Return-Path: <1921889-451-1022@be1.maropost.com>
Delivered-To: edward@transocean.com
Received: from vps.transocean.com
	by vps.transocean.com (Dovecot) with LMTP id OYjXEgemgFm2JgAAInt2oQ
	for <edward@transocean.com>; Tue, 01 Aug 2017 09:02:15 -0700
Return-path: <1921889-451-1022@be1.maropost.com>
Envelope-to: edward@transocean.com
Delivery-date: Tue, 01 Aug 2017 09:02:15 -0700
Received: from mta7168.mp2200.com ([162.247.117.168]:59023)
	by vps.transocean.com with esmtp (Exim 4.89)
	(envelope-from <1921889-451-1022@be1.maropost.com>)
	id 1dcZcN-0002e8-Pk
	for edward@transocean.com; Tue, 01 Aug 2017 09:02:15 -0700
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
 s=default; d=knowbe4.com; t=1501603318; l=1; h=from:subject:date:to;
 bh=nR4OLZRZ0GUjrRPiikCTwjFrqv567Fsl8w66LhE1mcQ=;
 b=z7s01va9Sg774fbNKnLo/crM8IQ18PJTYhIFy3XAAsvwKhN5OnMpvx8B1VV7juS5Bk+4ah
 StpjXvWetacrKPG0l0gXDOI9B2z9TxqoBYPCKVM1GZ9wigyRMNoCpAURoEpFK6srSbCQP9
 EV0sVfS1UfnST+KxxetFdxji1xJsl+s=
Received: from [<1921889-451-1022@be1.maropost.com>] ([<1921889-451-1022@be1.maropost.com>] helo=) 
 by 771426-mailer10 (envelope-from 1921889-451-1022@be1.maropost.com)
 (Jetsend MTA 0.0.1 with ESMTP; Tue Aug  1 10:17:42 EDT 2017
Date: Tue, 01 Aug 2017 10:17:40 -0400
From: CyberheistNews <feedback@knowbe4.com>
Reply-To: feedback@knowbe4.com
To: edward@transocean.com
Message-ID: <1a0d9090-58f2-0135-48ea-1402ec83b870@knowbe4.com>
Subject: Scary New Social Engineering Attack Turns Off Your Power
Mime-Version: 1.0
Content-Type: multipart/alternative;
 boundary="--==_mimepart_59808d84c852f_5c1b6bb0480149130333";
 charset=UTF-8
Content-Transfer-Encoding: 7bit
List-Unsubscribe: <mailto:1921889-451-1022-162.247.117.168-gmail@abuse.maropost.com>
X-CampaignID: 451
X-Campaign-ID: 451
X-ContactID: 1921889
X-AccountID: 1022
X-Binding: 162.247.117.168
X-DkimDomain: knowbe4.com
X-DkimSelector: default
X-Feedback-ID: 451:Maropost
X-Spam-Status: No, score=0.2
X-Spam-Score: 2
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "vps.transocean.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt;
    by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt; Manage Subscriptions
    http://newsletter.knowbe4.com/a/1022/unsubscribe/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f
    33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA Report Spam http://newsletter.knowbe4.com/a/1022/report_spam/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f
    [...] 
 
 Content analysis details:   (0.2 points, 3.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: wired.com]
 -0.0 SPF_HELO_PASS          SPF: HELO matches SPF record
  0.0 T_SPF_TEMPERROR        SPF: test of record failed (temperror)
  0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail
                             domains are different
 -0.5 BAYES_05               BODY: Bayes spam probability is 1 to 5%
                             [score: 0.0231]
  0.0 T_KAM_HTML_FONT_INVALID BODY: Test for Invalidly Named or Formatted
                             Colors in HTML
  0.8 MPART_ALT_DIFF         BODY: HTML and text parts are different
  0.0 HTML_MESSAGE           BODY: HTML included in message
 -0.1 DKIM_VALID_AU          Message has a valid DKIM or DK signature from author's
                             domain
 -0.1 DKIM_VALID             Message has at least one valid DKIM or DK signature
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily valid
  0.0 UNPARSEABLE_RELAY      Informational: message has unparseable relay lines
X-Spam-Flag: NO


----==_mimepart_59808d84c852f_5c1b6bb0480149130333
Content-Type: text/plain;
 charset=UTF-8
Content-Transfer-Encoding: 7bit

This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt; by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt;
Manage Subscriptions
http://newsletter.knowbe4.com/a/1022/unsubscribe/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f
33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA
Report Spam
http://newsletter.knowbe4.com/a/1022/report_spam/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f


----==_mimepart_59808d84c852f_5c1b6bb0480149130333
Content-Type: text/html;
 charset=UTF-8
Content-Transfer-Encoding: quoted-printable

  <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3=
.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  <html xmlns=3D"http://www.w3.org/1999/xhtml">
    <head>
      <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DU=
TF-8">
      <meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-sc=
ale=3D1.0">
      <title>Scary New Social Engineering Attack Turns Off Your Power</ti=
tle>
    </head>
    <body>
      <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http=
://www.w3.org/TR/REC-html40/loose.dtd">
<html><body><table cellpadding=3D"0" cellspacing=3D"0" width=3D"100%">
<tr><td>
<img height=3D"1" width=3D"1" alt=3D"" style=3D"display:block;" src=3D"ht=
tp://newsletter.knowbe4.com/a/1022/open/451/1921889/d2488d8742ad81b437307=
5a47d52292f213a6b5f">
</td></tr>
<tr><td>


<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-8">=

<title></title>
<meta charset=3D"utf-8">
<meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-scale=3D=
1">
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
<link href=3D"https://fonts.googleapis.com/css?family=3DOpen+Sans:300,400=
,600,700,800" rel=3D"stylesheet">
<style type=3D"text/css">/* CLIENT-SPECIFIC STYLES */
    #outlook a{padding:0;} /* Force Outlook to provide a "view in browser=
" message */
    .ReadMsgBody{width:100%;} .ExternalClass{width:100%;} /* Force Hotmai=
l to display emails at full width */
    .ExternalClass, .ExternalClass p, .ExternalClass span, .ExternalClass=
 font, .ExternalClass td, .ExternalClass div {line-height: 100%;} /* Forc=
e Hotmail to display normal line spacing */
    body, table, td, a{-webkit-text-size-adjust:100%; -ms-text-size-adjus=
t:100%;} /* Prevent WebKit and Windows mobile changing default text sizes=
 */
    table, td{mso-table-lspace:0pt; mso-table-rspace:0pt;} /* Remove spac=
ing between tables in Outlook 2007 and up */
    img{-ms-interpolation-mode:bicubic;} /* Allow smoother rendering of r=
esized image in Internet Explorer */

    /* RESET STYLES */
    body{margin:0; padding:0; background-color:#ffffff;}
    img{border:0; height:auto; line-height:100%; outline:none; text-decor=
ation:none;}
    body{height:100% !important; margin:0; padding:0; width:100% !importa=
nt;}

    /* iOS BLUE LINKS */
    .appleBody a {color:#f16824; text-decoration: none;}
    .appleFooter a {color:#f16824; text-decoration: none;}

    /* MOBILE STYLES */
    @media screen and (max-width: 525px) {
</style>
<!--SUBJECT & DIRECT LINK-->


<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<div style=3D"max-width:600px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">Scary New Social Engineering Attack Turns Off Your Power<br>
=C2=A0</span></div>

<div style=3D"max-width:200px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Email not displaying?<br>
<a href=3D"http://newsletter.knowbe4.com/a/1022/click/451/1921889/b0b95ee=
283cb9cc9fc41475b777a158c4a77b943/d2488d8742ad81b4373075a47d52292f213a6b5=
f" style=3D"color:#f16824; text-decoration:none;" target=3D"_blank">View =
Knowbe4 Blog</a></span></div>
</div>
<!--SUBJECT & DIRECT LINK--><!--LOGO-->

<div style=3D"max-width:800px; margin:auto; padding: 40px 20px 20px 20px;=
 text-align:center;"><a href=3D"http://newsletter.knowbe4.com/a/1022/clic=
k/451/1921889/044ac0b3da603dc543019ea4b8f92228baf8fbe8/d2488d8742ad81b437=
3075a47d52292f213a6b5f" target=3D"_blank"><img align=3D"center" src=3D"ht=
tp://cdn2.hubspot.net/hubfs/241394/CHN-LOGO-2017-1.png" style=3D"width:10=
0%;"></a></div>
<!--/LOGO--><!--ISSUE & DATE-->

<div style=3D"max-width:800px; margin:auto; padding: 0px 20px 0px 20px; t=
ext-align:center;">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<span style=3D"font-size:14px; line-height:14px; font-family: 'Open Sans'=
, sans-serif; color:#676767;">CyberheistNews Vol 7 #30 =C2=A0 | =C2=A0 Au=
g 1st., 2017</span>

<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
</div>
<!--/ISSUE & DATE--><!--MAIN STORY-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Scary New Social Engineering Attack Turns=
 Off Your Power</span> <span style=3D"font-size:16px; line-height:22px; f=
ont-family: 'Open Sans', sans-serif; color: #333333;"> <img align=3D"righ=
t" src=3D"http://cdn2.hubspot.net/hubfs/241394/CHN-STU-2017-1.png" style=3D=
" padding: 20px 0px 20px 20px;" width=3D"144"><br>
<br>
OK, better get thinking about generators and 1,000 gallon drums of fuel t=
o keep your data center up &amp; running (which you should have done anyw=
ay for your disaster recovery plans...)<br>
<br>
A new attack vector that bypasses all your software defenses has been dis=
covered by Israeli cybersecurity company Cyberint. At the moment the bad =
guys are targeting US and UK energy companies which could cause power cut=
s and even cost lives, but this tactic could be used against anyone.<br>
<br>
Here is how it plays out. A "honey-doc" masquerades as a resume attached =
to a harmless email. Both email and attachment are totally clean and cont=
ain no malicious code whatsoever. That's what makes them undetectable to =
any kind of incoming email filter.<br>
<br>
However, the Word doc *is* weaponized with a template reference that, whe=
n the document is loaded, connects to the attacker=E2=80=99s server via S=
erver Message Block and downloads a Word template which has an extremely =
well-hidden malicious payload.<br>
<br>
The connection to the SMB server also provides the attacker with the vict=
im=E2=80=99s credentials, which can then be used to acquire sensitive inf=
ormation and/or infiltrate the network and/or control systems used by the=
 targeted employee.<br>
<br>
The campaign appears to have started in May, and as it is targeted at inf=
rastructure control systems of US and UK energy companies, it's not too h=
ard to guess who is behind it.<br>
<br>
The problem is that once this type of attack is out there in the wild (re=
member StuxNet?) all kinds of bad guys get their hands on it. To protect =
against this type of attack, you want to step your employees through new-=
school security awareness training so that they do not fall for social en=
gineering tactics like this.<br>
<br>
Start with a no-charge Phishing Security Test and find out what percentag=
e of your users will click an email that seems to come from IT@yourdomain=
.com. Start here:<br>
https://info.knowbe4.com/phishing-security-test-chn </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">I Was at Black Hat / Def Con This Week. W=
ow. [VIDEO]</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">If you could not make it, it was fun, but =
a zoo, and Def Con was crowded with a rumored 30,000 attendees. It certai=
nly felt like it! Here are some highlights, and more to come when I get b=
ack in the office: </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">The Black Hat Keynote:<br>
	https://youtu.be/EC4EC5fcPL0 </span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">I was interviewed by Dark Reading abo=
ut social engineering. Scroll to 2:25:00:<br>
	https://youtu.be/pSlgo3kNNsQ </span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Black Hat USA 2017 Attendee Survey Re=
sults. They released their third annual research report entitled, "Portra=
it of an Imminent Cyber Threat." The report is based on survey responses =
from nearly 600 Black Hat USA attendees. This year=E2=80=99s research exp=
lores issues on a national scale and raises concerns about potential thre=
ats to the U.S=E2=80=99s critical infrastructure, tools available for nat=
ion state attacks, WikiLeaks and more. You can download your copy here:<b=
r>
	https://www.blackhat.com/docs/us-17/2017-Black-Hat-Attendee-Survey.pdf <=
/span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Black Hat presentation: Clever New To=
ol Shuts Down Ransomware Before It's Too Late:<br>
	https://www.wired.com/story/shieldfs-ransomware-protection-tool/ </span>=
</li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Black Hat presentation: Active Direct=
ory Botnet sets up C&amp;C infrastructure inside infected networks, while=
 bypassing defenses. Techniques exploiting legitimate capabilities &amp; =
controls. Scary!:<br>
