Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

You Don't Want *THAT* In Your Wallet

Capital One has announced a data breach that has exposed the personal information of 106 million people that includes transaction data, credit scores, payment history, balances, and for ...
Continue Reading

15-year old MyDoom Remains a Common Phish Hook

The destructive email worm MyDoom is still very active more than fifteen years after it was first spotted, according to ZDNet. Researchers at Palo Alto Networks’ Unit 42 observed 663,000 ...
Continue Reading

New Ransomware Strain Spreads Via SMS

A new Android ransomware strain was discovered by ESET researchers. It uses the victim's contact list to spread further using SMS messages that have malicious links.
Continue Reading

Office 365 Administrators are the Target of the Latest String of Phishing Attacks

Using a mix of fake admin alerts and a spoofed logon page, this newest campaign leverages IT’s urgency in fixing critical issues before they impact users.
Continue Reading

Iranian Hacker Group APT34 Use New ‘Tonedeaf’ Malware over LinkedIn in Latest Phishing Campaign

Targeting several key industries, this new campaign likely seeks to aid the Iranian government with information that could be of use to further Iran’s economic and security goals.
Continue Reading

[Heads-up] Nationwide Bomb Threat Extortion Phishing Attack Campaign With A Twist

IN OFFICES AND universities all across the country Thursday, the same threat appeared in email inboxes: Pay $20,000 worth of bitcoin, or a bomb will detonate in your building. Police ...
Continue Reading

Two Puerto Rico Hospitals Hit With Ransomware That Encrypts 520,000 Patient Records

The two hospitals were hit by ransomware infections and are one of the largest data breaches reported by the U.S. Department of Health. This particular incident encrypted all kinds of ...
Continue Reading

Reuters: "BlackRock in talks to take over Cofense after U.S. security concerns - sources"

(Reuters) July 28, 2019 — "BlackRock Inc (BLK.N), an investor in Cofense Inc, is in advanced talks to take over the U.S. cyber security firm, after a U.S. national security panel asked ...
Continue Reading

Schools In Both The US And UK Victim Of Recent Phishing Attacks

A number of educational institutions have recently fallen victim to cyberattacks, highlighting the need for increased awareness training for students and faculty. SC Media UK has ...
Continue Reading

NSA Launches Cybersecurity Arm To Defend The U.S. From Foreign Adversaries

Kate O'Flaherty wrote in Forbes: "The National Security Agency has announced its intention to create a cybersecurity directorate this fall in a bid to defend the U.S. against foreign ...
Continue Reading

Here Is Some Great InfoSec Budget Ammo From UBS

A KnowBe4 employee forwarded this PDF to me. There is a very interesting point in here: your cybersecurity practices affect the valuation of your company. That should get the attention of ...
Continue Reading

Louisiana Declares Cybersecurity State of Emergency

A series of ransomware attacks on school district systems leads the governor to declare the state's first cybersecurity state of emergency.
Continue Reading

OSINT – a Hacker’s First Asset in Targeted Attacks

Before a cybercriminal wants to engage in a targeted attack against a particular organization or individual, they’d like to know a few things first. That’s where OSINT comes into play.
Continue Reading

New Study Finds Employees Pose the Greatest Cybersecurity Risk

While historically being seen as an organization’s greatest asset, the latest report from the analyst firm Ponemon cites humans as the weakest link.
Continue Reading

Netflix's New "The Great Hack" Reminds Us -- If you Don't Pay For the Product You *Are* The Product

Last night, Netflix premiered “The Great Hack” which is based on the Cambridge Analytica scandal. They reminded us of the golden expression: “If you don't pay for the product you are the ...
Continue Reading

Romanian Cybercriminals Sentenced for Phishing Campaign

Our friends at Phishlabs wrote: "This week, the Department of Justice for the U.S. Attorney’s Office for the Northern District of Georgia announced the final of three sentences to be ...
Continue Reading

BEC = “Because it’s Easy Cash” Scammers Trick Employees Into Giving Away Customer Info

Business Email Compromise—also known as CEO Fraud—scammers are now targeting a company's customers using a new indirect attack method designed to collect information on future scam ...
Continue Reading

This Year, Phishing Causes Losses of $17,700 per minute And Ransomware Attacks Will Cost $22,184 Per Minute

Global losses to cybercrime total $1.5 trillion per year, which amounts to $2.9 million per minute, a new report by RiskIQ shows. Some of the largest companies are losing $25 each minute ...
Continue Reading

A Phishing Campaign Evades Email Gateways via WeTransfer

A phishing campaign is abusing the legitimate file hosting site WeTransfer to get malicious links through email filters, according to Jake Longden at Cofense. The attackers send real ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews