Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Charities Need to Watch Out for Scammers

The UK’s National Council for Voluntary Organisations (NCVO) has warned charities to be wary of scammers, Charity Digital News reports. The NCVO’s Road Ahead 2020 report outlines trends ...
Continue Reading

Look-alike Domain Spoofing Scam Takes Charity for $1 Million

In yet another case of business email compromise, a charity is fooled through a combination of diligence, sophistication, and social engineering.
Continue Reading

EKANS Ransomware Attacks Focus on Disrupting Businesses Reliant Upon Industrial Control Systems

Leveraging knowledge of industrial control systems, this relatively new ransomware variant is looking to be as disruptive as possible to operations by killing processes and encrypting ...
Continue Reading

[On-Demand] Learn How to Forensically Examine Phishing Emails to Better  Protect Your Organization

Cyber crime has become an arms race where the bad guys constantly evolve their attacks while you, the vigilant defender, must diligently expand your know how to prevent intrusions into ...
Continue Reading

Not the Antiques Roadshow

Scammers conned a Dutch museum into sending them £2.4 million (about $3.1 million) by posing as a real London-based art dealer who planned to sell the museum a John Constable painting, ...
Continue Reading

New DoppelPaymer Ransomware Makes Money Off of You Whether You Pay the Ransom or Not

Taking a page from the Maze ransomware playbook, the creators of DoppelPaymer don’t just encrypt your data; they have found channels to sell if it you don’t pay up.
Continue Reading

Law Firms Are the Latest Victims of Maze’s Ransomware and Extortion Attacks

With five law firms hit within just the last week, the Maze ransomware is making itself known and should be a warning to any and all legal firms that preventing an attack is paramount.
Continue Reading

Product Update: The New KnowBe4 ModStore is Here

Good news!! The new ModStore is now live in the console. KnowBe4 is excited to announce the rollout of a new and improved interface for the KnowBe4 ModStore in your KnowBe4 console. The ...
Continue Reading

Unusual New Botnet-driven Phishing Attack With Tricky Downloaders

A large phishing campaign is distributing malicious Excel documents and utilizing irritating pop-ups to trick users into enabling macros, researchers at Lastline have found. The campaign ...
Continue Reading

Ashley Madison Data Breach Comes Back to Haunt Customers with New Sextortion Scam

Just when you thought everyone forgot about participation on the ill-famed cheaters website, a new phishing scam looks to use the breached data as the basis for extorting the site’s users.
Continue Reading

It Was Only a Matter of Time: Sodinokibi Hold Dark Web Hacking Competition

Feeling like a page taken out of the SpaceX competitions, the latest shock comes from news of an underworld hacking competition intent on sharing cutting edge malicious code.
Continue Reading

Intelligence Services Get Phishing Licenses

New York Times journalist Ben Hubbard was targeted by a spear phishing attack designed to deliver NSO Group’s Pegasus spyware, researchers at the University of Toronto’s Citizen Lab have ...
Continue Reading

U.S. 2020 Election-Themed Ransomware Attacks Are on Their Way – And Local Govt's Aren’t Prepared

New research shows local governments practice a distinct lack of cybersecurity preparedness. And with local, state, and national elections coming up this year, cyberattacks are a concern.
Continue Reading

[Heads-up] Scam Of The Week: Coronavirus Phishing Attacks In The Wild

Yup, you can count on it, when there is a worldwide health scare, the bad guys are on it like flies on $#!+. We are seeing a new malicious phishing campaign that is based on the fear of ...
Continue Reading

UN Offices Hacked By SharePoint Vulnerability Says Newly Leaked Report

A newly released report said dozens of United Nations servers were compromised by a remote code execution Microsoft SharePoint vulnerability in July of 2019. The offices targeted were ...
Continue Reading

9-Month Compromise of Wawa Results in Data Breach of More Than 30 Million Credit Cards

The breach, discovered in December of last year, is suspected to have led to the theft of and subsequent and sale of one of the largest takes of customer credit card data on the dark web.
Continue Reading

Phishing Attacks Target Telecom Companies and their Tools to Facilitate SIM Swapping Attacks

Hackers are phishing telecom workers and “authorized retailers” to steal credentials and gain access to internal company tools. The end game is to modify SIM settings to help with a ...
Continue Reading

Judge Orders Insurer to Pay on Small Business Ransomware Claim

Despite attempting to deny the claim revolving around a 2016 ransomware attack, a recent court ruling has caused an Ohio insurer to help cover the losses.
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews