Return-Path: <1921889-409-1022@be2.maropost.com>
Delivered-To: edward@transocean.com
Received: from vps.transocean.com
	by vps.transocean.com (Dovecot) with LMTP id +d82Lc4YUVkEdwAAInt2oQ
	for <edward@transocean.com>; Mon, 26 Jun 2017 07:23:10 -0700
Return-path: <1921889-409-1022@be2.maropost.com>
Envelope-to: edward@transocean.com
Delivery-date: Mon, 26 Jun 2017 07:23:10 -0700
Received: from mta7155.mp2200.com ([162.247.117.155]:31057)
	by vps.transocean.com with esmtp (Exim 4.89)
	(envelope-from <1921889-409-1022@be2.maropost.com>)
	id 1dPUul-0007wl-L7
	for edward@transocean.com; Mon, 26 Jun 2017 07:23:10 -0700
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
 s=default; d=knowbe4.com; t=1498486975; l=1; h=from:subject:date:to;
 bh=nR4OLZRZ0GUjrRPiikCTwjFrqv567Fsl8w66LhE1mcQ=;
 b=xeaX9ecDgUiEfdINmy2/eSZ2lnzz97qwY6/7EFnnrEqMsQqxINc6qubvr+mjWRsX9pF+lN
 nqn+vaYea1xXYs+Q3thVJEXVBAaABewGReDGllSMQ1bELXHrW+7JJ2Li60tPQjd9PfMmMF
 xBnMmJ3YKrW/vJT7cdEOntQnXdfDr6M=
Received: from [<1921889-409-1022@be2.maropost.com>] ([<1921889-409-1022@be2.maropost.com>] helo=) 
 by 649892-mailer2 (envelope-from 1921889-409-1022@be2.maropost.com)
 (Jetsend MTA 0.0.1 with ESMTP; Mon Jun 26 10:17:50 EDT 2017
Date: Mon, 26 Jun 2017 10:17:48 -0400
From: CyberheistNews <feedback@knowbe4.com>
Reply-To: feedback@knowbe4.com
To: edward@transocean.com
Message-ID: <27be5140-3ca8-0135-4887-1402ec83b870@knowbe4.com>
Subject: [HEADS UP] Ransomware Now Hits Linux - Web Hosting Provider Pays a
 Million
Mime-Version: 1.0
Content-Type: multipart/alternative;
 boundary="--==_mimepart_5951178c72fc8_9793460689c50544533";
 charset=UTF-8
Content-Transfer-Encoding: 7bit
List-Unsubscribe: <mailto:1921889-409-1022-162.247.117.155-gmail@abuse.maropost.com>
X-CampaignID: 409
X-Campaign-ID: 409
X-ContactID: 1921889
X-AccountID: 1022
X-Binding: 162.247.117.155
X-DkimDomain: knowbe4.com
X-DkimSelector: default
X-Feedback-ID: 409:Maropost
X-Spam-Status: No, score=0.7
X-Spam-Score: 7
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "vps.transocean.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  If you are having trouble viewing this email, click here.
   http://newsletter.knowbe4.com/a/1022/preview/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d
    This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt;
    by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt; Manage Subscriptions
    http://newsletter.knowbe4.com/a/1022/unsubscribe/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d
    33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA Report Spam http://newsletter.knowbe4.com/a/1022/report_spam/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d
    [...] 
 
 Content analysis details:   (0.7 points, 3.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: googleapis.com]
  0.0 T_SPF_HELO_TEMPERROR   SPF: test of HELO record failed (temperror)
  0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail
                             domains are different
 -0.0 SPF_PASS               SPF: sender matches SPF record
  0.0 HTML_MESSAGE           BODY: HTML included in message
  0.8 BAYES_50               BODY: Bayes spam probability is 40 to 60%
                             [score: 0.5000]
  0.0 T_KAM_HTML_FONT_INVALID BODY: Test for Invalidly Named or Formatted
                             Colors in HTML
 -0.1 DKIM_VALID_AU          Message has a valid DKIM or DK signature from author's
                             domain
 -0.1 DKIM_VALID             Message has at least one valid DKIM or DK signature
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily valid
  0.0 UNPARSEABLE_RELAY      Informational: message has unparseable relay lines
  0.0 LOTS_OF_MONEY          Huge... sums of money
X-Spam-Flag: NO


----==_mimepart_5951178c72fc8_9793460689c50544533
Content-Type: text/plain;
 charset=UTF-8
Content-Transfer-Encoding: 7bit

If you are having trouble viewing this email,
click here.
http://newsletter.knowbe4.com/a/1022/preview/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d
This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt; by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt;
Manage Subscriptions
http://newsletter.knowbe4.com/a/1022/unsubscribe/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d
33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA
Report Spam
http://newsletter.knowbe4.com/a/1022/report_spam/409/1921889/fcf0c948031e0d7454ea5efc04d03e89cf35678d


----==_mimepart_5951178c72fc8_9793460689c50544533
Content-Type: text/html;
 charset=UTF-8
Content-Transfer-Encoding: quoted-printable

  <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3=
.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  <html xmlns=3D"http://www.w3.org/1999/xhtml">
    <head>
      <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DU=
TF-8">
      <meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-sc=
ale=3D1.0">
      <title>[HEADS UP] Ransomware Now Hits Linux - Web Hosting Provider =
Pays a Million</title>
    </head>
    <body>
      <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http=
://www.w3.org/TR/REC-html40/loose.dtd">
<html><body><table cellpadding=3D"0" cellspacing=3D"0" width=3D"100%">
<tr><td>
<img height=3D"1" width=3D"1" alt=3D"" style=3D"display:block;" src=3D"ht=
tp://newsletter.knowbe4.com/a/1022/open/409/1921889/fcf0c948031e0d7454ea5=
efc04d03e89cf35678d">
<div align=3D"center" style=3D'font-size:8.0pt; font-family:"Arial","sans=
-serif"; color:#666666;margin-bottom:10px;display:block !important'>
If you are having trouble viewing this email,
<a style=3D"border:0px" class=3D"maro_no_record" href=3D"http://newslette=
r.knowbe4.com/a/1022/preview/409/1921889/fcf0c948031e0d7454ea5efc04d03e89=
cf35678d?message_id=3DIjI3YmU1MTQwLTNjYTgtMDEzNS00ODg3LTE0MDJlYzgzYjg3MEB=
rbm93YmU0LmNvbSI=3D">click here.</a>
</div>
</td></tr>
<tr><td>


<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-8">=

<title></title>
<meta charset=3D"utf-8">
<meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-scale=3D=
1">
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
<link href=3D"https://fonts.googleapis.com/css?family=3DOpen+Sans:300,400=
,600,700,800" rel=3D"stylesheet">
<style type=3D"text/css">/* CLIENT-SPECIFIC STYLES */
    #outlook a{padding:0;} /* Force Outlook to provide a "view in browser=
" message */
    .ReadMsgBody{width:100%;} .ExternalClass{width:100%;} /* Force Hotmai=
l to display emails at full width */
    .ExternalClass, .ExternalClass p, .ExternalClass span, .ExternalClass=
 font, .ExternalClass td, .ExternalClass div {line-height: 100%;} /* Forc=
e Hotmail to display normal line spacing */
    body, table, td, a{-webkit-text-size-adjust:100%; -ms-text-size-adjus=
t:100%;} /* Prevent WebKit and Windows mobile changing default text sizes=
 */
    table, td{mso-table-lspace:0pt; mso-table-rspace:0pt;} /* Remove spac=
ing between tables in Outlook 2007 and up */
    img{-ms-interpolation-mode:bicubic;} /* Allow smoother rendering of r=
esized image in Internet Explorer */

    /* RESET STYLES */
    body{margin:0; padding:0; background-color:#ffffff;}
    img{border:0; height:auto; line-height:100%; outline:none; text-decor=
ation:none;}
    body{height:100% !important; margin:0; padding:0; width:100% !importa=
nt;}

    /* iOS BLUE LINKS */
    .appleBody a {color:#f16824; text-decoration: none;}
    .appleFooter a {color:#f16824; text-decoration: none;}

    /* MOBILE STYLES */
    @media screen and (max-width: 525px) {
</style>
<!--SUBJECT & DIRECT LINK-->


<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<div style=3D"max-width:600px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">[HEADS UP] Ransomware Now Hits Linux - Web Hosting Provider Pays a Mill=
ion<br>
=C2=A0</span></div>

<div style=3D"max-width:200px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Email not displaying?<br>
<a href=3D"http://newsletter.knowbe4.com/a/1022/click/409/1921889/b0b95ee=
283cb9cc9fc41475b777a158c4a77b943/fcf0c948031e0d7454ea5efc04d03e89cf35678=
d" style=3D"color:#f16824; text-decoration:none;" target=3D"_blank">View =
Knowbe4 Blog</a></span></div>
</div>
<!--SUBJECT & DIRECT LINK--><!--LOGO-->