	https://www.scmagazine.com/active-directory-botnet-sets-up-cc-infrastruc=
ture-inside-infected-networks-while-bypassing-defenses/article/677864/ </=
span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">The winners of the PWNIE awards were =
announced and CSO wrote about them:<br>
	http://www.csoonline.com/article/3211592/security/winners-of-the-2017-pw=
nie-awards.html </span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Don=E2=80=99t Miss The August Live Demo: =
New-School Security Awareness Training</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">Today, your employees are frequently expos=
ed to sophisticated phishing and ransomware attacks. Old-school security =
awareness training doesn=E2=80=99t hack it anymore. More than ever, your =
users are the weak link in your network security.<br>
<br>
Join us on <b>Wednesday, August 9, 2017, at 2:00 p.m. (EDT)</b> for a 30-=
minute live product demonstration of KnowBe4=E2=80=99s Security Awareness=
 Training and Simulated Phishing Platform to see the latest features and =
how easy it is to train and phish your users: </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">NEW, Customized Automated Security Aw=
areness Program creates a fully mature training program in just a few min=
utes! </span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Social Engineering Indicators patent-=
pending technology, turns every simulated phishing email into a tool IT c=
an use to instantly train employees.</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Access to the world's largest library=
 of awareness training content through our innovative Module Store.</span=
></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Send Simulated Phishing tests to your=
 users during specified business hours with "Reply-To Tracking" that show=
s you which users fall for spoofed emails and what they answer to the bad=
 guys. </span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Reporting to watch your Phish-prone p=
ercentage drop, with great ROI. </span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> Find out how 12,000+ organizations have m=
obilized their end-users as their last line of defense.<br>
<br>
Register Now: https://register.gotowebinar.com/register/55459029498066557=
47 </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Surprising Moves in Cybersecurity 500 Lis=
t for Q2</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">Cybersecurity Ventures continuously looks =
at new companies for inclusion in the Cybersecurity 500, by soliciting fe=
edback from CISOs, IT security practitioners and service providers, and r=
esearching hundreds of cybersecurity events and news sources, and Cyberse=
curity Ventures has released its Cybersecurity 500 List for Q2 2017.<br>
<br>
root9B and Herjavec Group remained number one and two, respectively, from=
 the Q1 cybersecurity listing, but after that, there was a lot of movemen=
t in the top 10. Raytheon, for instance, moved into the number three posi=
tion thanks to a historic cybersecurity deal valued at nearly $1 billion =
over five years with the U.S. Department of Homeland Security. IBM and Ci=
sco both returned to the top 10 after hovering just outside that plateau =
in February. And KnowBe4 made a huge jump from number 38 in Q1 to six in =
Q2.<br>
<br>
How do companies make significant moves, both up and down, in only a few =
months?<br>
<br>
=E2=80=9CWe look at companies in a few different contexts,=E2=80=9D expla=
ined Steve Morgan, founder and editor-in-chief at the Cybersecurity 500. =
=E2=80=9CWe are always evaluating revenue growth and market execution. Bu=
t then we are also looking at what are the biggest challenges and which c=
ompanies are doing what to help solve them.=E2=80=9D<br>
<br>
Take IBM as an example. =E2=80=9CIt may not be that obvious,=E2=80=9D Mor=
gan said, =E2=80=9Cbut they are throwing a lot of weight behind supportin=
g cybersecurity education at the high school level - which ties directly =
to the workforce shortage our industry is grappling with.=E2=80=9D<br>
<br>
Morgan emphasized the importance of security awareness training. Spending=
 for security education is expected to reach $10 billion by 2027. =E2=80=9C=
Security awareness has evolved from training employees to a discipline th=
at is just as complicated and important as any other in our field,=E2=80=9D=
 he stated, and this played a role in KnowBe4=E2=80=99s jump in the ranki=
ngs.<br>
<br>
KnowBe4 was very surprising, moving up so much, Morgan admitted. =E2=80=9C=
While the security awareness market is growing very quickly, it is an est=
ablished space with dozens of companies who have been in it for years and=
 quite a few new market entrants,=E2=80=9D he added. =E2=80=9CKnowBe4 kee=
p doubling revenues and getting as big as they are - I couldn't have expe=
cted that they'd grow so much again over the past year. But, given they a=
re in one of the biggest growth markets and have such a visible officer (=
Kevin Mitnick, Chief Hacking Officer), it makes sense.=E2=80=9D More:<br>=

