Cyber Security Institute

§ Current Worries

Top 3 Worries

  • Regulations
  • Old Firewall Configurations
  • Security Awareness

§ Listening

For the best information

  • The underground
  • Audible
  • Executive Excellence
  • Music (to keep me sane)

§ Watching

For early warnings

  • 150 Security Websites
  • AP Newsfeeds
  • Vendors

Wednesday, February 20, 2013

Wombat Launches SmishGuru to Combat Phishing Attacks

Cyber-security software developer Wombat Security Technologies announced the launch of SmishGuru, a simulated attack service to target the growing problem of text-message phishing, also known as “smishing.” An expansion of the company’s family of social engineering assessment products, SmishGuru can also help companies mitigate bring-your-own-device (BYOD) risks by teaching employees to defend against popular mobile device attacks and training how to recognize and avoid the more subtle smishing attacks. Similar to Wombat’s PhishGuru and USBGuru solutions, security officers can select and customize the type of attack they want to send and select and customize the training the employee will receive if they fall for the simulated attack.

Wombat also provides complementary software-training modules that can be used in conjunction with SmishGuru, providing a holistic approach to BYOD threats.

“As more companies embrace BYOD policies to empower employee productivity, cyber-criminals will seek new ways to trick people into providing sensitive information making text message phishing, or ‘smishing,’ one of several attack vectors on smartphones,” principal analyst for enterprise security at Current Analysis Paula Musich said in a statement.

A recent study from Nielsen indicated 67 percent of new mobile phone purchases are smartphones, and yet while they are embracing mobile conveniences such as texting and geo location applications, surveys also suggest users are careless about security. A July 2012 study, this time from EMC’s security division, RSA, revealed people are more likely to fall for phishing attacks on mobile devices than on PCs.

“SmishGuru is part of a holistic approach to security awareness and training that leverages our combination of simulated attacks and highly interactive employee training to help companies protect against the latest breeds of malware and spyware used to infect corporate networks and steal valuable data.”


Posted on 02/20