Return-Path: <1921889-479-1022@be1.maropost.com>
Delivered-To: edward@transocean.com
Received: from vps.transocean.com
	by vps.transocean.com (Dovecot) with LMTP id ia3THnM6nFkIWQAAInt2oQ
	for <edward@transocean.com>; Tue, 22 Aug 2017 07:06:43 -0700
Return-path: <1921889-479-1022@be1.maropost.com>
Envelope-to: edward@transocean.com
Delivery-date: Tue, 22 Aug 2017 07:06:43 -0700
Received: from mpmta4.knowbe4.com ([168.235.226.74]:19315)
	by vps.transocean.com with esmtp (Exim 4.89)
	(envelope-from <1921889-479-1022@be1.maropost.com>)
	id 1dk9p6-00067o-7m
	for edward@transocean.com; Tue, 22 Aug 2017 07:06:43 -0700
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
 s=default; d=knowbe4.com; t=1503410787; l=1; h=from:subject:date:to;
 bh=nR4OLZRZ0GUjrRPiikCTwjFrqv567Fsl8w66LhE1mcQ=;
 b=RwO3/vEL2gRZ28MtBqVJd3sKJ5MgtAmrbkJ1FBtHtjNbVhqTvHHjLTH7SBe2L8pDCFcpZR
 d3BHEQceoI+/VRq56Z0wTJ6y4f7xP2DUVpixu709M5aidlKNZ7RUDnTbh8a6sq5V8MVq2g
 eJDYsz2u0yJ5q1Bjzr9lrc5vaYoyQU8=
Received: from [<1921889-479-1022@be1.maropost.com>] ([<1921889-479-1022@be1.maropost.com>] helo=) 
 by 771414-mailer6.maropost.com (envelope-from 1921889-479-1022@be1.maropost.com)
 (Jetsend MTA 0.0.1 with ESMTP; Tue Aug 22 10:04:24 EDT 2017
Date: Tue, 22 Aug 2017 10:04:22 -0400
From: CyberheistNews <feedback@knowbe4.com>
Reply-To: feedback@knowbe4.com
To: edward@transocean.com
Message-ID: <b90ed370-6970-0135-2243-0cdcd4b634c4@knowbe4.com>
Subject: This Is a First: Compromised PowerPoint Slide Deck Bypasses Antivirus
Mime-Version: 1.0
Content-Type: multipart/alternative;
 boundary="--==_mimepart_599c39e6bd5fc_5c547ad93943974369ad";
 charset=UTF-8
Content-Transfer-Encoding: 7bit
List-Unsubscribe: <mailto:1921889-479-1022-168.235.226.74-gmail@abuse.maropost.com>
X-CampaignID: 479
X-Campaign-ID: 479
X-ContactID: 1921889
X-AccountID: 1022
X-Binding: 168.235.226.74
X-DkimDomain: knowbe4.com
X-DkimSelector: default
X-Feedback-ID: 479:Maropost
X-Spam-Status: No, score=-0.1
X-Spam-Score: 0
X-Spam-Bar: /
X-Ham-Report: Spam detection software, running on the system "vps.transocean.com",
 has NOT identified this incoming email as spam.  The original
 message has been attached to this so you can view it or label
 similar future email.  If you have any questions, see
 root\@localhost for details.
 
 Content preview:  This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt;
    by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt; Manage Subscriptions
    http://newsletter.knowbe4.com/a/1022/unsubscribe/479/1921889/805f31c0e4f28eb54e5c68e77eef10292ed7ae33
    33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA Report Spam http://newsletter.knowbe4.com/a/1022/report_spam/479/1921889/805f31c0e4f28eb54e5c68e77eef10292ed7ae33
    [...] 
 
 Content analysis details:   (-0.1 points, 3.0 required)
 
  pts rule name              description
 ---- ---------------------- --------------------------------------------------
  0.0 URIBL_BLOCKED          ADMINISTRATOR NOTICE: The query to URIBL was blocked.
                             See
                             http://wiki.apache.org/spamassassin/DnsBlocklists#dnsbl-block
                              for more information.
                             [URIs: hubspot.net]
  0.0 HEADER_FROM_DIFFERENT_DOMAINS From and EnvelopeFrom 2nd level mail
                             domains are different
  0.0 T_SPF_TEMPERROR        SPF: test of record failed (temperror)
  0.0 HTML_MESSAGE           BODY: HTML included in message
 -0.0 BAYES_40               BODY: Bayes spam probability is 20 to 40%
                             [score: 0.2893]
  0.0 T_KAM_HTML_FONT_INVALID BODY: Test for Invalidly Named or Formatted
                             Colors in HTML
 -0.1 DKIM_VALID_AU          Message has a valid DKIM or DK signature from author's
                             domain
  0.1 DKIM_SIGNED            Message has a DKIM or DK signature, not necessarily valid
 -0.1 DKIM_VALID             Message has at least one valid DKIM or DK signature
  0.0 LOTS_OF_MONEY          Huge... sums of money
  0.0 UNPARSEABLE_RELAY      Informational: message has unparseable relay lines
  0.0 T_MONEY_PERCENT        X% of a lot of money for you
X-Spam-Flag: NO


----==_mimepart_599c39e6bd5fc_5c547ad93943974369ad
Content-Type: text/plain;
 charset=UTF-8
Content-Transfer-Encoding: 7bit

This email was sent to &amp;lt;b&amp;gt;edward@transocean.com&amp;lt;/b&amp;gt; by &amp;lt;b&amp;gt;feedback@knowbe4.com&amp;lt;/b&amp;gt;
Manage Subscriptions
http://newsletter.knowbe4.com/a/1022/unsubscribe/479/1921889/805f31c0e4f28eb54e5c68e77eef10292ed7ae33
33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA
Report Spam
http://newsletter.knowbe4.com/a/1022/report_spam/479/1921889/805f31c0e4f28eb54e5c68e77eef10292ed7ae33


----==_mimepart_599c39e6bd5fc_5c547ad93943974369ad
Content-Type: text/html;
 charset=UTF-8
Content-Transfer-Encoding: quoted-printable

  <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3=
.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  <html xmlns=3D"http://www.w3.org/1999/xhtml">
    <head>
      <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DU=
TF-8">
      <meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-sc=
ale=3D1.0">
      <title>This Is a First: Compromised PowerPoint Slide Deck Bypasses =
Antivirus</title>
    </head>
    <body>
      <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http=
://www.w3.org/TR/REC-html40/loose.dtd">
<html><body><table cellpadding=3D"0" cellspacing=3D"0" width=3D"100%">
<tr><td>
<img height=3D"1" width=3D"1" alt=3D"" style=3D"display:block;" src=3D"ht=
tp://newsletter.knowbe4.com/a/1022/open/479/1921889/805f31c0e4f28eb54e5c6=
8e77eef10292ed7ae33">
</td></tr>
<tr><td>


<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-8">=

<title></title>
<meta charset=3D"utf-8">
<meta name=3D"viewport" content=3D"width=3Ddevice-width, initial-scale=3D=
1">
<meta http-equiv=3D"X-UA-Compatible" content=3D"IE=3Dedge">
<link href=3D"https://fonts.googleapis.com/css?family=3DOpen+Sans:300,400=
,600,700,800" rel=3D"stylesheet">
<style type=3D"text/css">/* CLIENT-SPECIFIC STYLES */
    #outlook a{padding:0;} /* Force Outlook to provide a "view in browser=
" message */
    .ReadMsgBody{width:100%;} .ExternalClass{width:100%;} /* Force Hotmai=
l to display emails at full width */
    .ExternalClass, .ExternalClass p, .ExternalClass span, .ExternalClass=
 font, .ExternalClass td, .ExternalClass div {line-height: 100%;} /* Forc=
e Hotmail to display normal line spacing */
    body, table, td, a{-webkit-text-size-adjust:100%; -ms-text-size-adjus=
t:100%;} /* Prevent WebKit and Windows mobile changing default text sizes=
 */
    table, td{mso-table-lspace:0pt; mso-table-rspace:0pt;} /* Remove spac=
ing between tables in Outlook 2007 and up */
    img{-ms-interpolation-mode:bicubic;} /* Allow smoother rendering of r=
esized image in Internet Explorer */

    /* RESET STYLES */
    body{margin:0; padding:0; background-color:#ffffff;}
    img{border:0; height:auto; line-height:100%; outline:none; text-decor=
ation:none;}
    body{height:100% !important; margin:0; padding:0; width:100% !importa=
nt;}

    /* iOS BLUE LINKS */
    .appleBody a {color:#f16824; text-decoration: none;}
    .appleFooter a {color:#f16824; text-decoration: none;}

    /* MOBILE STYLES */
    @media screen and (max-width: 525px) {
</style>
<!--SUBJECT & DIRECT LINK-->


<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<div style=3D"max-width:600px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">This Is a First: Compromised PowerPoint Slide Deck Bypasses Antivirus<b=
r>
=C2=A0</span></div>

<div style=3D"max-width:200px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Email not displaying?<br>
<a href=3D"http://newsletter.knowbe4.com/a/1022/click/479/1921889/b0b95ee=
283cb9cc9fc41475b777a158c4a77b943/805f31c0e4f28eb54e5c68e77eef10292ed7ae3=
3" style=3D"color:#f16824; text-decoration:none;" target=3D"_blank">View =
Knowbe4 Blog</a></span></div>
</div>
<!--SUBJECT & DIRECT LINK--><!--LOGO-->

<div style=3D"max-width:800px; margin:auto; padding: 40px 20px 20px 20px;=
 text-align:center;"><a href=3D"http://newsletter.knowbe4.com/a/1022/clic=
k/479/1921889/044ac0b3da603dc543019ea4b8f92228baf8fbe8/805f31c0e4f28eb54e=
5c68e77eef10292ed7ae33" target=3D"_blank"><img align=3D"center" src=3D"ht=
tp://cdn2.hubspot.net/hubfs/241394/CHN-LOGO-2017-1.png" style=3D"width:10=
0%;"></a></div>
<!--/LOGO--><!--ISSUE & DATE-->

<div style=3D"max-width:800px; margin:auto; padding: 0px 20px 0px 20px; t=
ext-align:center;">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<span style=3D"font-size:14px; line-height:14px; font-family: 'Open Sans'=
, sans-serif; color:#676767;">CyberheistNews Vol 7 #33 =C2=A0 | =C2=A0 Au=
g. 22nd., 2017</span>

<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
</div>
<!--/ISSUE & DATE--><!--MAIN STORY-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">This Is a First: Compromised PowerPoint S=
lide Deck Bypasses Antivirus</span> <span style=3D"font-size:16px; line-h=
eight:22px; font-family: 'Open Sans', sans-serif; color: #333333;"> <img =
align=3D"right" src=3D"http://cdn2.hubspot.net/hubfs/241394/CHN-STU-2017-=
1.png" style=3D" padding: 20px 0px 20px 20px;" width=3D"144"><br>
<br>
Bad guys are exploiting the CVE-2017-0199 vulnerability to bypass endpoin=
t security software and deliver the Remcos remote access Trojan via Micro=
soft PowerPoint decks.<br>
<br>
This particular flaw in the Windows Object Linking and Embedding (OLE) in=
terface is normally used to deliver infected RTF documents, but researche=
rs at Trend Micro have spotted cyber criminals using it to compromise Pow=
erPoint slide show files for the first time.<br>
<br>
Critically, since most methods of detecting the CVE-2017-0199 vulnerabili=
ty focus on the RTF attack method, the use of the PPSX PowerPoint as an a=
ttack vector means attackers can code the malware to avoid antivirus dete=
ction.<br>
<br>
More at the KnowBe4 blog, with links and screenshots:<br>
https://blog.knowbe4.com/this-is-a-first-spear-phishing-attack-uses-compr=
omised-powerpoint-slide-deck </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Inside the New York Hospital That Was Dow=
n for 6 Weeks Due to Ransomware </span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">If you ever needed ammo to convince budget=
 holders that you need more IT security resources, this is the link to se=
nd them. It is a great discussion-starter how an attack like this would p=
lay out in your own organization.<br>
<br>
On Monday August 18th, "CBSN: On Assignment" did a special, visiting an u=
pstate New York hospital, the Erie County Medical Center. Criminal hacker=
s took down the level one trauma center's computer systems for six weeks =
by encrypting all machines with a ransomware strain and demanding a whopp=
ing ransom. Here is the article and video:<br>
https://www.cbsnews.com/news/cbsn-on-assignment-hackers-targeting-medical=
-industry-hospitals/ </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">How Vulnerable Is *Your* Network Against =
Ransomware Infections?</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">KnowBe4=E2=80=99s updated, complimentary R=
ansomware Simulator "RanSim" gives you an instant look at the effectivene=
ss of your existing network protection.<br>
<br>
RanSim will simulate 10 ransomware infection scenarios and show you if a =
typical workstation is vulnerable to infection. Here's how RanSim works: =
</span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">100% harmless simulation of a real ra=
nsomware infection</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Does not use any of your own files</s=
pan></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Tests 10 types of infection scenarios=
</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Just download the install and run it<=
/span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Results in a few minutes!</span></li>=

</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> How will your endpoint protection softwar=
e perform in these scenarios?<br>
Download RanSim Now: https://info.knowbe4.com/ransomware-simulator-tool-1=
chn </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Survey of 2600 IT Pros: "Password Procedu=
res Still Are a Cyber Security Fail"</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">After the NIST passwords bombshell, we sur=
veyed 2,600 IT professionals to find out how they were managing passwords=
. The answers show that IT pros are generally receptive to the proposed p=
ass phrase concept suggested by NIST.<br>
<br>
NIST Special Publication 800-63B, =E2=80=9CDigital Identity Guidelines,=E2=
=80=9D states: =E2=80=9CMany attacks associated with the use of passwords=
 are not affected by password complexity and length. Keystroke logging, p=
hishing, and social engineering attacks are equally effective on lengthy,=
 complex passwords as simple ones. <i>This means that password complexity=
 has failed in practice.</i>"<br>
<br>
KnowBe4=E2=80=99s survey showed that 44% of respondents overall, (large o=
rganizations with 1,000+ employees and small to mid-size businesses), thi=
nk a roughly 25-character pass phrase could work versus 35% who don=E2=80=
=99t believe it to be a viable option for their organization.<br>
<br>
The highlights from the survey are: </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Nearly 97% of large organizations hav=
e an enforced password policy compared to almost 88% in small to mid-size=
 organizations.</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">A majority (63%) of organizations do =
not allow password re-use, however this does not prevent employees from u=
sing the same password on multiple sites.</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Almost half (49%) of large organizati=
ons believe their current password policy is insufficient, while 48% of s=
mall to mid-size organizations believe their password policy is good enou=
gh.</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Enterprise-size organizations (1,000+=
 users) prefer multi-factor authentication (MFA) with only 38 % stating t=
hey do.</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> Here are the full survey results (PDF):<b=
r>
https://blog.knowbe4.com/survey-of-2600-it-pros-password-procedures-still=
-are-a-cyber-security-fail </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">New Study: Phishing Is Still the Top Thre=
at Faced by Organizations</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">The new 2017 SANS Threat Landscape survey =
from the well-known research and education specialist finds that security=
 professionals rate phishing at 72 percent, spyware at 50 percent, ransom=
ware at 49 percent, and Trojans at 47 percent as being the top threats to=
day. We strongly recommend you download the whole study and read it top t=
o bottom. There is also an on-demand webcast you should watch.<br>
<br>
From the new study's Executive Summary: "Endpoints=E2=80=94and the users =
behind them=E2=80=94are on the front lines of the battle: Together they r=
epresent the most significant entry points for attackers obtaining a toeh=
old into the corporate network. Users are also the best detection tool or=
ganizations have against real threats."<br>
<br>
"Users and their endpoints are still in the cross hairs," says Lee Neely,=
 SANS analyst, mentor instructor and author of the survey report. "Tradit=
ional and malware-less threats keep popping up at every corner, making ou=
r jobs as defenders resemble an ongoing game of Whack-a-Mole to keep them=
 at bay."<br>
<br>
Full story, graphs, and links to the PDF and the webcast at the KnowBe4 B=
log:<br>
https://blog.knowbe4.com/new-study-phishing-is-still-the-top-threat-faced=
-by-organizations </span>
</div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
">
<span style=3D"font-size: 24px; line-height:30px; font-family: 'Open Sans=
', sans-serif; color: #f16622;">Live Webinar: How to Phish Like the Bad G=
uys</span><br>
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;">Despite all the spectacular news stories a=
bout advanced persistent threats and targeted hacks from nation-states, t=
he most common security challenge facing organizations today continues to=
 be social engineering.<br>
<br>
Successful hackers understand that the user is the weakest link in the se=
curity chain. Email phishing campaigns have proven to be the path of leas=
t resistance to get unsuspecting individuals to download and install thei=
r malicious software.<br>
<br>
Getting users to identify phishing attacks and training them not to click=
 on links in email messages has been challenging until recently.<br>
<br>
In this 30-minute webinar, you=E2=80=99ll learn the strategies and techni=
ques that social engineers are finding success with. You=E2=80=99ll also =
learn how to implement these techniques using KnowBe4=E2=80=99s simulated=
 phishing platform and easily create a real-world phishing email to test =
your employees and see how phish-prone they really are.<br>
<br>
Key topics covered in this webinar: </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Latest phishing attacks strategies an=
d techniques</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">Some of the top-clicked phishing emai=
ls from Q2-2017</span></li>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color: #333333;">How to create a simulated phishing at=
tack in minutes with KnowBe4=E2=80=99s platform</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> <b>Register Now! Wed, Aug 23, 2017 2:00 P=
M - 2:30 PM EDT</b><br>
https://attendee.gotowebinar.com/register/7818773804792726019 </span>