http://www.itbusinessedge.com/articles/surprising-moves-in-cybersecurity-=
500-list-for-q2.html<br>
<br>
Let's stay safe out there. </span>

<p align=3D"left"><span style=3D"font-size:16px; line-height:22px; font-f=
amily: 'Open Sans', sans-serif; color: #333333;">Warm Regards,<br>
Stu Sjouwerman<br>
Founder and CEO<br>
KnowBe4, Inc.</span></p>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>
<!--/MAIN STORY--><!--QUOTES DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Quotes of the Week</span></div=
>
<!--/QUOTES DIV--><!--QUOTES TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:center;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><i>"If you don't want anyone to know, don't=
 do it."</i> - Chinese Proverb<br>
<br>
<i>"Risk comes from not knowing what you're doing."</i> - Warren Buffett =
</span><br>
=C2=A0
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><strong>Thanks for reading CyberheistNews</=
strong><br>
But if you want to unsubscribe, you can do that <a href=3D"http://newslet=
ter.knowbe4.com/a/1022/click/451/1921889/486ae771c748e753c0a203927ab7bc2a=
f91a1576/d2488d8742ad81b4373075a47d52292f213a6b5f" style=3D"color:#f16824=
; text-decoration:none;" target=3D"_blank">right here</a><br>
<br>
<strong>You can read CyberheistNews online at our Blog</strong><br>
https://blog.knowbe4.com/cyberheistnews-vol-7-30-scary-new-social-enginee=
ring-attack-turns-off-your-power </span>
</div>
<!--/QUOTES TEXT--><!--SECURITY DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Security News</span></div>
<!--/SECURITY DIV--><!--SECURITY TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">The Lazy Habits of Phishing Attackers</span><br>
<br>
Ransomware as a service (RaaS) has been around for a while. But it has ty=
pically been found on the dark web. In recent months, its creators have g=
rown more brazen about promoting it on the open web, and that has the pot=
ential to change everything. Few RaaS kits exemplify this the way Philade=
lphia does.<br>
<br>
At Black Hat 2017, Sophos released an in-depth report on the subject, Ran=
somware as a Service (RaaS): Deconstructing Philadelphia, written by Dork=
a Palotay, a threat researcher based in SophosLabs=E2=80=99 Budapest, Hun=
gary, office. It delves into the inner mechanics of a ransomware kit anyo=
ne can buy for $400. Once purchased, the bad guys can hijack and hold com=
puter data for ransom in exchange for payment. More:<br>
https://nakedsecurity.sophos.com/2017/07/25/ransomware-as-a-service-how-t=
he-bad-guys-marketed-philadelphia/ </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">This Is What Happens When You Reply to Spam Email. FUN</span><br>=

