home.social

#knowbe4 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #knowbe4, aggregated by home.social.

fetched live
  1. Phishing campaigns increasingly harness AI to evade detection

    Phishing campaigns are getting smarter by the minute, with a whopping 86% of recent attempts leveraging AI to sneak past detection. This marks a significant jump from just two years ago, when AI was used in 80% of phishing ops.

    osintsights.com/phishing-campa

    #Phishing #Ai #EmergingThreats #Knowbe4 #PhishingThreatTrends

  2. At work we're using MS-hosted #Exchange and #Outlook for email. We're looking at products which can help us with the following:

    • Cut down on incoming spam, phish (particularly BEC)
    • Do Data Loss Prevention for outbound email
    • Good reporting
    • Good interface for non-technical users

    We're currently considering #Mimecast and #KnowBe4 products, I'm wondering if there's anything I'm sleeping on that people can recommend. :boosts_ok_gay:

    (and yes, I know, for my personal email I self-host my own Exim / Dovecot stack, don't @ me)

    #Windows #Microsoft

  3. At work we're using MS-hosted #Exchange and #Outlook for email. We're looking at products which can help us with the following:

    • Cut down on incoming spam, phish (particularly BEC)
    • Do Data Loss Prevention for outbound email
    • Good reporting
    • Good interface for non-technical users

    We're currently considering #Mimecast and #KnowBe4 products, I'm wondering if there's anything I'm sleeping on that people can recommend. :boosts_ok_gay:

    (and yes, I know, for my personal email I self-host my own Exim / Dovecot stack, don't @ me)

    #Windows #Microsoft

  4. Sponsor Announcement 📣

    We’re proud to welcome KnowBe4 back as a returning sponsor for BSides Vancouver Island 2025! 🎉

    As a global leader in security awareness training and simulated phishing, KnowBe4 is helping organizations foster strong security cultures from the inside out.

    Their continued support, now in their second year, is a testament to their commitment to grassroots cybersecurity communities like ours.

    Thank you, KnowBe4, for standing with us again this year. We’re excited to continue building something meaningful together. 💛

    #BSidesVI2025 #KnowBe4 #CyberSecurity #SecurityAwareness

  5. @JosephMenn Oh so THAT is how that #KnowBe4 managed to get bamboozled into hiring a DPRK hacker. The dude from Nashville is absolutely getting sanctioned hard
  6. A North Korean #Hacker Tricked a US #Security Vendor Into Hiring Him—and Immediately Tried to #Hack Them

    #KnowBe4 detailed the incident in a recent blog post as a warning for other potential targets.
    #northkorea

    wired.com/story/north-korean-h

  7. A North Korean #Hacker Tricked a US #Security Vendor Into Hiring Him—and Immediately Tried to #Hack Them

    #KnowBe4 detailed the incident in a recent blog post as a warning for other potential targets.
    #northkorea

    wired.com/story/north-korean-h

  8. "Security firm accidentally hires North Korean hacker, did not #KnowBe4 " :AngeryCat:

  9. "Security firm accidentally hires North Korean hacker, did not #KnowBe4 " :AngeryCat:

  10. fascinating story from #KnowBe4: "How a North Korean Fake IT Worker Tried to Infiltrate Us"
    one can only wonder how many fake workers are currently active in companies
    blog.knowbe4.com/how-a-north-k

  11. fascinating story from #KnowBe4: "How a North Korean Fake IT Worker Tried to Infiltrate Us"
    one can only wonder how many fake workers are currently active in companies
    blog.knowbe4.com/how-a-north-k

  12. Literally social engineerd the former company of the guy who pretty much invented social engineering. Wild.
    KnowBe4 mistakenly hires North Korean hacker, faces infostealer attack #hack #socialengineering #KnowBe4
    bleepingcomputer.com/news/secu