<p align=3D"right"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color: #333333;">Warm Regards,<br>
Stu Sjouwerman </span></p>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color: #333333;"> </span>
</div>
<!--/MAIN STORY--><!--QUOTES DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Quotes of the Week</span></div=
>
<!--/QUOTES DIV--><!--QUOTES TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:center;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><i>"A dream you dream alone is only a dream=
. A dream you dream together is reality."</i> - John Lennon<br>
<br>
<i>"A dream doesn't become reality through magic; it takes sweat, determi=
nation<br>
and hard work."</i> - Colin Powell </span><br>
=C2=A0
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<br>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><strong>Thanks for reading CyberheistNews</=
strong><br>
But if you want to unsubscribe, you can do that <a href=3D"http://newslet=
ter.knowbe4.com/a/1022/click/479/1921889/486ae771c748e753c0a203927ab7bc2a=
f91a1576/805f31c0e4f28eb54e5c68e77eef10292ed7ae33" style=3D"color:#f16824=
; text-decoration:none;" target=3D"_blank">right here</a><br>
<br>
<strong>You can read CyberheistNews online at our Blog</strong><br>
https://blog.knowbe4.com/cyberheistnews-vol-7-33-new-study-phishing-is-st=
ill-the-top-threat-faced-by-organizations </span>
</div>
<!--/QUOTES TEXT--><!--SECURITY DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Security News</span></div>
<!--/SECURITY DIV--><!--SECURITY TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Large Insurance Company Settles for $5.5 Million over "Failed to =
Patch" Data Breach</span><br>
<br>
A large insurance company (Nationwide) agreed to pay a total of 5.5 milli=
on dollars to settle charges brought by 32 states resulting from the loss=
 of critical consumer information attributable to a criminal data breach.=
<br>
<br>
According to the Settlement Agreement, the respondent lost the data for 1=
.27 million customer across the country when hackers exploited a security=
 breach created when the respondent failed to implement a security patch.=
<br>
<br>
As part of the settlement, the insurance company agreed to appoint a secu=
rity patch supervisor, implement security patch policies and procedures, =
and perform internal assessments.<br>
<br>
The New York State Attorney General criticized the respondent for its =E2=
=80=9Ctrue carelessness while collecting and retaining information from p=
rospective customers, needlessly exposing their personal data in the proc=
ess.=E2=80=9D<br>
<br>
Here is the blog post with more detail and the PDF from the NY Attorney G=
eneral site:<br>
https://blog.knowbe4.com/large-insurance-company-settles-for-5.5-million-=
over-failed-to-patch-data-breach </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Make the Training Stick: How to Engage Users in Cybersecurity Pra=
ctices</span><br>
<br>
Riverside HealthCare achieved a 99 percent compliance rate with phishing =
campaigns after it educated (and perhaps scared) its staff into being cau=
tious.<br>
<br>
Cyberattackers count on untrained computer users to react to electronic b=
ait a certain way, and when they succeed it is because employees are not =
as engaged with cybersecurity practices as they should be. And that can i=
nclude those who have already been through training.<br>
<br>
Even though employees attend cybersecurity training programs, for instanc=
e, many come back afterward and do not apply what they just learned, acco=
rding to Erik Devine, chief information security officer at Riverside Hea=
lthCare in Illinois.<br>
<br>
Five years ago, Riverside had an 85 percent compliance rate when conducti=
ng phishing campaigns among its 3,000 employees, Devine said, and most di=
d not know who to contact if they received a suspicious email.<br>
<br>
=E2=80=9COur current rate is 97 to 99 percent compliance, depending on th=
e type of test given,=E2=80=9D he said. =E2=80=9CIt=E2=80=99s my job to e=
ngage the organization because without employees trained and engaged in i=
nformation security, the landscape is just too large to protect.=E2=80=9D=
<br>
<br>
What can other hospitals learn from Riverside=E2=80=99s success? Devine s=
hared what has worked during the training as well as what to look for onc=
e the employees go back to their jobs. Article at HealthCareITnews:<br>
http://www.healthcareitnews.com/news/make-training-stick-how-engage-users=
-cybersecurity-practices </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Los Angeles Health Care Provider Potentially Breached by Ransomwa=
re Attack</span><br>
<br>
Pacific Alliance Medical Center=E2=80=99s servers were hit by a ransomwar=
e attack in June, and officials said the investigation couldn=E2=80=99t r=
ule out whether patient data was accessed.<br>
<br>
However, the notice to patients did not mention whether PAMC paid the ran=
som. Further, officials said the investigation couldn't rule out whether =
the patient data were viewed or stolen by the ransomware attack, although=
 the organization didn't uncover evidence to suggest the data was stolen.=
<br>
<br>
As you can see, ransomware infections are highly likely going to be seen =
as a data breach with reporting requirements. More:<br>
http://www.healthcareitnews.com/news/los-angeles-provider-potentially-bre=
ached-ransomware-attack </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Cybersecurity: The Hottest New Major in College</span><br>
<br>
Large numbers of US colleges have added undergraduate cybersecurity major=
s, cybersecurity concentrations to other majors, and master's degree prog=
rams in cybersecurity. Most colleges, however, do not know what to teach,=
 and many are teaching students only how to admire the cybersecurity prob=
lem, but not how to fix it.<br>
<br>
Further, computer science graduates don't learn secure coding or other te=
chnical cybersecurity topics. None of the Top 10 undergraduate computer s=
cience and engineering programs at American universities (as ranked by th=
e U.S. News &amp; World Report) required its students to take a cybersecu=
rity course in order to graduate. More:<br>
https://www.villagevoice.com/2017/08/15/how-cybersecurity-became-2017s-ho=
t-new-major/ </span></div>