<br>
Suspicious emails: unclaimed insurance bonds, diamond-encrusted safe depo=
sit boxes, close friends marooned in a foreign country. They pop up in ou=
r inboxes, and standard procedure is to delete on sight. But what happens=
 when you reply? Follow along as writer and comedian James Veitch narrate=
s a hilarious, weeks-long exchange with a spammer who offered to cut him =
in on a hot deal. FUN! But do not try this at home...<br>
https://www.ted.com/talks/james_veitch_this_is_what_happens_when_you_repl=
y_to_spam_email </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Top 10 Twitter Accounts to Track the Latest Phishing Scams</span>=
<br>
<br>
TechInsurance wrote; "Once we get hip to one phishing scam, a new one pop=
s up. As a busy IT consultant, you can't spend all day researching the la=
test phishing attacks. Fortunately, there is an easy way to keep track of=
 the new phishing scams tormenting your clients =E2=80=93 Twitter!<br>
<br>
We combed through Twitter to find some of the most reputable =E2=80=93 an=
d frequent =E2=80=93 tweeters who regularly post about phishing scams and=
 other cyber security issues. If you follow these 10 Twitter accounts, yo=
u should be among the first to know about the latest cyber threats." I wa=
s their No.1 -- Pretty nice..<br>
http://www.techinsurance.com/blog/cyber-risk/top-10-twitter-accounts-to-t=
rack-the-latest-phishing-scams/ </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">NIST Cybersecurity Framework (CSF) Sprint 2017 Workshop Findings<=
/span><br>
<br>
Chris Hoover at RSA wrote: "To shape their Cybersecurity Framework (CSF),=
 NIST convenes a series of workshops open to any industry practitioners, =
vendors, or academics who wish to attend.<br>
<br>
I recently returned from the 2017 NIST CSF Workshop at their headquarters=
 in Gaithersburg, MD. For those interested in the NIST CSF but were unabl=
e to attend, I will quickly run through the highlights. The exciting thin=
g about these workshops that makes them different from any other framewor=
k or guidance is the feedback from the audience gets translated in very h=
igh fidelity into the next version of the CSF.<br>
<br>
In addition to a recent round of public review, feedback from the 2017 wo=
rkshop will be incorporated into CSF version 1.1 later this year. Keeping=
 this in mind, the feedback captured below is a sneak-peek into what the =
finalized NIST CSF 1.1 might look like.<br>
<br>
The bullets are a mixture of comments and recommendations from the confer=
ence attendees for each topic. These comments are very high level, but yo=
u can access recordings of many of the sessions here. If I were a betting=
 person, I would expect to see most of these items incorporated into the =
NIST CSF roadmap and for many to be in the final version of NIST CSF 1.1.=
 Here is the article:<br>
https://blogs.rsa.com/nist-csf-spring-2017-workshop-findings/<br>
<br>
I like this because the NIST CSF Framework is getting so much attention. =
Not only is it a Presidential Order but it is going to be more precise. W=
e help you and make it easy to build and document these NIST controls (an=
d any other) using the KnowBe4 Compliance Manager (KCM). Your audit shows=
 your compliance in half the time and at half the cost. Get a demo of KCM=
 and see for yourself:<br>
https://www.knowbe4.com/products/compliance-manager-software </span></div=
>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><span style=3D"font-size: 24px; line-height=
:30px; font-family: 'Open Sans', sans-serif; color: #f16622;">Get Your Cu=
stomized Automated Security Awareness Program, ASAP!</span><br>
<br>
Many IT pros don=E2=80=99t exactly know where to start when it comes to c=
reating a security awareness program that will work for their organizatio=
n.<br>
<br>
We=E2=80=99ve taken away all the guesswork with our Free Automated Securi=
ty Awareness Program builder (ASAP). ASAP is a revolutionary new tool for=
 IT professionals, which builds a customized Security Awareness Program f=
or your organization that will show you the steps needed to create a full=
y mature training program in just a few minutes!<br>
<br>
The program is complete with actionable tasks, helpful tips, courseware s=
uggestions and a management calendar. You also have the ability to export=
 the full program as a detailed or executive summary version in PDF forma=
t. This is great ammo to help you get budget and reporting to management.=
<br>
<br>
Here's how it works: </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">15-25 questions depending upon answers=
</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Suggested training materials based on =
answers</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Calendar and list view of tasks </span=
></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Detailed and summary exportable PDF ve=
rsions of your program</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Fully mature awareness program ready i=
n 10 minutes</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"> Find out what YOUR program will look like!=
 There's no cost... Start ASAP!<br>
https://info.knowbe4.com/asap-chn<br>
<br>
PS: If you=E2=80=99re a current KnowBe4, just login to your console, clic=
k on ASAP at the top right and get started! </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Interesting News Items This Week</span><br>
<br>
Nuance the Latest NotPetya Victim to Report Financial Impact:<br>
http://www.bankinfosecurity.com/nuance-latest-notpetya-victim-to-report-f=
inancial-impact-a-10138<br>
<br>
More Than 500,000 Systems Infected by Stantinko Malware Since 2012:<br>
https://securityintelligence.com/news/more-than-500000-systems-infected-b=
y-stantinko-malware-since-2012/<br>
<br>
UniCredit breach: Data of 400,000 customers exposed. Another compromise e=
xample but what I thought was interesting is how much they were going to =
spend to help mitigate the risks, huge!:<br>
https://www.helpnetsecurity.com/2017/07/26/unicredit-breach/<br>
<br>
Iranian Espionage Campaign Hinges on Beautiful (But Fake) Woman. Good des=
cription of the lengths the bad guys go through to social engineer someon=
e and compromise them with a honeytrap:<br>
https://www.infosecurity-magazine.com/news/iranian-espionage-campaign-fak=
e/<br>
<br>
Phishers=E2=80=99 techniques and behaviors, and what to do if you=E2=80=99=
ve been phished. Once a user has been phished, how long does it takes for=
 the phishers to misuse the stolen credentials:<br>
https://www.helpnetsecurity.com/2017/07/28/phishers-tactics-and-behaviour=
s/<br>
<br>
Nine HIPAA settlements so far this year. Holy Moly, these are expensive:<=
br>
http://medcitynews.com/2017/07/hipaa-settlements-so-far-this-year/ </span=
></div>
<!--/SECURITY TEXT--><!--FAVE DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Cyberheist 'Fave' Links</span>=
</div>
<!--/FAVE DIV--><!--FAVE TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><span style=3D"font-size: 24px; line-height=
:30px; font-family: 'Open Sans', sans-serif; color: #f16622;">This Week's=
 Links We Like, Tips, Hints and Fun Stuff</span> </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Best Of The Year So Far: The most awes=
ome jumps, ski, snowboard, bicycling, gymnastics, martial arts, paraglidi=
ng, basketball, ping pong, tennis and wingsuit flying in 2017:<br>
	http://www.flixxy.com/people-are-awesome-best-of-the-year-2017-so-far.ht=
m?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Stunningly beautiful sequences filmed =
from the cockpit show what life is really like for pilots at 35,000 feet:=
<br>
	http://www.flixxy.com/a-stunningly-beautiful-view-from-the-cockpit.htm?u=
tm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">The 'Real Life Sherlock Holmes' is bac=
k and continues to blow the minds of the judges and audience at America's=
 Got Talent 2017:<br>
	http://www.flixxy.com/mind-reader-colin-cloud-amazes-americas-got-talent=
-2017.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">How they pulled off the Atomic Blonde'=
s killer action scene:<br>
	https://www.wired.com/story/atomic-blonde-killer-action-sequence?</span>=
</li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Why is the Mona Lisa so famous? You wi=
ll probably be surprised:<br>
	http://www.flixxy.com/why-is-the-mona-lisa-so-famous.htm?utm_source=3D4<=
/span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Some of the World's best teeterboard p=
erformers defy gravity in Rome, Italy:<br>
	http://www.flixxy.com/worlds-best-teeterboard.htm?utm_source=3D4</span><=
/li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">For the kids: Animals of all shapes an=
d sizes love hugging as much as humans do ... maybe even more:<br>
	http://www.flixxy.com/animals-also-like-to-cuddle.htm?utm_source=3D4</sp=
an></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"> </span>
</div>
<!--/FAVE TEXT--><!--SOCIAL & COPYRIGHT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">FOLLOW US ON: <a href=3D"http://newsletter.knowbe4.com/a/1022/click/451=
/1921889/12f6f18bb2280eb257fda0ee104ee0a8a9355394/d2488d8742ad81b4373075a=
47d52292f213a6b5f" style=3D"color:#f16824; text-decoration:none;" target=3D=
"_blank">Twitter</a> | <a href=3D"http://newsletter.knowbe4.com/a/1022/cl=
ick/451/1921889/35c8d23f428e99808212e79c497c5c7904ccc19f/d2488d8742ad81b4=
373075a47d52292f213a6b5f" style=3D"color:#f16824; text-decoration:none;" =
target=3D"_blank">LinkedIn</a> | <a href=3D"http://newsletter.knowbe4.com=
/a/1022/click/451/1921889/665fd8e8468a0fa0d279b30bd4c7ba97f04517dd/d2488d=
8742ad81b4373075a47d52292f213a6b5f" style=3D"color:#f16824; text-decorati=
on:none;" target=3D"_blank">Google</a> | <a href=3D"http://newsletter.kno=
wbe4.com/a/1022/click/451/1921889/947165ed658284c668dbae4f407761b5796d074=
5/d2488d8742ad81b4373075a47d52292f213a6b5f" style=3D"color:#f16824; text-=
decoration:none;" target=3D"_blank">YouTube</a></span></div>

