color:inherit;"><div><ul><li><span style="font-size:18px;">Immediately start your test for up to 100 users (no need to talk to anyone)</span></li><li><span style="font-size:18px;">Select from 20+ languages and customise the phishing test template based on your environment</span></li><li><span style="font-size:18px;">Choose the landing page your users see after they click</span></li><li><span style="font-size:18px;">Show users which red flags they missed, or a 404 page&nbsp;</span></li><li><span style="font-size:18px;">Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management</span></li><li><span style="font-size:18px;">See how your organisation compares to others in your industry</span></li></ul></div></div></div></div></div>
</div></div></div></div><div data-element-id="elm_zCWjvOYdEORUw4a2JjUrOQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_zCWjvOYdEORUw4a2JjUrOQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><span style="color:inherit;font-weight:700;">The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.</span><br></div><div style="color:inherit;"><span style="color:inherit;font-weight:700;"><br></span></div><div style="color:inherit;"><span style="color:inherit;font-weight:700;"><div style="color:inherit;"><div>Start phishing your users now. Fill out the form, and get started immediately!</div></div></span></div></div></div>
</div><div data-element-id="elm_1Tjje77LSniwbHrc470QJg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_1Tjje77LSniwbHrc470QJg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Try It Now!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Mon, 20 Jun 2022 10:50:48 +0000</pubDate></item><item><title><![CDATA[What You Need to Know About Phishing: The Biggest Threat to UK Organisations]]></title><link>https://www.actisofttechnology.com/blogs/post/what-you-need-to-know-about-phishing-the-biggest-threat-to-uk-businesses-in-2022</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/Images/Small/iStock-502758397.jpg"/>Phishing is an attempt by cybercriminals posing as legitimate institutions, usually (but not always!) via email, to obtain sensitive information from ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_uxWrIAHjQsyZ1nFmh4MeZw" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_ZlAznbvKStivVXW8WAVMyw" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"> [data-element-id="elm_ZlAznbvKStivVXW8WAVMyw"].zprow{ border-radius:1px; } </style><div data-element-id="elm_m2v5V-UYSfKXTcz8OTuO6A" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_m2v5V-UYSfKXTcz8OTuO6A"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_1vqchQpK6wvaX1moa5UKrg" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_1vqchQpK6wvaX1moa5UKrg"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div><div><span style="font-weight:700;">Phishing</span> is an attempt by cybercriminals posing as legitimate institutions, usually (but not always!) via email, to obtain sensitive information from targeted individuals.&nbsp;</div></div><br><div>These attacks are on the rise, with more than 80% of organisations being targeted in 2021 alone. One of the most frustrating things about phishing is that these attacks are becoming so realistic and sophisticated that it’s becoming increasingly hard to spot them. So, even if you think you know everything there is to know about online scams, it’s still surprisingly easy to get caught out.</div><br><div>There are many different types of phishing, but in this post we’ll concentrate on the most common types affecting UK businesses right now.&nbsp;</div></div></div></div>
</div><div data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> @media (min-width: 992px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width: 500px ; height: 500.00px ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width:500px ; height:500.00px ; } } @media (max-width: 767px) { [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"] .zpimagetext-container figure img { width:500px ; height:500.00px ; } } [data-element-id="elm_ZM1AzWW6MV2O2JPB09RAgg"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="" data-size-mobile="" data-align="left" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimagetext-container zpimage-with-text-container zpimage-align-left zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="/compliance-manager" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Small/iStock-954712690.jpg" width="500" height="500.00" loading="lazy" size="medium" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:24px;">Email Phishing&nbsp;</span></div><br><div><span style="font-size:18px;">Most phishing attacks are deployed via email, and hackers are getting really good at creating fake accounts that look just like the real thing. They register fake domains that mimic well known organisations (such as Amazon, the NHS or Google) and send thousands of generic emails in what’s known as a “spray and pray” approach. The idea is that if they send a massive amount of emails, at least a few people will respond.&nbsp;</span></div><br><div><span style="font-size:18px;">These attacks are on the rise because they work. The fake domains they create are so realistic that targets have to look really closely – they copy the logos and font type exactly, and often just one character is out of place in the email address. Many recipients see something that looks very familiar and assume it’s safe. As soon as they click on the link or download the attachment, it’s too late.</span></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div>
</div></div><div data-element-id="elm_OskkLb6t4OhaCYamgKZmvA" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> @media (min-width: 992px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width: 160px !important ; height: 600px !important ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width:160px ; height:600px ; } } @media (max-width: 767px) { [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"] .zpimagetext-container figure img { width:160px ; height:600px ; } } [data-element-id="elm_OskkLb6t4OhaCYamgKZmvA"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="" data-size-mobile="" data-align="right" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/11.27_Phish_Your_Users_160x600.jpg" width="160" height="600" loading="lazy" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:24px;">Spear Phishing</span></div><br><div><span style="font-size:18px;">This is a more sophisticated type of email phishing attack. Instead of using a “spray and pray” approach cyber criminals will target particular people within an organisation, which involves more time and effort.&nbsp;</span></div><br><div><span style="font-size:18px;">Before they send their malicious emails, hackers will have gathered important information about their targets including things like their name, job title, work location, email address and other specific information about their role. These attacks are particularly hard to identify because they address the user by name and often refer to other members of staff, meetings or work activities that are familiar to the target. Unlike the email scams of old, they’re often written in perfect English and seem totally legitimate – so it’s often only a matter of time before the hacker has access to the user’s data.</span></div><br><div style="color:inherit;"><div><span style="font-size:24px;">Whaling&nbsp;</span></div><br><div><div><span style="font-size:18px;">Whaling attacks go a step further, and are usually aimed at senior staff members within an organisation. Whaling emails tend to be more subtle, and they’re less likely to use tricks like fake links. Instead, they’re likely to pose as a CEO or board member requesting vital information or the transfer of funds. The hackers create a sense of urgency, saying things like “I know you might be busy but really need you to get this done now” and they rely on employees being keen to keep their bosses happy.</span></div></div></div></div></div></div></div></div></div><div><div style="color:inherit;"></div></div></div></div>