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;"><span style=3D"font-size:16px; line-height:22px; font-=
family: 'Open Sans', sans-serif; color:#333333;"><span style=3D"font-size=
: 24px; line-height:30px; font-family: 'Open Sans', sans-serif; color: #f=
16622;">Interesting News Items This Week</span><br>
<br>
Ex-NSA Analyst Raises 10 Million to Stop Hackers Destroying Power Grids:<=
br>
https://www.forbes.com/sites/thomasbrewster/2017/08/14/dragos-funding-to-=
stop-hacker-blackouts/#1cce01484f6f<br>
<br>
Under the Radar: Three Ransomware Stories You Probably Didn=E2=80=99t See=
:<br>
http://techspective.net/2017/08/14/radar-three-ransomware-stories-probabl=
y-didnt-see/<br>
<br>
One Nigerian man's simple phishing campaign drains thousands from corpora=
te coffers:<br>
https://www.cyberscoop.com/phishing-get-rich-or-die-trying-nigeria-checkp=
oint-bec-attacks/<br>
<br>
Seven More Chrome Extensions Compromised:<br>
https://threatpost.com/seven-more-chrome-extensions-compromised/127458/<b=
r>
<br>
New Windows flaw could allow a WannaCry-like attack if not patched:<br>
https://www.scmagazine.com/new-windows-flaw-could-allow-a-wannacry-like-a=
ttack-if-not-patched/article/681698/<br>
<br>
Vaccine discovered for Cerber ransomware - based on its own evasion:<br>
https://www.scmagazineuk.com/vaccine-discovered-for-cerber-ransomware--ba=
sed-on-its-own-evasion/article/682120/<br>
<br>
Rent the Latest Exploit Toolkit for $80 Per Day:<br>
https://www.bankinfosecurity.com/rent-latest-exploit-toolkit-for-80-per-d=
ay-a-10201<br>
<br>
HBO's Twitter accounts hacked in latest cyberattack:<br>
http://www.foxnews.com/entertainment/2017/08/17/hbos-twitter-accounts-hac=
ked-in-latest-cyberattack.html<br>
<br>
The Hardest Working Office Design in America Encrypts Your Data=E2=80=93W=
ith Lava Lamps:<br>
https://www.fastcodesign.com/90137157/the-hardest-working-office-design-i=
n-america-encrypts-your-data-with-lava-lamps<br>
<br>
U.S. Worried North Korea Will Unleash Cyberattacks:<br>
http://www.nbcnews.com/news/north-korea/u-s-worried-north-korea-will-unle=
ash-cyberattacks-n790831<br>
<br>
FBI pushes private sector to cut ties with Kaspersky:<br>
https://www.cyberscoop.com/fbi-kaspersky-private-sector-briefings-yarovay=
a-laws/<br>
<br>
WannaCry Ransomware Chill Spurs China Interest in Purchasing Gobs of Cybe=
r Insurance:<br>
https://www.reuters.com/article/us-aig-china-cyber-idUSKBN1AP12E </span><=
/div>
<!--/SECURITY TEXT--><!--FAVE DIV-->

