Tag

phishing awareness

Provides resources for building phishing awareness among individuals and teams. Articles cover how to recognize phishing emails, conduct simulated phishing exercises, develop security-conscious habits, and implement ongoing awareness training programs within organizations.

posts

cybersecurity

Cybersecurity in 2021: What Actually Works Right Now

The Colonial Pipeline Attack Changed Everything On May 7, 2021, a single compromised password shut down the largest fuel pipeline in the United States. Colonial Pipeline paid a $4.4 million ransom to the DarkSide threat actor group — and Americans along the East Coast panic-bought gasoline for days. That'

Carl B. Johnson Jul 01, 2021 7 min read
phish

Phish: How One Click Costs Companies Millions

One Phish Email Took Down a $60 Billion Company's Defenses In 2023, MGM Resorts International lost roughly $100 million after a social engineering attack that started with a single phone call to their help desk. But most attacks don't even require that much effort. The average

Carl B. Johnson Feb 28, 2020 7 min read
phishing meaning

Phishing Meaning: What It Really Is and Why It Works

In 2023, the FBI's Internet Crime Complaint Center received over 298,000 complaints about phishing — making it the most reported cybercrime in the United States for the fifth consecutive year. Yet when I ask employees during security assessments to explain what phishing actually is, most give me a

Carl B. Johnson Feb 27, 2020 6 min read
smishing attack examples

Smishing Attack Examples: Real Texts That Steal Data

A Single Text Message Cost One Company $15 Million In 2022, Twilio disclosed that attackers used SMS phishing — smishing — to trick employees into surrendering their credentials. The threat actors sent text messages impersonating the company's IT department, directing staff to a fake login page. That single campaign compromised

Carl B. Johnson Jan 19, 2020 6 min read
phishing meaning

Phishing Meaning: What It Really Is and Why It Works

A Single Email Cost This Company $100 Million In 2019, Toyota Boshoku Corporation wired $37 million to a threat actor who impersonated a business partner via email. Facebook and Google collectively lost over $100 million to a Lithuanian man who sent fake invoices over two years. These weren't

Carl B. Johnson Jun 18, 2019 6 min read