<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Copyright =C2=A9 2014-2017 KnowBe4, Inc. All rights reserved.</span><=
/div>
</div>
<!--SOCIAL & COPYRIGHT-->


</td></tr>
<tr><td>
<br style=3D"clear: both;">
<div class=3D"footersp" style=3D"height:1px; width: 100%; margin-left: au=
to; margin-right: auto; background-color:black;display:block !important;"=
></div>
<br>
<div class=3D"footerco" style=3D"margin-left: auto; margin-right: auto; w=
idth: 100%; background-color:#ffffff !important; display:block !important=
;">
<table border=3D"0" cellpadding=3D"0" cellspacing=3D"0" style=3D"width:10=
0%; display:table !important;">
<tr style=3D"display:table-row !important;">
<td style=3D"width:20%; display:table-cell !important;"></td>
<td align=3D"center" style=3D"mso-table-lspace: 0pt;mso-table-rspace: 0pt=
;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: 100%;text-align:cen=
ter;vertical-align:middle; display:table-cell !important;font-size:8.0pt;=
 font-family:'Arial','sans-serif'; color:#666666;">
This email was sent to <b>edward@transocean.com</b> by <b>feedback@knowbe=
4.com</b>
<br>
<br>
33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA
<br>
<br>
<div style=3D"display:block">
<a style=3D"border:0px;color:#000;display:inline !important;" class=3D"ma=
ro_no_record" rel=3D"nofollow" href=3D"http://newsletter.knowbe4.com/a/10=
22/one_click_unsubscribe/451/1921889/d2488d8742ad81b4373075a47d52292f213a=
6b5f">1-Click Unsubscribe</a>
|
<a style=3D"border:0px;color:#000;display:inline !important;" class=3D"ma=
ro_no_record" rel=3D"nofollow" href=3D"http://newsletter.knowbe4.com/a/10=
22/edit_profile/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f">Edi=
t Profile</a>
|
<a style=3D"border:0px;color:#000;display:inline !important;" class=3D"ma=
ro_no_record" rel=3D"nofollow" href=3D"http://newsletter.knowbe4.com/a/10=
22/unsubscribe/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f">Mana=
ge Subscriptions</a>
|
<a style=3D"border:0px;color:#000;display:inline !important;" class=3D"ma=
ro_no_record" rel=3D"nofollow" href=3D"http://newsletter.knowbe4.com/a/10=
22/report_spam/451/1921889/d2488d8742ad81b4373075a47d52292f213a6b5f">Repo=
rt Spam</a>
</div>
</td>
<td align=3D"right" style=3D"text-align:right;mso-table-lspace: 0pt;mso-t=
able-rspace: 0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: 100=
%;width:20%;vertical-align:middle; display:table-cell !important;font-siz=
e:8.0pt; font-family:'Arial','sans-serif'; color:#666666;" valign=3D"midd=
le">
</td>
</tr>
</table>
</div>
</td></tr>
</table></body></html>


    </body>
  </html>

----==_mimepart_59808d84c852f_5c1b6bb0480149130333--