<div style=3D"max-width:800px; margin:auto; background-color:#676767; pad=
ding: 10px 10px 10px 10px; text-align:center; border-radius:6px;"><span s=
tyle=3D"font-size:24px; line-height:24px; font-family: 'Open Sans', sans-=
serif; color:#ffffff; letter-spacing:6px;">Cyberheist 'Fave' Links</span>=
</div>
<!--/FAVE DIV--><!--FAVE TEXT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 40px 20px;=
 text-align:left;">
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"><span style=3D"font-size: 24px; line-height=
:30px; font-family: 'Open Sans', sans-serif; color: #f16622;">This Week's=
 Links We Like, Tips, Hints and Fun Stuff</span> </span>

<ul>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">OK, Who -Is- This Stu Guy Anyway? [VID=
EO] I had a freelance video PR crew follow me one day at Black Hat, to gi=
ve you an idea of who the heck I am:<br>
	https://blog.knowbe4.com/ok-who-is-this-stu-sjouwerman-guy-anyway-video<=
/span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">This is a great remix of the GENESIS s=
ong "I Can't Dance" and the dancers are awesome:<br>
	https://www.youtube.com/watch?v=3DnYIbUakguIE</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">RIOT: Two very mischievous monkeys joy=
-riding a wild boar in the African country of Mozambique:<br>
	http://www.flixxy.com/two-monkeys-riding-a-wild-boar.htm?utm_source=3D4<=
/span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Watch a new World Yo-Yo Champion in ac=
tion:<br>
	http://boingboing.net/2017/08/17/watch-the-new-world-yo-yo-cham.html</sp=
an></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Comedic Daredevil Bello Nock amazes th=
e judges and audience of America's Got Talent 2017 with this hair-raising=
 stunt:<br>
	http://www.flixxy.com/comedic-daredevil-bello-nock-takes-on-wheel-of-dea=
th.htm?utm_source=3D4</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Mercedes-Maybach just unveiled a stunn=
ing convertible concept car to rival Tesla<br>
	http://www.businessinsider.com/mercedes-maybach-vision-6-cabriolet-conve=
rtible-pebble-beach-2017-8</span></li>
	<br>
	<li><span style=3D"font-size:16px; line-height:22px; font-family: 'Open =
Sans', sans-serif; color:#333333;">Kevin Mitnick, KnowBe4's Chief Hacking=
 Officer retweeted a link to well-executed infographic about Social Engin=
eering, and here it is!:<br>
	https://blog.knowbe4.com/here-is-a-cool-and-useful-infographic-about-soc=
ial-engineering</span></li>
</ul>
<span style=3D"font-size:16px; line-height:22px; font-family: 'Open Sans'=
, sans-serif; color:#333333;"> </span>
</div>
<!--/FAVE TEXT--><!--SOCIAL & COPYRIGHT-->