<div style=3D"max-width:800px; margin:auto; padding: 40px 20px 20px 20px;=
 text-align:center;"><a href=3D"http://newsletter.knowbe4.com/a/1022/clic=
k/409/1921889/044ac0b3da603dc543019ea4b8f92228baf8fbe8/fcf0c948031e0d7454=
ea5efc04d03e89cf35678d" target=3D"_blank"><img align=3D"center" src=3D"ht=
tp://cdn2.hubspot.net/hubfs/241394/CHN-LOGO-2017-1.png" style=3D"width:10=
0%;"></a></div>
<!--/LOGO--><!--ISSUE & DATE-->

<div style=3D"max-width:800px; margin:auto; padding: 0px 20px 0px 20px; t=
ext-align:center;">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<span style=3D"font-size:14px; line-height:14px; font-family: 'Open Sans'=
, sans-serif; color:#676767;">CyberheistNews Vol 7 #26 =C2=A0 | =C2=A0 Ju=
ne 26th., 2017</span>

<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
</div>
<!--/ISSUE & DATE--><!--MAIN STORY-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">[HEADS UP] Ransomware Now Hits Linux - We=
b Hosting Provider Pays a Million</span> <span style=3D"font-size:16px; l=
ine-height:22px; font-family: 'Open Sans', sans-serif; color: #333333;"> =
<img align=3D"right" src=3D"http://cdn2.hubspot.net/hubfs/241394/CHN-STU-=
2017-1.png" style=3D" padding: 20px 0px 20px 20px;" width=3D"144"><br>
<br>
South Korean web hosting company Nayana agreed to pay a whopping 1 millio=
n in Bitcoin after a ransomware attack hit their 153 Linux servers.<br>
<br>
The attack took place June 10 and resulted in over 3,400 business website=
s the company hosts being encrypted. According to the Nayana=E2=80=99s in=
itial announcement, the attacker demanded 550 Bitcoins to decrypt the inf=
ected files. Following a few days of negotiations, they lowered the ranso=
m demand to 397.6 Bitcoins (around a Mil at the time but the rates are vo=
latile).<br>
<br>
Trend Micro revealed that the ransomware used in this attack was Erebus, =
a piece of malware that was initially spotted in September 2016 and which=
 was already seen in Windows attacks earlier this year, when it had a Use=
r Account Control bypass feature.<br>
<br>
Bad guys now have ported the Erebus ransomware to Linux and are using it =
to target vulnerable servers. Nayana=E2=80=99s website was running on Lin=
ux kernel 2.6.24.2, and old version compiled back in 2008, and is vulnera=
ble to a great deal of exploits that could provide attackers with root ac=
cess to the server, such as DIRTY COW, Trend Micro noted.<br>
<br>
<b>TIME TO CHECK YOUR LINUX KERNELS</b><br>
<br>
Nayana don't just need to patch their systems, they need to get all of th=
eir servers upgraded to newer versions of whatever Linux distro they use,=
 and then properly secure those upgraded systems. With 153 servers, they'=
re going to have to take their entire service offline for weeks (maybe lo=
nger) in order to get that done. More technical detail at the KnowBe4 Blo=
g:<br>
https://blog.knowbe4.com/web-hosting-provider-pays-1-million-to-ransomwar=
e-attackers </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Windows 10 Stops Ransomware Cold? Not So =
Fast!</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">Recently, Microsoft claimed that no known =
ransomware could penetrate the new Win10 Creators Update.<br>
<br>
Presenting new anti-ransomware protection features added in Win 10 CU, Ro=
bert Lefferts, Director of Program Management, Windows Enterprise and Sec=
urity, said that no Windows 10 customer was affected by the recent WannaC=
ry ransomware outbreak that took place in mid-May and no currently known =
ransomware strain can infect Windows 10.<br>
<br>
ZDNet decided to not listen, but look for themselves. They hired a pro ha=
cker and wanted to see if such a bold claim would hold up.<br>
<br>
Spoiler alert: It didn't. Story at the KnowBe4 Blog:<br>
https://blog.knowbe4.com/windows-10-stops-ransomware-cold-not-so-fast </s=
pan>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">FBI: "Extortion and CEO Fraud Are the Top=
 Online Fraud Complaints"</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">And victims aren't reporting ransomware at=
tacks...<br>
<br>
Online extortion, tech support scams and phishing attacks that spoof the =
boss (CEO Fraud) were among the most damaging and expensive scams accordi=
ng to new figures from the FBI's Internet Crime Complaint Center (IC3).<b=
r>
<br>
The IC3 report released Thursday identifies some of the most prevalent an=
d insidious forms of cybercrime today, but the total financial losses tie=
d to each crime type also show that victims do not report these crimes to=
 law enforcement very much.<br>
<br>
Note that the FBI calls CEO fraud "Business Email Compromise" and comment=
ed: "Business Email Compromise (BEC) is defined as a sophisticated scam t=
argeting businesses working with foreign suppliers and/or businesses who =
regularly perform wire transfer payments. The Email Account Compromise (E=
AC) component of BEC targets individuals who perform wire transfer paymen=
ts.<br>
<br>
"The techniques used in both the BEC and EAC scams have become increasing=
ly similar, prompting the IC3 to begin tracking these scams as a single c=
rime type in 2017. The scam is carried out when a subject compromises leg=
itimate business email accounts through social engineering or computer in=
trusion techniques to conduct unauthorized transfers of funds."<br>
<br>
