❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayKnowBe4 Security

Survey: Companies Cite Phishing as their Top AI-Enabled Fraud Concern

11 September 2026 at 12:00

A recent survey from Experian found that 60% of companies report fraud losses that are β€œsomewhat or significantly higher” than in previous years, with a majority of respondents citing AI-generated phishing attacks as their top AI-related fraud concern.

New Phishing Kit Uses AI to Fully Automate Vishing Attacks

2 September 2026 at 12:00

A new phishing kit is using generative AI to fully automate voice phishing (vishing) attacks, according to researchers at Group-IB.

The phishing platform, called β€œBalonx,” includes a module dubbed β€œCallFlow” that the researchers say β€œrepresents a fundamental evolution” in the phishing-as-a-service market. This module uses four commercial AI services to conduct the attacks: OpenAI’s GPT-4o-mini, ElevenLabs’s AI voice generator, OpenAI Voice, and OpenAI Whisper.

Hacking the Healers: New KnowBe4 Whitepaper Highlights Record Security Breaches in Healthcare

2 September 2026 at 07:00

When an organization has a security breach, it can cause significant financial, reputationalΒ and logistical damage. But in healthcare, where patient lives are on the line, the consequences can be much more catastrophic.

KnowBe4’s latest whitepaper on healthcare cybersecurity, β€œHacking the Healers: How the Digital Workforce Became Cybersecurity's Frontline,” examines how decentralized clinical operations, remote staff and autonomous AI agents have dissolved traditional network perimeters, leaving healthcare organizations and patient safety vulnerable to targeted cyberattacks.

Report: AI Chatbots Are More Effective at Building Trust Than Human Scammers

24 August 2026 at 16:00

A study has found that AI chatbots can be more effective at social engineering than human scammers, WIRED reports. The researchers looked at a form of romance scam commonly known as β€œpig butchering,” in which scammers spend weeks or months building a relationship with the victim before tricking them into sending money for a phony investment scheme.

Human Error Remains at the Core of AI-Enabled Social Engineering

24 August 2026 at 09:00

AI is making social engineering attacks significantly more effective, according to a new report from cyber insurance firm Resilience. These attacks were behind more than 85% of losses in the first half of 2026, compared to less than 20% during H1 2024.

Report: Americans Lose an Estimated $148 Billion to Scams Each Year

21 August 2026 at 16:00

Americans are now losing an estimated $148 billion each year to online scams, a 22% increase compared to 2024, according to a new report from the Consumer Federation of America (CFA). The FBI’s Internet Crime Complaint Center (IC3) tracked $20.8 billion in losses last year, but the CFA notes that the actual losses are much higher.

Securing the Tip of the Spear: Guam’s Path to Human and AI Resilience

21 August 2026 at 04:00

Securing the Tip of the Spear: Guam’s Path to Human and AI Resilience

As the Asia-Pacific and Japan (APJ) region continues its rapid digital acceleration, Guam stands at a unique strategic intersection. Serving as a critical hub for telecommunications, government servicesΒ and regional defense, the island’s cybersecurity posture is no longer just a local concern, it is a cornerstone of regional stability.

The Rise of the 'Non-Human Insider': When AI Agents Become the Threat

20 August 2026 at 12:00

For years, cybersecurity has had a familiar villain: the external attacker. The hacker breaking through the firewall, stealing credentialsΒ or exploiting an unpatched vulnerability. It is the scenario we have trained for, built defenses aroundΒ and spent decades trying to prevent.

Vietnam’s Cybersecurity Evolution: Classrooms to Digital Resilience

19 August 2026 at 09:00

Navigating the Paradigm Shift in Human Risk Management

Vietnam has emerged as a cornerstone of the global digital economy, but this rapid digitization has come with a significant surge in sophisticated cyber threats. As the country transitions into a more mature technological landscape, the methods used to protect its most critical asset, the workforce, must also evolve. We are witnessing a pivotal move away from traditional, checkbox in-person training toward modern, automatedΒ and AI-driven digital resilience.

Shadow AI: The New Frontier of Shadow IT

13 August 2026 at 16:00

As a CISO advisor, I am observing a familiar pattern gaining a new, critical dimension. What we historically identified as "Shadow IT", the use of unapproved SaaS and tools, is rapidly evolving into "Shadow AI."

Employees are increasingly leveraging AI bots for drafting, analysis, code generation and strategic decision-making. While the intention is often to drive efficiency, the lack of governance creates a dangerous risk surface: sensitive data leakage, compliance violationsΒ and the potential for operational decisions based on unverified, AI-generated content.

Report: Employees Are Overconfident in Their Ability to Spot Scams

12 August 2026 at 16:00

A survey from Trustmi found that most employees believe they’d be able to spot a social engineering attack, but those same employees still rely primarily on outdated guidance to spot red flags. Generative AI has given attackers the ability to craft extremely convincing, error-free phishing emails.

Introducing Real-Time Coaching in KnowBe4’s AI-Native Security Awareness Training

10 August 2026 at 16:00

Attackers are getting smarter. AI is making social engineering more convincing, more personalized, and harder to spot than ever before. Training the digital workforce, employees and agents, to recognize threats is necessary, but even the most security-conscious users can still make a mistake at the moment of risk.

AI Did Not Invent Social Engineering But It Did Industrialize It.

6 August 2026 at 12:27

This year National Social Engineering Day falls on Aug. 6. This day is designed to give us an opportunity to remind people that cybercriminals do not always need sophisticated malware, an undisclosed vulnerability or a dark room filled with glowing monitors, sometimes, all they need is a good story.

❌
❌