</div></div><div data-element-id="elm_A1QoO-f5O0Co97QGobPxHg" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_A1QoO-f5O0Co97QGobPxHg"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="font-size:14px;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-size:24px;">Angler Phishing</span></div><br><div><span style="font-size:18px;">This is a relatively new form of attack, which is deployed via social media. Hackers share posts including fake URLs, cloned websites and infected links and use instant messages to encourage victims to download malware. Cyber criminals keep an eye out for customers contacting organisations with complaints, then hijack the organisations’ social media accounts and ask for the customers to provide their bank account details in order to receive a refund. Of course, that refund never happens, and scammers walk away with valuable data and banking information.&nbsp;</span></div><br><div><span style="font-size:24px;color:inherit;">Smishing and Vishing&nbsp;</span><br></div><br><div><span style="font-size:18px;">These are more like old school hacks because they take place over the phone rather than via email, but they’re no less damaging. In a smishing attack, the victim will receive a text message asking them to follow a link or download a piece of software to their phones, while a vishing attack involves a telephone conversation. A common tactic is for criminals to pretend to be calling from a bank, alerting victims to suspicious activities on their accounts. Attacks of this kind can look incredibly realistic these days, and hackers rely on the fact that when people are stressed and under pressure they’re more likely to make silly mistakes.&nbsp;</span></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div>
</div><div data-element-id="elm_rxlNLk2J77PSfK5fUmonSw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_rxlNLk2J77PSfK5fUmonSw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div>Phishing attacks are estimated to cost the UK economy over £5 billion a year. The best way to prevent these attacks is with anti-phishing and anti-spam software, but it’s also essential to stay aware and on guard – which goes for smishing and vishing too. This means ensuring all staff are regularly trained and understand how to spot a potential threat.</div><br><div><div>For more detail about different types of phishing, our partner <a href="https://www.fortinet.com/resources/cyberglossary/types-of-phishing-attacks" title="Fortinet" target="_blank" rel="">Fortinet</a> has put together a comprehensive list you can also visit our <a href="/what-is-phishing" title="Phishing page" target="_blank" rel="">Phishing page</a>. We are also happy to talk to you about the most common threats to your organisation and deliver cyber security training. Contact us today for a no obligation quote!</div></div></div></div>
</div><div data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag" data-element-type="divider" class="zpelement zpelem-divider "><style type="text/css"> [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"].zpelem-divider{ border-radius:1px; } </style><style> [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"] .zpdivider-container .zpdivider-common:after, [data-element-id="elm_wcIqD_jrWIL3pG99sFQ0Ag"] .zpdivider-container .zpdivider-common:before{ border-color:#000000 } </style><div class="zpdivider-container zpdivider-line zpdivider-align-center zpdivider-width100 zpdivider-line-style-solid "><div class="zpdivider-common"></div>
</div></div><div data-element-id="elm_u3hJ-CTfVPi4KmS61br2Hg" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_u3hJ-CTfVPi4KmS61br2Hg"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Start Your Free Phishing Security Test</span><br></h2></div>
<div data-element-id="elm_Zdf2go9Bp_5oSFUJ4J-rOQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_Zdf2go9Bp_5oSFUJ4J-rOQ"].zpelem-heading { border-radius:1px; margin-block-start:-1px; } </style><h5
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Find out what percentage of your employees are Phish-prone</span></h5></div>
<div data-element-id="elm_oCZY4nh3u_YRXAYbn7EnOQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_oCZY4nh3u_YRXAYbn7EnOQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div>Did you know that 91% of successful data breaches started with a spear phishing attack?</div><br><div>Find out what percentage of your employees are Phish-prone™ with your free phishing security test. Plus, see how you stack up against your peers with the new phishing Industry Benchmarks!</div><div><br></div><div>IT pros have realised that simulated phishing tests are urgently needed as an additional security layer. Today, phishing your own users is just as important as having antivirus and a firewall. It is a fun and an effective cybersecurity best practice to patch your last line of defence: USERS</div><div><br></div><div><div><span style="color:inherit;font-style:italic;font-weight:700;">Why? If you don't do it yourself, the bad guys will.</span><br></div></div></div></div></div></div>
</div><div data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA" data-element-type="imageheadingtext" class="zpelement zpelem-imageheadingtext "><style> @media (min-width: 992px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width: 300px !important ; height: 254px !important ; } } @media (max-width: 991px) and (min-width: 768px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width:300px ; height:254px ; } } @media (max-width: 767px) { [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"] .zpimageheadingtext-container figure img { width:300px ; height:254px ; } } [data-element-id="elm_srkt-xsmeFqr9pVJSfK8pA"].zpelem-imageheadingtext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="false" data-mobile-image-separate="false" class="zpimageheadingtext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/Picture3.png" width="300" height="254" loading="lazy" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-headingtext-container"><h3 class="zpimage-heading zpimage-text-align-left " data-editor="true"><span style="font-weight:700;">Here's how it works:</span></h3><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div><div><div style="color:inherit;"><div style="color:inherit;"><div><ul><li><span style="font-size:18px;">Immediately start your test for up to 100 users (no need to talk to anyone)</span></li><li><span style="font-size:18px;">Select from 20+ languages and customise the phishing test template based on your environment</span></li><li><span style="font-size:18px;">Choose the landing page your users see after they click</span></li><li><span style="font-size:18px;">Show users which red flags they missed, or a 404 page&nbsp;</span></li><li><span style="font-size:18px;">Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management</span></li><li><span style="font-size:18px;">See how your organisation compares to others in your industry</span></li></ul></div></div></div></div></div>