<b>People Only Report 15% of Ransomware Attacks</b><br>
<br>
Writing for Bleepingcomputer.com =E2=80=94 a great tech support forum run=
 by our friend Larry Abrams =E2=80=94 Catalin Cimpanu observes that the F=
BI=E2=80=99s ransomware numbers =E2=80=9Care ridiculously small compared =
to what happens in the real world, where ransomware is one of today=E2=80=
=99s most prevalent cyber-threats.=E2=80=9D<br>
<br>
=E2=80=9CThe only explanation is that people are paying ransoms, restorin=
g from backups, or reinstalling PCs without filing a complaint with autho=
rities,=E2=80=9D Cimpanu writes.<br>
<br>
<b>Real Cost of Cyber Fraud Closer to 9 billion Dollars</b><br>
<br>
Since roughly 15 percent of the nation=E2=80=99s fraud victims report the=
ir crimes to law enforcement, for 2016, 298,728 complaints were received,=
 with a total victim loss of 1.33 billion dollars. Intrepid investigative=
 cybercrime reporter Brian Krebs noted: "If that 15 percent estimate is c=
lose to accurate, that means the real cost of cyber fraud for Americans l=
ast year was probably closer to 9 billion dollars.<br>
<br>
Applying that same 15 percent rule, that brings the likely actual losses =
from CEO fraud schemes to around 2.4 billion dollars last year."<br>
<br>
<b>Bonus Report. You Can Now See This for Your Own State</b><br>
<br>
For instance, take Florida where KnowBe4 is located. The FBI reported it =
lost 29,560,665 dollars to BEC just last year, but using the 15% rule it'=
s most likely a whopping 190 million dollars, and that is just one state.=
 This is the link where you can see the numbers for your state, which is =
useful if you are going for IT security budget approval and need numbers =
that are real and close to home.<br>
<br>
Links, pictures and download your complimentary CEO Fraud Prevention Manu=
al PDF here:<br>
https://blog.knowbe4.com/fbi-extortion-and-ceo-fraud-are-the-top-online-f=
raud-complaints </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Can You Be Spoofed? Find out for a Chance=
 to Win.</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">Did you know that one of the first things =
hackers try is to see if they can spoof the email address of someone in y=
our own domain? Now they can launch a "CEO fraud" spear phishing attack o=
n your organization.<br>
<br>
KnowBe4 can help you find out if this is the case with our complimentary =
Domain Spoof Test and enter you to win an awesome Stormtrooper Helmet Pro=
p Replica at the same time.<br>
<br>
Also, EVERYONE in the US/Canada will receive a real Kevin Mitnick collect=
ible stainless steel lock-pick business card!<br>
<br>
To enter just go here fill out the form, it's quick, easy and often a sho=
cking discovery... 82% of email servers are not configured correctly. Is =
yours?<br>
https://info.knowbe4.com/dst-sweepstakes-062017 </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><span style=3D"font-size: 24px; line-height=
:30px; font-family: 'Open Sans', sans-serif; color: #f16622;">On-Demand W=
ebinar: Best Practices and Future Direction of Security Awareness Trainin=
g</span><br>
<br>
While reported numbers fluctuate from industry study to industry study, t=
hey all agree on one thing: cybercriminals are successfully and consisten=
tly exploiting human nature to accomplish their goals. Prudent security l=
eaders know that security awareness and training is key to strengthening =
their =E2=80=98human firewall=E2=80=99 =E2=80=93 but they often don=E2=80=
=99t know where to start.<br>
<br>
In this webinar <b>=E2=80=9CBest Practices and Future Direction of Securi=
ty Awareness Training=E2=80=9D</b>, Perry Carpenter, Chief Evangelist and=
 Strategy Officer at KnowBe4 and former Gartner Research Analyst in charg=
e of the awareness training magic quadrant, discusses emerging industry t=
rends and provides the actionable information you need to train your last=
 line of defense, your employees.<br>
<br>
<b>Perry will cover these topics:</b> </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Practical security awareness and behav=
ior management tips</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Outlining how and where tools are help=
ful</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Emerging industry trends</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">How to create a =E2=80=9Chuman firewal=
l=E2=80=9D</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"> Watch Now: https://info.knowbe4.com/webina=
r-best-practices-future-direction </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Scam of the Week: Real Estate Wire Transf=
er Phishing Fraud</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">According to the NY Daily News, State Supr=
eme Court Justice Lori Sattler was in the process of selling her apartmen=
t and buying another, when she received an email that seemed like it was =
coming from her lawyer.<br>
<br>
The =E2=80=9Clawyer=E2=80=9D instructed her to send the money =E2=80=93 a=
 little over 1 million dollars =E2=80=93 to an account with the Commerce =
Bank of China, and she did.<br>
<br>
It is not known if the scammers managed to compromise Sattler's account, =
the lawyer=E2=80=99s email account or if they created a spoofed one, but =
it's highly likely that one of the two people involved was pwned =E2=80=93=
 how else would the bad guys know how to send such a timely and convincin=
g spear-phishing email?<br>
<br>
<b>Emails From Fake Realtors Are Skyrocketing</b><br>
<br>
Our customers send us "phishy" emails through our complimentary Phish Ale=
rt button, we get thousands per day. These real-estate-themed phishing at=
tacks usually come from spoofed addresses like Keller Williams, Remax and=
 so on.<br>
<br>
You have to remember that most Realtors use their personal email accounts=
 to conduct business. Their email signature will have their company email=
 address listed but they are always sending and receiving from either the=
ir ISP provided email account or from Hotmail, Yahoo, and Gmail. This is =
not very secure, but is very convenient when you are on the road most of =
your day.<br>
<br>
Here is a recent scenario. A fake email comes in and it is a PDF file tha=
t will pertain to a current real estate transaction, and you know the rea=
ltors email account is hacked. It even goes so far where a realtor had th=
eir account hacked and after every closing in that office, the closer wou=
ld receive an email with different wiring instructions. The bad guy had g=
otten into the realtors email account and knew when every one of their cl=
osings were taking place.<br>
<br>
I suggest you send employees, friends and family an email about this Scam=
 of the Week, you're welcome to copy/paste/edit:<br>
<br>
<i>"There is an epidemic of real-estate related phishing scams going on. =
Bad guys silently take over the email address of a home buyer or their re=
altor / lawyer, and right at the moment that a large amount of money need=
s to get wired for closing, they send a fake email with a different bank =
account that the bad guys control.<br>
<br>
Always, always, always pick up the phone before you make a large transfer=
 and get confirmation about the correct bank account that the wire goes t=
o. This is true for the house, but also the office."</i><br>
<br>
Obviously, an end-user who was trained to spot social engineering red fla=
gs like this would think twice before they wire money to an unknown accou=
nt.<br>
<br>
Let's stay safe out there. </span><br>
=C2=A0
<p align=3D"right"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color: #333333;">Warm Regards,<br>
Stu Sjouwerman </span></p>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>
<!--/MAIN STORY--><!--QUOTES DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Two Albert Einstein Quotes of =
the Week</span></div>
<!--/QUOTES DIV--><!--QUOTES TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:center;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><i>"Whoever is careless with the truth in s=
mall matters cannot be trusted with important matters."</i><br>
<br>
<i>"Education is what remains after one has forgotten what one has learne=
d in school."</i> </span><br>
=C2=A0
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><strong>Thanks for reading CyberheistNews</=
strong><br>
But if you want to unsubscribe, you can do that <a href=3D"http://newslet=
ter.knowbe4.com/a/1022/click/409/1921889/486ae771c748e753c0a203927ab7bc2a=
f91a1576/fcf0c948031e0d7454ea5efc04d03e89cf35678d" style=3D"color:#f16824=
; text-decoration:none;" target=3D"_blank">right here</a><br>
<br>
<strong>You can read CyberheistNews online at our Blog</strong><br>
https://blog.knowbe4.com/cyberheistnews-vol-7-26-heads-up-ransomware-now-=
hits-linux-web-hosting-provider-pays-a-million </span>
</div>
<!--/QUOTES TEXT--><!--SECURITY DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Security News</span></div>
<!--/SECURITY DIV--><!--SECURITY TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Why So Many Top Hackers Hail from Russia</span><br>
<br>
Brian Krebs wrote: "Conventional wisdom says one reason so many hackers s=
eem to hail from Russia and parts of the former Soviet Union is that thes=
e countries have traditionally placed a much greater emphasis than educat=
ional institutions in the West on teaching information technology in midd=
le and high schools, and yet they lack a Silicon Valley-like pipeline to =
help talented IT experts channel their skills into high-paying jobs.<br>
<br>
His post examines the first part of that assumption by examining a breadt=
h of open-source data.<br>
<br>
The supply side of that conventional wisdom seems to be supported by an a=
nalysis of educational data from both the U.S. and Russia, which indicate=
s there are several stark and important differences between how American =
students are taught and tested on IT subjects versus their counterparts i=
n Eastern Europe. Here is the whole post and also the comments at the end=
 which are interesting:<br>
https://krebsonsecurity.com/2017/06/why-so-many-top-hackers-hail-from-rus=
sia/ </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Ukraine Was Russia's Test-Lab for CyberWar</span><br>
<br>
The quintessential cyberwar scenario has come to life in the Ukraine. Twi=
ce. On separate occasions, invisible saboteurs turned off the electricity=
 to hundreds of thousands of people. The blackouts were part of a digital=
 blitzkrieg that has pummeled Ukraine for the past three years-a sustaine=
d cyberassault.<br>
<br>
How an Entire Nation Became Russia's Test Lab for Cyberwar:<br>
https://www.wired.com/story/russian-hackers-attack-ukraine/ </span></div>=


