BYOD Trends for Remote Workers -Finding the balance between security and privacy

The BYOD (Bring-Your-Own-Device) age has been around now for some time. The megatrends of remote work brought on by the pandemic have forced security professionals to sacrifice securing the endpoint with productivity overnight work from home policies on BYOD. Cybercriminals have taken advantage of the sudden shift with significant business ... Read More

Did One Phish Take Down a Pipeline?

What the Colonial Pipeline Attack Reminds Us About Phishing and Ransomware As demonstrated with the Colonial Pipeline attack, Ransomware is the number one cybersecurity threat to organizations, but it’s also the number one security threat to humans. It impacts schools, medical centers, and communities. Phishing is the number one cause ... Read More
Multi-Factor Authentication is Not Foolproof Protection

Multi-Factor Authentication is Not Foolproof Protection

| | Uncategorized
Multi-Factor Authentication (MFA) has become increasingly common both in business and personal use. Yet, despite MFA providing increased security, threat actors are using the availability of sophisticated technology and even legitimate infrastructure to bypass this and access corporate networks and personal data. To the uninitiated, MFA is when a user ... Read More

Prepare Your Organization for MFA Compromise

Learn how Hackers are Bypassing MFA with Astonishing Accuracy  Understanding and preparing for how cybercriminals are bypassing Multi-Factor Authentication (MFA) is imperative for protecting your organization. The Cybersecurity & Infrastructure Security Agency (CISA) issued a warning in early 2021 that cybercriminals are using the cloud to bypass MFA. Threat actors are abusing the ... Read More
Thousands of Zero-Day Spear Phishing Attacks Continue to Target Covid-19 Pharmaceuticals

Thousands of Zero-Day Spear Phishing Attacks Continue to Target Covid-19 Pharmaceuticals

Three days before the end of 2020 SlashNext Threat Labs observed a flurry of spear-phishing attacks targeting companies working to deliver Covid-19 vaccines and therapeutics to curb the pandemic. Many of these attacks continue and have been active during the first quarter of 2021 with more than 1,000 spear phishing ... Read More
Security Training vs. AI and MLTechnology

You Want to Know How to Stop Phishing for Good. Hint: It’s Not a Silver Bullet

In a recent survey, security professionals in mid to large-sized organizations were asked how to mitigate phishing and malware risk. The answers revealed a mix of the strategies and a healthy dose of concern for the strategies’ efficacy. Osterman Research conducted an in-depth survey of security-focused professionals for their latest ... Read More

Constant Vigilance Required to Defeat Continually Evolving Phishing Threats

It’s been a year since states first enacted shelter in place orders, most employees began working outside their office networks at home.  In 2020, phishing attacks grew 42%, according to new data in SlashNext’s State of Phishing 2021 report. The average cost of a corporate breach was $2.8 million, making phishing an urgent issue. What ... Read More
Phishing Attacks that Defeat 2FA Every Time

Phishing Attacks that Defeat 2FA Every Time

Protected with 2FA? Think Again. Two-factor authentication (2FA) is certainly a best practice for corporate security, but cybercriminals are also quite good at defeating it, often without a user’s knowledge. However 2FA is not a panacea and just like cyber awareness training, it is just one part of a total ... Read More

Social Engineering Attacks Hacking Humans Today

Earlier this year, SlashNext debuted “Phish Stories,” a videocast and podcast series during which cybersecurity experts discuss new zero-hour phishing attacks before a live audience of CISOs, CSOs and cybersecurity professionals. In Episode Two, Zero-Hour Attacks Hacking Humans Today, Patrick is joined by Chris Hadnagy, the Founder and CEO of The Social ... Read More

Next-Gen Protection Essential to Prevent Evolving Phishing Attacks 

In early February, SlashNext debuted “Phish Stories,” a videocast and podcast series designed to educate cybersecurity professionals about the latest, most innovative phishing attacks challenging businesses today.     In each episode, cybersecurity experts discuss new zero-hour phishing attacks — their latest strategies, attack vectors, and technologies used to manipulate and deceive people — before a live audience of CISOs, CSOs and cybersecurity professionals.    Experts also discuss steps organizations can take to protect their ... Read More