Cybersecurity Weekly: Social media fraud surges in America, CISA’s ‘Must Patch” list and COVID-19 testing scams
FTC reports a whopping $770 million lost in social media fraud, CISA releases new ‘Must Patch’ list and a 521% COVID-19 testing scams increase. All this, and more, in this week’s edition of Cybersecurity Weekly.
1. FTC: Americans lost $770 million from social media fraud surge
Americans are increasingly targeted by scammers on social media, according to tens of thousands of reports received by the US Federal Trade Commission (FTC) in 2021.
2. CISA's 'Must Patch' List puts spotlight on vulnerability management processes
The U.S. Cybersecurity and Infrastructure Security Agency’s catalog of known exploited vulnerabilities can be useful not only for helping organizations patch high-risk vulnerabilities in their systems, but also to help them build or improve vulnerability management processes..
3. Number of COVID-19 testing scams jumps sharply
The number of COVID-19 test-related phishing scams increased by 521% between October 2021 and January 2022, according to a report published by Barracuda Networks, a provider of security and data protection platforms.
4. 53% of medical devices have a known critical vulnerability
After a year of unprecedented ransomware attacks on hospitals and healthcare systems – and with healthcare now the #1 target for cybercriminals – critical medical device risks in hospital environments continue to leave hospitals and their patients vulnerable to cyber attacks and data security issues.
5. Lazarus hackers use Windows Update to deploy malware
Hacking group Lazarus has added the Windows Update client to its list of living-off-the-land binaries (LoLBins) and is now actively using it to execute malicious code on Windows systems.
Phishing simulations & training
Unlock pricing and see how Infosec IQ can help you empower employees with 2,000+ security awareness resources to:
- Reduce security events
- Reinforce cyber secure behaviors
- Strengthen cybersecurity culture at your organization
In this series
- Cybersecurity Weekly: Social media fraud surges in America, CISA’s ‘Must Patch” list and COVID-19 testing scams
- What is the NICE Workforce Framework for Cybersecurity?
- How to earn CompTIA A+ CEUs: Complete guide to continuing education
- CompTIA A+ performance-based questions: Complete preparation guide
- CompTIA A+ certification guide: Everything you need to know in 2026
- CompTIA A+ renewal: Complete guide to maintaining your certification
- CompTIA A+ salary guide: What you can earn in 2026
- Top 50 CompTIA A+ Interview Questions and Answers [2026 Update]
- CompTIA A+ jobs outlook 2026: IT career opportunities and market trends
- CompTIA A+ exam changes: Complete guide to Core 1 & Core 2 (220-1201 & 220-1202)
- CompTIA A+ exam domains: Complete study guide for all 9 knowledge areas
- Top 10 penetration testing certifications for security professionals in 2026
- CISSP certification cost and requirements (2025): Your complete preparation guide
- Incident response procedures: Essential steps for effective cybersecurity
- How to become a CMMC Certified Assessor (CCA): Requirements & Assessment Process
- CMMC Certified Professional (CCP): Requirements, exam & career path [2026]
- C3PAO certification guide: How to become a CMMC Third-Party Assessment Organization
- How to become a CMMC Registered Practitioner (RP) in 2026
- CMMC Registered Provider Organization (RPO): Complete guide to becoming an RPO
- CMMC career paths: RP vs CCP vs CCA: Which certification is right for you?
- CMMC compliance: Complete planning & resource guide [2026]
- CMMC 2.0: Complete guide for defense contractors [2026]
- CMMC levels explained: Complete guide to levels 1, 2 and 3 (CMMC 2.0)
- CMMC marketplace guide: C3PAOs, RPOs & service providers explained
- CMMC assessment guide: What to expect, how to prepare & pass successfully
- CMMC certification for organizations: Step-by-step guide to getting certified
- CMMC vs NIST 800-171, ISO 27001 & other frameworks: Complete comparison
- What is CompTIA SecAI+? A practical guide for security teams
- Amazon Athena Security: 6 essential tips
- Security risks of cloud migration
- Cloud penetration testing career path: Essential certifications & skills for 2026
- Cloud PKI implementation: A comprehensive guide
- Virtual DMZ cloud architecture: Securing AWS, Azure and GCP environments
- Cloud security use cases: 8 essential scenarios to protect your infrastructure
- Cloud application security vulnerabilities: A comprehensive guide
- Cloud computing attack vectors and countermeasures: Protecting your infrastructure in 2026
- Malicious AMI detection: Securing Amazon Machine Images (AMIs)
- Virtualization security in cloud computing: A comprehensive guide
- Cloud data sanitization best practices for secure storage
- Cloud honeypot deployment: Complete guide for AWS, Azure and GCP
- Cloud administrator vs. system administrator
- Security+ 601 vs 701: Key changes you need to know
- Security+ vs. CCNA: Which certification should you choose?
- CompTIA A+ vs. Security+: Which certification should you start your IT career with?
- CloudGoat: Complete AWS security testing walkthrough series
- 3 ways to launch your security awareness program: Pros and cons of each
- Security awareness training in higher education: The ultimate guide
- CCNA job outlook: Career growth & opportunities for network professionals
- CCNA resources: Free videos, books, tests and more!
- Certified Ethical Hacker (CEH) job outlook [updated 2025]
- CCNA renewal requirements: How to maintain your certification
See Infosec IQ in Action
We’ll customize our demo to your:
- Security awareness goals
- Existing security and employee training tools
- Industry and compliance requirements
NICE Framework
The National Initiative for Cybersecurity Education (NICE), led by the National Institute of Standards and Technology (NIST), is a partnership between govern
June 22, 2026
Daniel BrechtCompTIA A+
Learn how to earn CompTIA A+ CEUs through training, work experience, webinars, teaching, content development and other continuing education activities.
June 11, 2026
Tayla CarpenterCompTIA A+
Prepare for CompTIA A+ performance-based questions with PBQ examples, exam-day strategies, hands-on practice tips and scenarios for Core 1 and Core 2.
June 11, 2026
Stephan MillerCompTIA A+
Learn what CompTIA A+ certification is, who it’s for and how to get certified in 2026, including exam details, costs, study options, career paths and renewal requirements.
June 11, 2026
Tayla Carpenter