</div></div></div></div><div data-element-id="elm_zCWjvOYdEORUw4a2JjUrOQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_zCWjvOYdEORUw4a2JjUrOQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><span style="color:inherit;font-weight:700;">The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.</span><br></div><div style="color:inherit;"><span style="color:inherit;font-weight:700;"><br></span></div><div style="color:inherit;"><span style="color:inherit;font-weight:700;"><div style="color:inherit;"><div>Start phishing your users now. Fill out the form, and get started immediately!</div></div></span></div></div></div>
</div><div data-element-id="elm_1Tjje77LSniwbHrc470QJg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_1Tjje77LSniwbHrc470QJg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/phishing-security-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Try It Now!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Wed, 15 Jun 2022 12:28:33 +0000</pubDate></item><item><title><![CDATA[How to Run a Successful Security Awareness Training Program]]></title><link>https://www.actisofttechnology.com/blogs/post/how-to-run-a-successful-security-awareness-training-program</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.comhttps://images.unsplash.com/photo-1551892589-865f69869476?crop=entropy&amp;cs=tinysrgb&amp;fit=max&amp;fm=jpg&amp;ixid=Mnw0NTc5N3wwfDF8c2VhcmNofDV8fHN1Y2Nlc3N8ZW58MHx8fHwxNjMzMTAxNzk4&amp;ixlib=rb-1.2.1&amp;q=80&amp;w=1080"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman As we're now in Cybersecurity Awareness Month, thinking about how to strengthen your security awarene ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_q9Zjddl-TNe5PvSMvevRBg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_6C67cXZNSbCWEWLAN5_R2w" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm__WDB6E18T6Gup6TVQCKUbg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><p><span style="font-size:14px;">Written by Stu Sjouwerman</span><br></p></div></div>
</div><div data-element-id="elm_lpqQgyRkuRV_0HPMTdSINw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_lpqQgyRkuRV_0HPMTdSINw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div>As we're now in Cybersecurity Awareness Month, thinking about how to strengthen your security awareness training program is probably top of mind.</div><div><br></div><div><div>Luckily, we've got you covered with helpful tips you can use to run a strong <a href="/security-awareness-training" title="security awareness training" target="_blank" rel="">security awareness training</a> program in your organisation! We asked our Security Awareness Advocates for their expert advice on questions like how to get started, how to motivate your users, and how to develop a strong security culture over time. While not an exhaustive list, here is a handy one-sheet with what they had to say:</div></div></div></div>
</div><div data-element-id="elm_587LSM45PCdEV26d7WbSAg" data-element-type="row" class="zprow zprow-container zpalign-items-flex-start zpjustify-content-flex-start zpdefault-section zpdefault-section-bg " data-equal-column=""><style type="text/css"> [data-element-id="elm_587LSM45PCdEV26d7WbSAg"].zprow{ border-radius:1px; } </style><div data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-8 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_zrlU52YkTRkQhP4BSNauxw" data-element-type="image" class="zpelement zpelem-image "><style> [data-element-id="elm_zrlU52YkTRkQhP4BSNauxw"].zpelem-image { border-radius:1px; } </style><div data-caption-color="" data-size-tablet="size-original" data-size-mobile="size-original" data-align="center" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimage-container zpimage-align-center zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="/files/Successful%20Security%20Awareness%20Training%20Program.jpg" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/Successful%20Security%20Awareness%20Training%20Program.jpg" size="original"/></picture></a></figure></div>
</div><div data-element-id="elm_3zZJSo2Y2wBtTkrKEDmqlg" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_3zZJSo2Y2wBtTkrKEDmqlg"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><p><span style="font-style:italic;">Click <a href="/files/Successful%20Security%20Awareness%20Training%20Program.jpg" target="_blank" rel="">here</a> to download the full infographic</span></p></div>
</div></div><div data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-4 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q" data-element-type="image" class="zpelement zpelem-image "><style> [data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q"].zpelem-image { border-radius:1px; } </style><div data-caption-color="" data-size-tablet="size-original" data-size-mobile="size-original" data-align="center" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimage-container zpimage-align-center zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/demo_kcm_partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KCM_Demo.jpg" size="original"/></picture></a></figure></div>
</div></div></div><div data-element-id="elm_JA7v4ZVdMgAguRdsoSwneQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_JA7v4ZVdMgAguRdsoSwneQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div><span style="font-weight:700;">Critical components of a successful security awareness program:</span></div>
<div><ul><ul><li>Use good, high quality content that’s highly relevant to your users</li><li>Reinforce the training with regular simulated phishing attacks</li><li>Stay current with what is happening in real phishing attacks - mirror the topics and methods used by cybercriminals</li></ul></ul></div>
<div><span style="font-weight:700;">How to motivate your users to do their training on time:</span></div>
<div><ul><ul><li>Lead with a carrot, not a stick! Reward users upon completion (could be a sticker, certificate, raffling off a gift card, etc.)</li><li>Make it a game and create healthy competition between departments or other groups</li><li>Get your leadership involved publicly - make sure it’s well known and seen. It will make the rest of the organisation want to follow in their footsteps</li></ul></ul></div>
<div><span style="font-weight:700;">How to gain and maintain executive support for your security awareness program:</span></div>
<div><ul><ul><li>Speak their language: Don’t get too technical, and tie it to business objectives (risk, reputation, business benefits, profit and loss impact, etc.)</li><li>Address the “why” and how does it help your organisation be more successful</li><li>Talk about cybersecurity in the news, how it was a result of human error, and how this program will help to mitigate human error</li></ul></ul></div>
<div><span style="font-weight:700;">How to measure the benefits of a successful security awareness program:</span></div>
<div><ul><ul><li>Track metrics like the phish-prone percentage of your organisation or number of phishing emails reported over time</li><li>Conduct surveys with different stakeholders to gauge their perception of the program’s success</li><li>Whatever you use to measure success, make sure it is defined, agreed upon and tracked</li></ul></ul></div>
<div><span style="font-weight:700;">How to develop a stronger security awareness culture over time:</span></div>
<div><ul><ul><li>Evaluate your organisation against the <a href="https://forms.zohopublic.eu/actisofttechnologycom/form/SecurityCultureReport2021/formperma/0VnPhieKikRwF3X5v74SOS9mozTV8ROGkMdWrEGTb2E" title="7 dimensions of security culture" target="_blank" rel="">7 dimensions of security culture</a>, and measure it against your industry’s benchmarks (we have done studies on this!)<br></li><li>Tie your security culture into your overall organisational culture so the two are not at odds</li><li>Understand that there is no fast track to a good security culture - by consistently following the advice above, you will develop a strong security awareness culture over time</li></ul></ul></div>
<div><div>We hope these tips can help you implement new-school security awareness training for your users. Here are <a href="https://support.knowbe4.com/hc/en-us/articles/4406863822483-How-to-Develop-a-Successful-Security-Awareness-Program" title="more in-depth videos" target="_blank" rel="">more in-depth videos</a> on our partner support site. Make sure you're prepared for Cybersecurity Awareness Month and beyond!&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;&nbsp;</div></div>
</div></div></div></div></div></div></div></div><div data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Get Your Free <span style="font-weight:700;">2021 Cybersecurity Awareness Month Resource Kit</span></span><br></h2></div>
<div data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div>In today's hybrid work environment, your users are more susceptible than ever to attacks like phishing and social engineering. Cybercriminals know this and are constantly changing tactics to exploit new vulnerabilities. We've put together these resources so you can keep your users on their toes with security top of mind. Request your kit now to help your users defend against cybercrime whether they are fully remote, back in the office, or a combination of both.</div></div></div>
</div><div data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/cybersecurity-awareness-month-resource-kit-partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/CS%20Awareness%20Month.png" size="medium" data-lightbox="false" style="width:624px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div><span style="color:inherit;font-weight:700;">Here's what you'll get:</span></div><div><span style="color:inherit;font-weight:700;"><div style="color:inherit;"><ul><li><span style="font-weight:400;">Access to&nbsp;<strong>free resources for you</strong>&nbsp;including our most popular on-demand webinar and whitepaper</span></li><li><span style="font-weight:400;">Resources to help you plan your activities, including your&nbsp;<strong>Cybersecurity Awareness Month Guide&nbsp;</strong>and&nbsp;<strong>Cybersecurity Awareness Weekly Planner<br></strong></span></li><li><span style="font-weight:400;">Two free&nbsp;training modules for your users;&nbsp;<strong>&quot;Your Role: Internet Security and You</strong><strong>&quot;</strong>&nbsp;and&nbsp;<strong>&quot;2021 Social Engineering Red Flags,&quot;&nbsp;</strong>both available in multiple&nbsp;languages</span></li><li><strong><span style="font-weight:400;">Resources to share with your users</span></strong><span style="font-weight:400;">&nbsp;including Kevin Mitnick cybersecurity demo videos, infographics, tip sheets, awareness posters, and wallpapers</span></li><li><strong><span style="font-weight:400;">All assets are printable and available digitally</span></strong><span style="font-weight:400;">, so they can be delivered to your users no matter where they are working from&nbsp;</span></li></ul></div></span></div></div>
</div></div><div data-element-id="elm_lakf-woJRpOS3VFy2y1mcg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_lakf-woJRpOS3VFy2y1mcg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/cybersecurity-awareness-month-resource-kit-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Get Your Free Resource Kit Now!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Fri, 01 Oct 2021 15:18:27 +0000</pubDate></item><item><title><![CDATA[Probability of Experiencing a Vendor Email Compromise Attack Increases 96%]]></title><link>https://www.actisofttechnology.com/blogs/post/probability-of-experiencing-a-vendor-email-compromise-attack-increases-96</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/Images/Small/iStock-836453798.jpg"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman Vendor Email Compromise requires first taking control of a strategic email account within the victim ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_K181GJulRSeMPB2AjTWqEQ" data-element-type="section" class="zpsection "><style type="text/css"> [data-element-id="elm_K181GJulRSeMPB2AjTWqEQ"].zpsection{ border-radius:1px; } </style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_dH7_4A98TlGro0W6gYV1_Q" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_sWFAZGeUSj-cOjCo3l4yQg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_6SOucho61sNVozqQ9bxmug" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_6SOucho61sNVozqQ9bxmug"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><div><span style="font-size:14px;">Written by Stu Sjouwerman</span></div></div>
</div><div data-element-id="elm_d_G0oN8UqZlyifTibcx0gw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_d_G0oN8UqZlyifTibcx0gw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/images/gef1f31aa752d3f1b4d534618bb365488fd303e7bacd59e35b9c6c9bd4c6307b965f927709fff7cd8b2961df9560b1789a4f8e3226bba916b49b091519d0fc506_1280.png" size="medium" data-lightbox="false" style="width:1280px;padding:0px;margin:0px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div><div><a href="/kcm-grc-vendor-risk" title="Vendor Email Compromise" target="_blank" rel="">Vendor Email Compromise</a> requires first taking control of a strategic email account within the victim organisations. According to new data, cybercriminals are getting really good at this.</div></div><div><br></div><div>Vendor Email Compromise – an attack where an email account is actually taken over rather than simply spoofed as seen in business email compromise attacks – can have a far greater impact on the organisation. Emails coming from a threat actor-controlled legitimate email account are much harder – if not impossible – to discern as being malicious in nature.</div></div></div></div>
</div></div><div data-element-id="elm_W5u15X0ZUSqQyfdx4NKi4Q" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_W5u15X0ZUSqQyfdx4NKi4Q"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://www.knowbe4events.com/kb4-con-emea?promo=0010c00001ywD8SAAU&amp;tr=true" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KB4-CON.png" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div><div>According to new data in Abnormal Security’s <a href="https://info.abnormalsecurity.com/threat-report-2021-q3.html" title="Q3 2021 Email Threat Report," target="_blank" rel="">Q3 2021 Email Threat Report,</a> email account takeovers are rising in both number and success rates:</div></div><div><ul><ul><li>The chance of experiencing a VEC attack has risen 96% over the last 12 months</li><li>Mid-sized companies are 43% likely to have at least one account takeover per quarter</li><li>Enterprises with 50K+ employees are 60% likely to be a victim of account takeover</li><li>The C-Suite is the most targeted group, at three times than VPs – the next targeted group</li><li>14% of account takeovers occur at department head levels within organizations</li><li>The average request in a VEC attack is $183,000, with the highest documented being $1.6 million</li></ul></ul></div><br><div><div>With the potential for VEC attacks to cost organisation’s millions annually, it’s first imperative to protect email accounts from the possibility of account takeover using multi-factor authentication and zero trust solutions that scrutinise requests to access email. It’s equally important to educate users involved with the organisation’s finances using <a href="/security-awareness-training" title="Security Awareness Training" target="_blank" rel="">Security Awareness Training</a> to maintain a sense of vigilance – even when a request comes from a legitimate source. It’s necessary to validate any unexpected requests using a separate communication medium to ensure the person believed to be asking is actually doing so.</div></div></div></div></div>
</div></div><div data-element-id="elm_vd_QDyLo9HvDhJ7o2WxobQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_vd_QDyLo9HvDhJ7o2WxobQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true">Request A Demo: KCM GRC</h2></div>
<div data-element-id="elm_MaW2PHPS0buy854OEBJgrQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_MaW2PHPS0buy854OEBJgrQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div>The new KCM GRC platform helps you get your audits done in half the time, is easy to use, and is surprisingly affordable. No more: &quot;UGH, is it that time again!&quot;&nbsp;</div></div></div>
</div><div data-element-id="elm_mdfoo19qzmlQXJLtBHEKZg" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_mdfoo19qzmlQXJLtBHEKZg"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/products-KCM2-3.png" size="medium" data-lightbox="false" style="width:800px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div>With KCM GRC you can:</div><div><ul><ul><li>Reduce the amount of time and money required to easily manage your compliance, risk and audit requirements</li><li>Automate reminders so you can quickly see what tasks have been completed, not met, and are past due</li><li>Simplify risk management with an intuitive interface simple workflow based on NIST 800-30.</li><li>Efficiently manage your third-party vendor risk requirements</li><li>Quickly implement compliance and risk assessment processes using KnowBe4's pre-built requirements and assessment templates</li></ul></ul></div></div></div>
</div></div><div data-element-id="elm_m5bg7tahQfKJKJ_xSqhWIA" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_m5bg7tahQfKJKJ_xSqhWIA"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/demo_kcm_partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Request Your Demo!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Mon, 20 Sep 2021 14:51:00 +0000</pubDate></item><item><title><![CDATA[Enterprise Organisations Have as Much as an 85% Chance of Receiving a BEC Attack Every Week]]></title><link>https://www.actisofttechnology.com/blogs/post/enterprise-organizations-have-as-much-as-an-85-chance-of-receiving-a-bec-attack-every-week</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/Images/Small/iStock-954712690.jpg"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman Business Email Compromise is a multi-billion dollar business, representing 43% of all cybercrime last ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_q9Zjddl-TNe5PvSMvevRBg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_6C67cXZNSbCWEWLAN5_R2w" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm__WDB6E18T6Gup6TVQCKUbg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q"].zpelem-text { border-radius:1px; margin-block-start:-14px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><p><span style="font-size:14px;">Written by Stu Sjouwerman</span><br></p></div></div>
</div><div data-element-id="elm_3mjB-29c7RdhmDcheD_hTA" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_3mjB-29c7RdhmDcheD_hTA"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium hb-lightbox " data-lightbox-options="
            type:fullscreen,
            theme:dark"><figure role="none" class="zpimage-data-ref"><span class="zpimage-anchor" role="link" tabindex="0" aria-label="Open Lightbox" style="cursor:pointer;"><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Small/iStock-533992794.jpg" size="medium" data-lightbox="true" style="width:591px;"/></picture></span></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div style="color:inherit;"><div>Business Email Compromise is a multi-billion dollar business, representing 43% of all cybercrime last year. Despite it being dwarfed in the news by ransomware, it represents a growing and consistent threat.</div><div><br></div><div><div>We’ve seen recent rises in BEC activity – along with a number of other cyberattacks – in both frequency and cost. But BEC tends to get lost in the shuffle; particularly when <a href="/ransomware" title="ransomware" target="_blank" rel="">ransomware</a> news has ransoms in the millions of dollars and seems to happen every day. But BEC is just as impactful a cyberattack and, from the latest data, seems to be happening quite frequently.</div></div><div><br></div><div><span style="color:inherit;">Keep in mind that most BEC attacks are limited in scope to the one and only CFO in your organisation or a small group of individuals in the finance department. The good news is as the organisation grows, the number of BEC attacks won’t necessarily increase. The bad news is that threat actors only need to focus on a few people to be successful.</span></div></div></div></div></div>
</div></div><div data-element-id="elm_587LSM45PCdEV26d7WbSAg" data-element-type="row" class="zprow zprow-container zpalign-items-flex-start zpjustify-content-flex-start zpdefault-section zpdefault-section-bg " data-equal-column=""><style type="text/css"> [data-element-id="elm_587LSM45PCdEV26d7WbSAg"].zprow{ border-radius:1px; } </style><div data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-8 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div><div style="color:inherit;"><div><div>In addition to enterprises having a high probability of attack, according to Abnormal Security’s <a href="https://info.abnormalsecurity.com/threat-report-2021-q3.html" title="Q3 2021 Email Threat Report" target="_blank" rel="">Q3 2021 Email Threat Report</a>, businesses of every size are at risk:</div></div><div><br></div><div><ul><ul><li>Small organisations under 500 employees have a 42% probability of receiving a BEC attack each week</li><li>Mid-sized organisations, a 60-70% chance</li></ul></ul></div><br><div><div>Part of this growth is the expansion in operational methods used by cybercriminal groups seen on the dark web. <a href="https://intel471.com/blog/bec-cybercrime-underground" title="Posts on cybercrime forums have been spotted that attempt to recruit or outsource functions related to BEC scams" target="_blank" rel="">Posts on cybercrime forums have been spotted that attempt to recruit or outsource functions related to BEC scams</a> – particularly those looking for native-English speakers to help improve the credibility and efficacy of <a href="/social-engineering" title="social engineering" target="_blank" rel="">social engineering</a> elements in BEC attacks.</div></div><br><div><div><span style="color:inherit;">Because BEC relies pretty heavily on social engineering and spoofing companies, domains, and/or an individual, putting employees through <a href="/security-awareness-training" title="Security Awareness Training" target="_blank" rel="">Security Awareness Training</a> is an effective way to minimise the threat surface of phishing attacks and stop BEC attacks before they have an opportunity to make an organisation a victim.</span><br></div></div></div></div>
</div></div></div></div><div data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-4 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q" data-element-type="image" class="zpelement zpelem-image "><style> [data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q"].zpelem-image { border-radius:1px; } </style><div data-caption-color="" data-size-tablet="size-original" data-size-mobile="size-original" data-align="center" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimage-container zpimage-align-center zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://www.knowbe4events.com/kb4-con-emea?promo=0010c00001ywD8SAAU&amp;tr=true" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KB4-CON.png" size="original"/></picture></a></figure></div>
</div></div></div><div data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true"><span style="color:inherit;">Can hackers spoof an email address of your own domain?</span><br></h2></div>
<div data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-large zpimage-tablet-fallback-large zpimage-mobile-fallback-large "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/Spoof.png" size="large" data-lightbox="false" style="width:349px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div>Are you aware that one of the first things hackers try is to see if they can spoof the email address of your CEO? If they are able to commit &quot;CEO Fraud&quot;, penetrating your network is like taking candy from a baby.</div><div><br></div><div>Now they can launch a &quot;CEO fraud&quot; spear phishing attack on your organisation, and that type of attack is very hard to defend against, unless your users are highly ‘security awareness’ trained.</div><div><br></div><div>Find out now if your domain can be spoofed. The Domain Spoof Test (DST) is a one-time free service. Run this test so you can address any mail server configuration issues that are found.</div></div>
</div></div><div data-element-id="elm_lakf-woJRpOS3VFy2y1mcg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_lakf-woJRpOS3VFy2y1mcg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/domain-spoof-test-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Try To Spoof Me!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Mon, 20 Sep 2021 08:31:00 +0000</pubDate></item><item><title><![CDATA[U.K. Organisations See Double the Number of Ransomware Attacks in the First Half of 2021]]></title><link>https://www.actisofttechnology.com/blogs/post/u.k.-organisations-see-double-the-number-of-ransomware-attacks-in-the-first-half-of-2021</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/Images/Small/iStock-475412566s.jpg"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman New analysis of ransomware incidents reported to the UK's Information Commissioner's Office (ICO) in ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_q9Zjddl-TNe5PvSMvevRBg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_6C67cXZNSbCWEWLAN5_R2w" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm__WDB6E18T6Gup6TVQCKUbg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><p><span style="font-size:14px;">Written by Stu Sjouwerman</span><br></p></div></div>
</div><div data-element-id="elm_3mjB-29c7RdhmDcheD_hTA" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_3mjB-29c7RdhmDcheD_hTA"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium hb-lightbox " data-lightbox-options="
            type:fullscreen,
            theme:dark"><figure role="none" class="zpimage-data-ref"><span class="zpimage-anchor" role="link" tabindex="0" aria-label="Open Lightbox" style="cursor:pointer;"><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Small/iStock-693352614.jpg" size="medium" data-lightbox="true" style="width:724px;"/></picture></span></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div style="color:inherit;"><div><div>New analysis of <a href="/ransomware" title="ransomware" target="_blank" rel="">ransomware</a> incidents reported to the UK's Information Commissioner's Office (ICO) in the first half of 2021 show a massive rise when compared to 2020.</div></div><div><br></div><div>Utilising incident data reported to the ICO, British cyber security organisation CybSafe has determined that 22% of all cyber incidents in the first six months of 2021 were attributed to ransomware attacks. This is double the 11% found in the first half of 2020.</div><div><br></div><div><span style="color:inherit;">This doubling of the number of reported attacks is troubling, but not surprising, as 35% of all U.K.&nbsp;</span><span style="color:inherit;">businesses experience ransomware attacks (with the global average being 37%), according to Sophos’ State of Ransomware 2021 report.&nbsp;</span><br></div></div></div></div>
</div></div><div data-element-id="elm_587LSM45PCdEV26d7WbSAg" data-element-type="row" class="zprow zprow-container zpalign-items-flex-start zpjustify-content-flex-start zpdefault-section zpdefault-section-bg " data-equal-column=""><style type="text/css"> [data-element-id="elm_587LSM45PCdEV26d7WbSAg"].zprow{ border-radius:1px; } </style><div data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-8 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div><div><span style="color:inherit;">Additionally, 63% of U.K. businesses affected by ransomware reported their organisations' brand was negatively impacted, according to <a href="https://www.cybereason.com/hubfs/dam/collateral/ebooks/Cybereason_Ransomware_Research_2021.pdf" title="CyberReason’s Ransomware: The True Cost To Business" target="_blank" rel="">CyberReason’s Ransomware: The True Cost To Business</a> report, making ransomware a legitimate threat to business longevity in the U.K.</span><br></div></div><div><span style="color:inherit;"><br></span></div><div><div style="color:inherit;"><div>CybSafe’s analysis found that phishing was the primary cause of all cyber breaches reported to the ICO in the first half of this year, making up 40% of all successful attacks. Phishing continues to be a thorn in cybersecurity’s side, with some percentage of attacks finding their way past security solutions and into the Inbox where an unsuspecting user is fooled into clicking on malicious links and attachments.</div><br><div><div><span style="color:inherit;">It’s only through continual <a href="/security-awareness-training" title="Security Awareness Training" target="_blank" rel="">Security Awareness Training</a> that users will elevate their state of vigilance, always being on the lookout for malicious content and reducing whatever threat surface remains by the time an attack reaches the Inbox.</span><br></div></div></div></div>
</div></div></div></div><div data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-4 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q" data-element-type="image" class="zpelement zpelem-image "><style> [data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q"].zpelem-image { border-radius:1px; } </style><div data-caption-color="" data-size-tablet="size-original" data-size-mobile="size-original" data-align="center" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimage-container zpimage-align-center zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://www.knowbe4events.com/kb4-con-emea?promo=0010c00001ywD8SAAU&amp;tr=true" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KB4-CON.png" size="original"/></picture></a></figure></div>
</div></div></div><div data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true">Free <span style="font-weight:700;">Ransomware Simulator Tool</span></h2></div>
<div data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div>Threat actors are constantly coming out with new strains to evade detection. Is your network effective in blocking all of them when employees fall for social engineering attacks?</div><p><br></p><div>KnowBe4’s &quot;RanSim&quot; gives you a quick look at the effectiveness of your existing network protection. RanSim will simulate 22 ransomware infection scenarios and 1 cryptomining infection scenario and show you if a workstation is vulnerable.</div></div>
</div><div data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/RanSim1.png" size="medium" data-lightbox="false" style="width:500px;padding:0px;margin:0px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div>Here's how it works:</div><p><span style="color:inherit;"><br></span></p><div><ul><ul><li>100% harmless simulation of real ransomware and cryptomining infections</li><li>Does not use any of your own files</li><li>Tests 21 types of infection scenarios</li><li>Just download the install and run it&nbsp;</li><li>Results in a few minutes!</li></ul></ul></div></div>
</div></div><div data-element-id="elm_lakf-woJRpOS3VFy2y1mcg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_lakf-woJRpOS3VFy2y1mcg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/ransomware-simulator-tool-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Get RanSim!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Tue, 31 Aug 2021 07:28:00 +0000</pubDate></item><item><title><![CDATA[Defending Against Ransomware Attacks Should Start (and Can End) With Security Awareness Training]]></title><link>https://www.actisofttechnology.com/blogs/post/defending-against-ransomware-attacks-should-start-and-can-end-with-security-awareness-training</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.com/images/gb4e62795cd16a8439b2fc1ed82c1697a961bf84e8f9fa89dd657012e391e6aef79c1bb4ccdd1108873ac6b30fadb1ebedbef324a7b2c4c4e03b1532613015d19_1280.png"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman The world’s most dangerous, expensive, and impactful cyb ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_q9Zjddl-TNe5PvSMvevRBg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_6C67cXZNSbCWEWLAN5_R2w" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm__WDB6E18T6Gup6TVQCKUbg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_tLy_Dq63O9vnRYHXd0zM-Q"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><p><span style="font-size:14px;">Written by Stu Sjouwerman</span><br></p></div></div>
</div><div data-element-id="elm_3mjB-29c7RdhmDcheD_hTA" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_3mjB-29c7RdhmDcheD_hTA"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium hb-lightbox " data-lightbox-options="
            type:fullscreen,
            theme:dark"><figure role="none" class="zpimage-data-ref"><span class="zpimage-anchor" role="link" tabindex="0" aria-label="Open Lightbox" style="cursor:pointer;"><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Medium/iStock-957855506.jpg" size="medium" data-lightbox="true" style="width:1288px;padding:0px;margin:0px;"/></picture></span></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div> The world’s most dangerous, expensive, and impactful cyberattack can potentially be stopped with little more than a conscientious user who is paying attention. </div>
<br><div><div>It feels like every year I need to be saying “this year is the year of <a href="/ransomware" title="ransomware" target="_blank" rel="">ransomware</a>”. Every year the attacks become more frequent, the number of players increase, the ransom demands get larger, and the payouts reach new unprecedented levels.&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;</div></div>
<div><br></div><div><br></div></div></div></div></div><div data-element-id="elm_587LSM45PCdEV26d7WbSAg" data-element-type="row" class="zprow zprow-container zpalign-items-flex-start zpjustify-content-flex-start zpdefault-section zpdefault-section-bg " data-equal-column=""><style type="text/css"> [data-element-id="elm_587LSM45PCdEV26d7WbSAg"].zprow{ border-radius:1px; } </style><div data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-8 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_Yf3quOfsTxM19wwGuLoiXA"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_F6S8kRC9Os-myOnX_swuZQ"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div style="color:inherit;"><div> Most cybersecurity strategies focus on layering in security solutions that prevent, detect, and respond to any kind of malware-based attacks – which includes ransomware. One aspect of the attack chain that can have a material impact on the effectiveness of your ransomware defence is the very prevalent human element. In most cases, phishing attacks are the primary initial attack vector, causing your users to stand squarely in between the ransomware attack and your organisation. </div>
<div><br></div><div> No single security solution can stop every attack, so it makes sense that because ransomware gangs – in part – require users to interact with malicious email content to enable an attack, educating those users via Security Awareness Training to spot an attack to stop it from ever continuing. </div>
<div><br></div><div><div>So, your ransomware defence strategy should start with <a href="/security-awareness-training" title="Security Awareness Training" target="_blank" rel="">Security Awareness Training</a> because you have no guarantee that the next attack will be stopped by solutions. But a user can make the difference between a boring normal workday and one where your entire operations has come to a screeching halt.&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;&nbsp;</div></div>
</div></div></div></div><div data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-4 zpcol-sm-12 zpalign-self- zpdefault-section zpdefault-section-bg "><style type="text/css"> [data-element-id="elm_LiVheRlYJi4oUfD4wnsEjQ"].zpelem-col{ border-radius:1px; } </style><div data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q" data-element-type="image" class="zpelement zpelem-image "><style> [data-element-id="elm_8NlPoQtTt8dp6IqB7SGe_Q"].zpelem-image { border-radius:1px; } </style><div data-caption-color="" data-size-tablet="size-original" data-size-mobile="size-original" data-align="center" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimage-container zpimage-align-center zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/demo_kcm_partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KCM_Demo.jpg" size="original"/></picture></a></figure></div>
</div></div></div><div data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_j1GPNhCyG2T9p4uNG17NLQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true">Free <span style="font-weight:700;">Ransomware Simulator Tool</span></h2></div>
<div data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_-2vkxbLxB2YzRFBtSWUGUw"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div>Threat actors are constantly coming out with new strains to evade detection. Is your network effective in blocking all of them when employees fall for social engineering attacks?</div><p><br></p><div>KnowBe4’s &quot;RanSim&quot; gives you a quick look at the effectiveness of your existing network protection. RanSim will simulate 22 ransomware infection scenarios and 1 cryptomining infection scenario and show you if a workstation is vulnerable.</div></div>
</div><div data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_jn_Bv_RZV2kptnSAWJFZQw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/RanSim1.png" size="medium" data-lightbox="false" style="width:500px;padding:0px;margin:0px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div>Here's how it works:</div><p><span style="color:inherit;"><br></span></p><div><ul><ul><li>100% harmless simulation of real ransomware and cryptomining infections</li><li>Does not use any of your own files</li><li>Tests 21 types of infection scenarios</li><li>Just download the install and run it&nbsp;</li><li>Results in a few minutes!</li></ul></ul></div></div>
</div></div><div data-element-id="elm_lakf-woJRpOS3VFy2y1mcg" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_lakf-woJRpOS3VFy2y1mcg"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/ransomware-simulator-tool-partner?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Get RanSim!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Fri, 20 Aug 2021 13:45:50 +0000</pubDate></item><item><title><![CDATA[Can the Microsoft 365 Platform Be Trusted to Stop Security Breaches?]]></title><link>https://www.actisofttechnology.com/blogs/post/defending-against-ransomware-attacks-should-start-and-can-end-with-security-awareness-training1</link><description><![CDATA[<img align="left" hspace="5" src="https://www.actisofttechnology.comhttps://images.unsplash.com/photo-1484069560501-87d72b0c3669?crop=entropy&amp;cs=tinysrgb&amp;fit=max&amp;fm=jpg&amp;ixid=Mnw0NTc5N3wwfDF8c2VhcmNofDE1fHxicmVhY2h8ZW58MHx8fHwxNjI5NTU3NDA0&amp;ixlib=rb-1.2.1&amp;q=80&amp;w=1080"/>Blog courtesy of KnowBe4 Written by Stu Sjouwerman Lax security policies, a lack of security measures and solutions in place, and an expectation that Mi ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_K181GJulRSeMPB2AjTWqEQ" data-element-type="section" class="zpsection "><style type="text/css"> [data-element-id="elm_K181GJulRSeMPB2AjTWqEQ"].zpsection{ border-radius:1px; } </style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_dH7_4A98TlGro0W6gYV1_Q" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_sWFAZGeUSj-cOjCo3l4yQg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_6SOucho61sNVozqQ9bxmug" data-element-type="text" class="zpelement zpelem-text "><style> [data-element-id="elm_6SOucho61sNVozqQ9bxmug"].zpelem-text { border-radius:1px; } </style><div class="zptext zptext-align-left " data-editor="true"><div><span style="font-size:14px;">Blog courtesy of KnowBe4</span></div><div><span style="font-size:14px;">Written by Stu Sjouwerman</span></div></div>
</div><div data-element-id="elm_d_G0oN8UqZlyifTibcx0gw" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_d_G0oN8UqZlyifTibcx0gw"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/images/g3616026baed2d5e696c8211a6db3392309930754db25cdefdddf8c7664ef69c1acb3efb2ea2e1a55fd333d91fb9a1366c12549878c619520c1ee93c44e6acd6a_1280.jpg" size="medium" data-lightbox="false" style="width:1280px;padding:0px;margin:0px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div>Lax security policies, a lack of security measures and solutions in place, and an expectation that Microsoft will address any security issues is putting organisations at risk.</div><br><div><div>Microsoft has gone to great lengths to ensure their Microsoft 365 platform offers modern security measures to keep their customers' data safe. But according to <a href="https://www.hornetsecurity.com/en/security-information/microsoft365-email-security-survey/" title="new data from cloud email security provider Hornet Security" target="_blank" rel="">new data from cloud email security provider Hornet Security</a>, 25% of organisations have reported a known email-based security breach, and it begs the question “why?”</div></div></div></div>
</div></div><div data-element-id="elm_W5u15X0ZUSqQyfdx4NKi4Q" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_W5u15X0ZUSqQyfdx4NKi4Q"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-medium zpimage-tablet-fallback-medium zpimage-mobile-fallback-medium "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/demo_kcm_partner?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/KCM_Demo.jpg" size="medium" data-lightbox="false" style="width:300px;"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><div style="color:inherit;"><div>According to Hornet Security, a lot of the issue resides with organisations not taking advantage of security features – whether from Microsoft or a third-party:</div><div><ul><ul><li>33% of organisations are not using Microsoft’s multi-factor authentication (MFA)</li><li>Of those using MFA, 55% of organisations are not using Conditional Access which scrutinizes connection requests beyond just providing credentials and additional authentication factors</li><li>Only 43% leverage Microsoft’s data loss prevention policies to keep data from leaving the organisation</li><li>68% of organisations expect Microsoft to keep email safe from threats</li></ul></ul></div><br><div>What’s interesting is that almost none of these features (with the exception of MFA) address the core issue – phishing and compromised credentials. For every organisation that has experienced a security breach, there’s a phishing email riddled with social engineering tactics and, more importantly, a recipient user who engages and activates attacker’s malicious content.</div><div><br></div><div><div>It’s imperative that organisations recognise the need to follow the attack kill chain and see one of the weakest links is the user who unwittingly enables threat actors by falling for phishing scams. Users that undergo continual <a href="/security-awareness-training" title="Security Awareness Training" target="_blank" rel="">Security Awareness Training</a> are better equipped on a daily basis to see phishing attacks for what they really are and keep the organization safe by not playing their role in an email-based attack.</div></div></div></div>
</div></div><div data-element-id="elm_vd_QDyLo9HvDhJ7o2WxobQ" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_vd_QDyLo9HvDhJ7o2WxobQ"].zpelem-heading { border-radius:1px; } </style><h2
 class="zpheading zpheading-style-none zpheading-align-center " data-editor="true">Request A Demo:&nbsp;<span style="font-weight:700;">Security Awareness Training</span></h2></div>
<div data-element-id="elm_mdfoo19qzmlQXJLtBHEKZg" data-element-type="imagetext" class="zpelement zpelem-imagetext "><style> [data-element-id="elm_mdfoo19qzmlQXJLtBHEKZg"].zpelem-imagetext{ border-radius:1px; } </style><div data-size-tablet="size-original" data-size-mobile="size-original" data-align="right" data-tablet-image-separate="" data-mobile-image-separate="" class="zpimagetext-container zpimage-with-text-container zpimage-align-right zpimage-size-original zpimage-tablet-fallback-original zpimage-mobile-fallback-original "><figure role="none" class="zpimage-data-ref"><a class="zpimage-anchor" href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank" rel=""><picture><img class="zpimage zpimage-style-none zpimage-space-none " src="/Images/Other/SAT.png" size="original" data-lightbox="false"/></picture></a></figure><div class="zpimage-text zpimage-text-align-left " data-editor="true"><p><span style="color:inherit;">New-school Security Awareness Training is critical to enabling you and your IT staff to connect with users and help them make the right security decisions all of the time. This isn't a one and done deal, continuous training and simulated phishing are both needed to mobilise users as your last line of defence. Request your one-on-one demo of KnowBe4's security awareness training and simulated phishing platform and see how easy it can be!</span><br></p></div>
</div></div><div data-element-id="elm_m5bg7tahQfKJKJ_xSqhWIA" data-element-type="button" class="zpelement zpelem-button "><style> [data-element-id="elm_m5bg7tahQfKJKJ_xSqhWIA"].zpelem-button{ border-radius:1px; } </style><div class="zpbutton-container zpbutton-align-left "><style type="text/css"></style><a class="zpbutton-wrapper zpbutton zpbutton-type-primary zpbutton-size-lg zpbutton-style-oval " href="https://info.knowbe4.com/one-on-one-demo-partners?partnerid=0010c00001ywD8SAAU" target="_blank"><span class="zpbutton-content">Save My Spot!</span></a></div>
</div></div></div></div></div></div> ]]></content:encoded><pubDate>Fri, 20 Aug 2021 13:45:50 +0000</pubDate></item></channel></rss>