<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Global Cyber Alliance: "Few U.S. Hospitals Secure Their Email Aga=
inst Phishing"</span><br>
<br>
Shaun Waterman at the quite useful CyberScoop site wrote: "Fewer than one=
-third of the largest 98 public and private hospitals in the United State=
s secure their email against phishing and spamming, according to data rel=
eased Thursday.<br>
<br>
The Global Cyber Alliance said that of the 50 largest public hospitals, o=
nly six employed Domain-based Message Authentication, Reporting and Confo=
rmance, or DMARC =E2=80=94 an email authentication policy and reporting p=
rotocol developed a decade ago, originally by PayPal. Of the 48 biggest f=
or-profit hospitals, only 22 used DMARC. Full story at the KnowBe4 Blog:<=
br>
https://blog.knowbe4.com/global-cyber-alliance-few-u.s.-hospitals-secure-=
their-email-against-phishing </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Security Awareness Training Can Lower Your Cyberinsurance Premium=
</span><br>
<br>
New-school security awareness training might even pay for itself from Day=
 1!<br>
<br>
How? Call your cybersecurity insurance carrier or agent and specifically =
ask if you get a discount on the premium if you step all employees throug=
h awareness training. There could be significant savings and it may even =
fully pay for the training.<br>
<br>
KnowBe4 advises both prospects and existing customers to inquire with the=
ir cyber insurance company about a reduced premium or discount for having=
 our training in place. Frequently this works, and the compliance modules=
 and physical security parts in the Diamond pricing level also get them a=
 discount.<br>
<br>
One cyber insurance carrier told us: "Thanks for your inquiry, and questi=
on earlier on whether we can offer a discounted premium on cyber insuranc=
e for having security awareness training in place. Yes, having training i=
n place for employees certainly helps lower the cyber insurance premium."=
<br>
<br>
Get a quote to begin with, so you know how surprisingly affordable this i=
s:<br>
https://info.knowbe4.com/kmsat_get_a_quote_now-chn </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">New Insider Threat Training Regulations Take Effect for Defense C=
ontractors</span><br>
<br>
I was quoted in FedScoop: "And, according to Stu Sjouwerman, CEO of secur=
ity awareness training outfit KnowBe4, this regulation is also a response=
 to the popular and increasing focus on human vulnerability in breaches.<=
br>
<br>
=E2=80=9CThe last few years, it has become blindingly clear that the bad =
guys are not even bothering trying to find software vulnerabilities,=E2=80=
=9D Sjouwerman said, =E2=80=9Cand have gone after the end-user with socia=
l engineering.=E2=80=9D" Full article:<br>
https://www.fedscoop.com/threat-awareness-training-regulations-for-defens=
e-contractors/ </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">A Whole Slew of Interesting News Items This Week</span><br>
<br>
Hardening the Workforce: Developing Cyber Defenses:<br>
http://www.bankinfosecurity.com/interviews/hardening-workforce-developing=
-cyber-defenses-i-3623<br>
<br>
Vaping, e-Cigarettes Can Be Used to Hack Computers:<br>
https://www.infosecurity-magazine.com/news/vaping-e-cigarettes-hack-compu=
ters/<br>
<br>
Honda factory struck by same WannaCry ransomware that caused global chaos=
:<br>
https://www.infosecurity-magazine.com/news/honda-forced-to-shut-plant-aft=
er/<br>
<br>
Girl Scouts to Offer Cybersecurity Badges:<br>
https://www.infosecurity-magazine.com/news/girl-scouts-to-offer-cybersecu=
rity/<br>
<br>
Microsoft admits to disabling third-party antivirus code if Win 10 doesn'=
t like it:<br>
http://www.theregister.co.uk/2017/06/20/microsoft_disabling_thirdparty_an=
tivirus/<br>
<br>
F-Secure Labs Shares the Top Companies Spoofed in Spam in 2017:<br>
http://www.informationsecuritybuzz.com/news/f-secure-labs-shares-top-comp=
anies-spoofed-spam-2017/<br>
<br>
Russian hackers selling login credentials of UK politicians, diplomats:<b=
r>
http://www.theregister.co.uk/2017/06/23/russian_hackers_trade_login_crede=
ntials/<br>
<br>
New Mac Malware Spotted on the Dark Web:<br>
https://darkwebnews.com/dark-web/new-mac-malware-spotted-dark-web/<br>
<br>
KPMG: Cybersecurity Has Reached a 'Tipping Point' from Tech to CEO Busine=
ss Issue:<br>
http://www.darkreading.com/careers-and-people/kpmg-cybersecurity-has-reac=
hed-a-tipping-point-from-tech-to-ceo-business-issue/a/d-id/1329179<br>
<br>
Study: Employers aware of cybersecurity threats but not proactive enough:=
<br>
http://www.hrdive.com/news/study-employers-aware-of-cybersecurity-threats=
-but-not-proactive-enough/445484/<br>
<br>
Wikileaks: The CIA can remotely hack into computers that aren=E2=80=99t e=
ven connected to the internet:<br>
https://qz.com/1013361/wikileaks-the-cia-can-remotely-hack-into-computers=
-that-arent-even-connected-to-the-internet/<br>
<br>
How Hollywood Got Hacked: Studio at Center of Netflix Leak Breaks Silence=
 (EXCLUSIVE)<br>
http://variety.com/2017/digital/features/netflix-orange-is-the-new-black-=
leak-dark-overlord-larson-studios-1202471400/<br>
<br>
Alert: There are too many cybersecurity alerts:<br>
https://www.americanbanker.com/news/alert-there-are-too-many-cybersecurit=
y-alerts </span></div>
<!--/SECURITY TEXT--><!--FAVE DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Cyberheist 'Fave' Links</span>=
</div>
<!--/FAVE DIV--><!--FAVE TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><span style=3D"font-size: 24px; line-height=
:30px; font-family: 'Open Sans', sans-serif; color: #f16622;">This Week's=
 Links We Like, Tips, Hints and Fun Stuff</span> </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">People Are Awesome 2017 - Best Of The =
Week - Episode 27<br>
	http://www.flixxy.com/people-are-awesome-2017-best-of-the-week-episode-2=
7.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">One of the TOP Penn &amp; Teller: Busi=
ness Magician Kostya Kimlat fools them with his amazing and incredible ca=
rd trick. Penn gets extremely jealous:<br>
	http://www.flixxy.com/magician-kostya-kimlat-makes-penn-angry.htm?utm_so=
urce=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Ukrainian dance troupe 'Light Balance'=
 light up the stage and earn the Golden Buzzer at America's Got Talent 20=
17. These guys are very creative:<br>
	http://www.flixxy.com/ukrainian-dance-troupe-light-balance-americas-got-=
talent-2017.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Chaser, the super smart Border Collie,=
 demonstrates her amazing ability to understand the names of 1,022 differ=
ent toys:<br>
	http://www.flixxy.com/worlds-smartest-dog-understands-1022-words.htm?utm=
_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Swedish DIY Hobbyist Builds Personal F=
lying Machine For 10,000 Dollars. I want one!<br>
	http://www.flixxy.com/swedish-diy-hobbyist-builds-personal-flying-machin=
e-for-10000-dollars.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">How to spot an ATM scam: 10+ Insane AT=
M Scams That You Wouldn=E2=80=99t Even Notice:<br>
	http://www.boredpanda.com/how-to-spot-atm-scam/</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">From the archives: Trouble with people=
? Watch this: Validation - Short Film (15 min) about the magic of looking=
 for the best in people. This movie has played at 34 film festivals world=
wide and won 17 awards. Great for a break:<br>
	http://www.flixxy.com/validation-short-film.htm?utm_source=3D4</span></l=
i>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">For the kids. Check out what this seag=
ull steals from the world's laziest cat:<br>
	http://www.flixxy.com/seagull-and-cat.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">How does a Tesla Model S electric car =
work? This is technically accurate and interesting:<br>
	https://www.youtube.com/watch?v=3D3SAxXUIre28&amp;feature=3Dyoutu.be&amp=
;app=3Ddesktop</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">A Domino can knock down another 1.5 ti=
mes its size. 29 Dominoes could knock down the Empire State Building:<br>=

	http://www.flixxy.com/the-domino-effect-how-little-things-can-make-a-big=
-difference.htm?utm_source=3D4</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"> </span>
</div>
<!--/FAVE TEXT--><!--SOCIAL & COPYRIGHT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">FOLLOW US ON: <a href=3D"http://newsletter.knowbe4.com/a/1022/click/409=
/1921889/12f6f18bb2280eb257fda0ee104ee0a8a9355394/fcf0c948031e0d7454ea5ef=
c04d03e89cf35678d" style=3D"color:#f16824; text-decoration:none;" target=3D=
"_blank">Twitter</a> | <a href=3D"http://newsletter.knowbe4.com/a/1022/cl=
ick/409/1921889/35c8d23f428e99808212e79c497c5c7904ccc19f/fcf0c948031e0d74=
54ea5efc04d03e89cf35678d" style=3D"color:#f16824; text-decoration:none;" =
target=3D"_blank">LinkedIn</a> | <a href=3D"http://newsletter.knowbe4.com=
/a/1022/click/409/1921889/665fd8e8468a0fa0d279b30bd4c7ba97f04517dd/fcf0c9=
48031e0d7454ea5efc04d03e89cf35678d" style=3D"color:#f16824; text-decorati=
on:none;" target=3D"_blank">Google</a> | <a href=3D"http://newsletter.kno=
wbe4.com/a/1022/click/409/1921889/947165ed658284c668dbae4f407761b5796d074=
5/fcf0c948031e0d7454ea5efc04d03e89cf35678d" style=3D"color:#f16824; text-=
decoration:none;" target=3D"_blank">YouTube</a></span></div>

<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Copyright =C2=A9 2014-2017 KnowBe4, Inc. All rights reserved.</span><=
/div>
</div>
<!--SOCIAL & COPYRIGHT-->


</td></tr>
<tr><td>
<div class=3D"footersp" style=3D"height:1px; width: 100%; margin-left: au=
to; margin-right: auto; background-color:black;display:block !important;"=
>=C2=A0</div>
=C2=A0

<div class=3D"footerco" style=3D"margin-left: auto; margin-right: auto; w=
idth: 100%; background-color:#ffffff !important; display:block !important=
;">
<table border=3D"0" cellpadding=3D"0" cellspacing=3D"0" style=3D"width:10=
0%; display:table !important;">
	<tbody>
		<tr style=3D"display:table-row !important;">
			<td style=3D"width:20%; display:table-cell !important;">=C2=A0</td>
			<td align=3D"center" style=3D"mso-table-lspace: 0pt;mso-table-rspace: =
0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: 100%;text-align:=
center;vertical-align:middle; display:table-cell !important;font-size:8.0=
pt; font-family:'Arial','sans-serif'; color:#666666;">This email was sent=
 to <b>edward@transocean.com</b> by <b>feedback@knowbe4.com</b><br>
			<br>
			33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA<br>
			=C2=A0
			<div style=3D"display:block"><a class=3D"maro_no_record" href=3D"http:=
//newsletter.knowbe4.com/a/1022/one_click_unsubscribe/409/1921889/fcf0c94=
8031e0d7454ea5efc04d03e89cf35678d" rel=3D"nofollow" style=3D"border:0px;c=
olor:#000;display:inline !important;">1-Click Unsubscribe</a></div>
			</td>
			<td align=3D"right" style=3D"text-align:right;mso-table-lspace: 0pt;ms=
o-table-rspace: 0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: =
100%;width:20%;vertical-align:middle; display:table-cell !important;font-=
size:8.0pt; font-family:'Arial','sans-serif'; color:#666666;" valign=3D"m=
iddle">=C2=A0</td>
		</tr>
	</tbody>
</table>
</div>
</td></tr>
</table></body></html>


    </body>
  </html>

----==_mimepart_5951178c72fc8_9793460689c50544533--