  13. North Korean hacker got hired by US security vendor, immediately loaded malware - Enlarge / On the left, a stock photo. On the right, an AI-enhanced imag... - arstechnica.com/?p=2039069 #knowbe4northkoreanhacker #security #knowbe4 #policy

  14. North Korean hacker got hired by US security vendor, immediately loaded malware - Enlarge / On the left, a stock photo. On the right, an AI-enhanced imag... - arstechnica.com/?p=2039069 #knowbe4northkoreanhacker #security #knowbe4 #policy

  15. Via @arstechnica: US #security awareness training firm #KnowBe4 unwittingly hired an apparent “nation-state” #hacker from #NorthKorea: arstechnica.com/tech-policy/20

    KnowBe4’s main claim to fame was partnering with the late #KevinMitnick, a self-aggrandizing former fugitive hacker and cause célèbre of @2600, who narrated many of the company’s videos. I’ve worked at several companies that required yearly viewing of KnowBe4’s #InfoSec material. 🤮

  16. Helpful incident report from #KnowBe4 on how a North Korean hacker managed to get hired by the company and then got caught. Important lessons to be learned:

    blog.knowbe4.com/how-a-north-k

    #NorthKorea #DPRK #Cybersecurity

  17. We're thrilled to announce that
    @knowbe4 the world's largest security awareness training and simulated phishing platform, is joining BSides Vancouver Island 2024 as a Bronze Tier Sponsor! Stay tuned for more updates! #BSidesVI2024 #CyberSecurity #KnowBe4

  18. Just completing my #KnowBe4 training for work and they show me this fake attack email:

    Lol if only this were real

    #Tesla #ElonMusk #Elon #Phishing

  19. KnowBe4 Password Policy

    In 2022, KnowBe4 released its first e-book covering password attacks, defenses and what your corporate password policy should be. Here is a summary of their recommendations:

    ☑️​ Whenever possible, use phishing-resistant Multifactor Authentication (MFA).
    ☑️​ Use MFA and / or long passwords or passphrases to log on to your devices.
    ☑️​ If you can, use a password manager.
    ☑️​ 12-character perfectly random 4-class passwords defeat all known guessing/cracking attacks.
    ☑️​ If you must think up a password yourself, create a unique and long password or passphrase (at least 20 characters) for all sites and services.

    I’m interested in how we translate this corporate-directed advice into something actionable for ordinary people, outside of organizations with infosec budgets.

    Especially interesting is the fact that — as far as we’re aware — no one has cracked a 12-character, random 4-class password. I’ve circled that below in red . . . kinda rough . . . I’m no graphic designer, for sure!

    Have you heard of this kind of password being cracked out in the wild?

    blog.knowbe4.com/password-poli

    #Passwords
    #PasswordManagers
    #ComplexPasswords
    #SpecialCharactersInPasswords
    #KnowBe4

  20. KnowBe4 Password Policy

    In 2022, KnowBe4 released its first e-book covering password attacks, defenses and what your corporate password policy should be. Here is a summary of their recommendations:

    ☑️​ Whenever possible, use phishing-resistant Multifactor Authentication (MFA).
    ☑️​ Use MFA and / or long passwords or passphrases to log on to your devices.
    ☑️​ If you can, use a password manager.
    ☑️​ 12-character perfectly random 4-class passwords defeat all known guessing/cracking attacks.
    ☑️​ If you must think up a password yourself, create a unique and long password or passphrase (at least 20 characters) for all sites and services.

    I’m interested in how we translate this corporate-directed advice into something actionable for ordinary people, outside of organizations with infosec budgets.

    Especially interesting is the fact that — as far as we’re aware — no one has cracked a 12-character, random 4-class password. I’ve circled that below in red . . . kinda rough . . . I’m no graphic designer, for sure!

    Have you heard of this kind of password being cracked out in the wild?

    blog.knowbe4.com/password-poli

    #Passwords
    #PasswordManagers
    #ComplexPasswords
    #SpecialCharactersInPasswords
    #KnowBe4