<div style=3D"max-width:800px; margin:auto; padding: 20px 20px 20px 20px;=
">
<hr style=3D"border: 0; height: 1px; background-image: linear-gradient(to=
 right, rgba(0, 0, 0, 0), rgba(0, 0, 0, 0.25), rgba(0, 0, 0, 0));">
<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:left; text-align:left; line-height:12px;"><span style=3D"font-size:10p=
x; line-height:10px; font-family: 'Open Sans', sans-serif; color:#676767;=
">FOLLOW US ON: <a href=3D"http://newsletter.knowbe4.com/a/1022/click/479=
/1921889/12f6f18bb2280eb257fda0ee104ee0a8a9355394/805f31c0e4f28eb54e5c68e=
77eef10292ed7ae33" style=3D"color:#f16824; text-decoration:none;" target=3D=
"_blank">Twitter</a> | <a href=3D"http://newsletter.knowbe4.com/a/1022/cl=
ick/479/1921889/35c8d23f428e99808212e79c497c5c7904ccc19f/805f31c0e4f28eb5=
4e5c68e77eef10292ed7ae33" style=3D"color:#f16824; text-decoration:none;" =
target=3D"_blank">LinkedIn</a> | <a href=3D"http://newsletter.knowbe4.com=
/a/1022/click/479/1921889/665fd8e8468a0fa0d279b30bd4c7ba97f04517dd/805f31=
c0e4f28eb54e5c68e77eef10292ed7ae33" style=3D"color:#f16824; text-decorati=
on:none;" target=3D"_blank">Google</a> | <a href=3D"http://newsletter.kno=
wbe4.com/a/1022/click/479/1921889/947165ed658284c668dbae4f407761b5796d074=
5/805f31c0e4f28eb54e5c68e77eef10292ed7ae33" style=3D"color:#f16824; text-=
decoration:none;" target=3D"_blank">YouTube</a></span></div>

<div style=3D"max-width:400px; margin:auto; padding: 0px 0px 0px 0px; flo=
at:right; text-align:right; line-height:12px;"><span style=3D"font-size:1=
0px; line-height:10px; font-family: 'Open Sans', sans-serif; color:#67676=
7;">Copyright =C2=A9 2014-2017 KnowBe4, Inc. All rights reserved.</span><=
/div>
</div>
<!--SOCIAL & COPYRIGHT-->


</td></tr>
<tr><td>
<div class=3D"footersp" style=3D"height:1px; width: 100%; margin-left: au=
to; margin-right: auto; background-color:black;display:block !important;"=
>=C2=A0</div>
=C2=A0

<div class=3D"footerco" style=3D"margin-left: auto; margin-right: auto; w=
idth: 100%; background-color:#ffffff !important; display:block !important=
;">
<table border=3D"0" cellpadding=3D"0" cellspacing=3D"0" style=3D"width:10=
0%; display:table !important;">
	<tbody>
		<tr style=3D"display:table-row !important;">
			<td style=3D"width:20%; display:table-cell !important;">=C2=A0</td>
			<td align=3D"center" style=3D"mso-table-lspace: 0pt;mso-table-rspace: =
0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: 100%;text-align:=
center;vertical-align:middle; display:table-cell !important;font-size:8.0=
pt; font-family:'Arial','sans-serif'; color:#666666;">This email was sent=
 to <b>edward@transocean.com</b> by <b>feedback@knowbe4.com</b><br>
			<br>
			33 N Garden Ave, Suite 1200 Clearwater, FL 33755 USA<br>
			=C2=A0
			<div style=3D"display:block"><a class=3D"maro_no_record" href=3D"http:=
//newsletter.knowbe4.com/a/1022/one_click_unsubscribe/479/1921889/805f31c=
0e4f28eb54e5c68e77eef10292ed7ae33" rel=3D"nofollow" style=3D"border:0px;c=
olor:#000;display:inline !important;">1-Click Unsubscribe</a></div>
			</td>
			<td align=3D"right" style=3D"text-align:right;mso-table-lspace: 0pt;ms=
o-table-rspace: 0pt;-ms-text-size-adjust: 100%;-webkit-text-size-adjust: =
100%;width:20%;vertical-align:middle; display:table-cell !important;font-=
size:8.0pt; font-family:'Arial','sans-serif'; color:#666666;" valign=3D"m=
iddle">=C2=A0</td>
		</tr>
	</tbody>
</table>
</div>
</td></tr>
</table></body></html>


    </body>
  </html>

----==_mimepart_599c39e6bd5fc_5c547ad93943974369ad--
