Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Founder and Executive Chairman

Stu Sjouwerman (pronounced “shower-man”) is the Founder and Executive Chairman of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Cyber Insurers Expect to Raise Ransomware Policy Premiums as Much as 25%

The increase in the frequency of ransomware attacks, as well as the rise in the demanded ransom amounts is causing cyber insurers to change tactics to limit their risk.

Conman in the Secret World

Last week, Garrison Courtney, a former spokesman for the US Drug Enforcement Administration, was sentenced to seven years in prison for running a massive Ponzi scheme involving dozens of ...

[SCAM OF THE WEEK] Sean Connery's Final Wish is Revealed

After the sad passing of famous actor Sir Sean Connery, Yahoo News released an article that revealed his final wish after he passed away peacefully with his family at his side.

[HEADS UP] British Broadcasting Corporation Receives 250,000 Phishing Emails a Day

Popular public service broadcasting station British Broadcasting Corporation (BBC) has received a quarter of a million phishing emails per day, according to a Freedom of Information (FOI) ...

JavaScript Obfuscation on Phishing Pages Continues to Rise by 70%

The use of JavaScript to obfuscate phishing pages increased by 70% in the ten months between November 2019 and August 2020, according to researchers at Akamai. Attackers use this ...

Famous VC Firm: "The New Attack Surface is Your Life"

As a CEO with VC investors, I follow what happens in the venture capital space and what things VCs are interested in regarding their investment strategies. I was happily surprised to see ...

KnowBe4 Fresh Content Updates from October: Including New SCIM Integration Support for Azure Active Directory

Here are important fresh content updates and new features to share with you for the month of October.

New Ransomware, OldGremlin, Coming Soon to an Organization Near You!

Pay attention to this one. Despite only targeting Russian companies, the use of custom self-made malware and decidedly creative phishing campaigns makes them a potential danger.

Phishing Attacks Can Come from an Unlimited Number of Trusted Phishing Sites Thanks to Google App Engine

Scammers are taking advantage of Google’s Trust Service Verification and the way their App Engine creates unique URLs to host trusted landing pages used in phishing scams.

More Ransomware Creators Jump on the Leak Site Bandwagon as the Number of Sites and Data Breach Posts Skyrocket in Q3

The third quarter saw massive increases in activity by ransomware gangs both creating leak sites and posting to them about recent attacks on orgs that, presumably, didn’t pay the ransom.

[HEADS UP] U.S. Government Warns of Ransomware Threat Against Hospitals

This week, Krebs on Security released an article on a Russian cybercriminal gang that have been known for deploying ransomware has prepared to attack hundreds of hospitals, clinics, and ...

Don't Neglect the Threat of Vishing

People need to help raise awareness about voice phishing scams, or vishing, according to Paul Ducklin at Naked Security. While phone scams have been around for years, they remain ...

Cybersecurity Awareness Month Weekly Tip: Security Awareness Training

Each week during Cybersecurity Awareness Month, we’re going to be sharing in-depth weekly cybersecurity tips from our informative evangelists to help your users make smarter security ...

Here Are Some Truly Scary Social Media Stats!

Scamming incidents have increased by 519% in 2020 compared to last year, according to researchers at Baltimore-based ZeroFOX. The researchers compared their own data to a recent report ...

Nearly Half of the World’s Workers Don’t Know What a Mobile Phishing Attack Is

As organizations look for permanent solutions to operate using a remote workforce, users continue to elevate the risk of cyberattack by not worrying about cybersecurity.

Fraud Attacks Targeting the Mid-Market Organization Increase 129%

New data from U.K. cyberinsurer Beazley highlights the growing trend of mid-market organizations being the target of social engineering attacks and fraud.

New Qbot Phishing Attack Pretends to be Windows Defender to Trick Its Victims

One of the most dangerous pieces of malware is back with a new campaign that takes advantage of social engineering techniques to look convincing enough to fool your users.

Researchers Discover Most Microsoft 365 Admins Don't Enable Multi-Factor Authentication

Researchers from CoreView recently discovered that 97% of all total Microsoft 365 users do not utilize multi-factor authentication (MFA). A staggering 78% of Microsoft 365 admins do not ...

"Berserk Bear", The Russian Hackers Playing ‘Chekhov’s Gun’ With US Infrastructure

In an advisory warning published last week by the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA), the government notified the public of a ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.