Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Microsoft Notifies 10,000 Customers About Nation-state Cyber Attacks

In an article about cyber security related to voting machines, an interesting snippet of information surfaced: “Microsoft said it has notified almost 10,000 customers in the past year ...
Continue Reading

SANS Security Awareness Report Highlights the Rising Era of Awareness Training

SANS Security Awareness, a division of SANS Institute, announced they have released their new 2019 Security Awareness Report. In its fifth consecutive year, this very useful annual report ...
Continue Reading

[INFOGRAPHIC] Employees receive nearly five phishing emails per work week, according to Avanan

One in every 99 work emails is a phishing attack, according to a recent Avanan report. With employees accustomed to a busy inbox, it's easy to fall victim to a phishing attack disguising ...
Continue Reading

Mimecast Identifies Brand New Phishing Tactic Called "SHTML"

In early April, the Mimecast Threat Center team discovered a rare type of server-parsed HTML (SHTML) based phishing attack emerging from the UK.
Continue Reading

Chinese Hackers Use Island Hopping to Steal Industrial and Commercial Secrets in 5-year Attack on the World’s Largest Technology Service Providers

Dubbed the “Cloud Hopper” campaign, victim companies such as Ericsson, HPE, IBM, and more were targets of exfiltration aimed and helping advance the Chinese economy.
Continue Reading

Microsoft Discovers New Excel-Based Attack to Deliver the FlawedArmmyRAT Malware

A new set of tweets from Microsoft Security Intelligence walks through an attack that uses a number of built-in Windows toolsets to infect machines with the notorious malware.
Continue Reading

Attacker’s Use of OneDrive as a Malicious File Host Jumps Over 3200% in Q1

The need for reputable hosting services to make phishing scams involving malicious files look legitimate has caused a rise in popularity for Microsoft’s cloud-based file sharing service.
Continue Reading

Evite Invites Over 100 Million People to Their Data Breach

Larry at Bleepingcomputer wrote: "The data breach monitoring service Haveibeenpwned.com has added a database dump of almost 101 million Evite users who had their information exposed when ...
Continue Reading

[VIDEO] KnowBe4 Quarterly Platform Update Q2-2019

Continue Reading

UK Mid-Sized Firms Lost £30bn to CyberAttacks in 2018

Phil Muncaster at InfoSec Mag reported that "Cybersecurity incidents have cost UK mid-market firms a combined £30bn over the past year as automated attacks become the norm, according to ...
Continue Reading

Is ‘REvil’ the New GandCrab Ransomware?

Brian Krebs wrote: "The cybercriminals behind the GandCrab ransomware-as-a-service (RaaS) offering recently announced they were closing up shop and retiring after having allegedly earned ...
Continue Reading

NEW SANS Whitepaper: Automating Response to Phish Reporting

As part of his SANS Technology Institute Master's degree, Geoffrey Parker recently published a whitepaper called Automating Response to Phish Reporting that got an A, was made a gold ...
Continue Reading

An Amazon Phishing Scam Hits Just In Time For Prime Day

Amazon has confirmed that Prime Day 2019 will begin at 12 a.m. PT on Monday, July 15 and conclude at 11:59 p.m. PT on Tuesday, July 16.
Continue Reading

TrickBot Malware May Recently Have Hacked 250 Million Email Accounts

Endgadged reported that "TrickBot malware may recently have stolen as many as 250 million email accounts, including some belonging to governments in the US, UK and Canada. The malware ...
Continue Reading

[Heads-up] New eCh0raix Ransomware Strain Targets NAS Devices

ITPro Today reported: "The eCh0raix ransomware uses a brute-force credential attack to gain access to data stored in QNAP NAS devices.
Continue Reading

Pay or Not Pay the Ransom? What’s Your Opinion?

The debate over whether to pay or not to pay the ransom once your system is encrypted is heating up. Yesterday, the US Conference of Mayors approved a resolution coming down in favor of ...
Continue Reading

Effects of Ransomware Don’t End With the Ransom

A Florida city is still struggling to recover from a ransomware attack two weeks after the city paid the ransom, according to the New York Times. The attack began after a city employee ...
Continue Reading

U.S. Coast Guard Warns Shipping Industry on Cybersecurity. Are You Next?

Kim Nash wrote in the WSJ Cybersecurity newsletter: "Avast! Pirates are getting better with cyber weapons on the high seas, WSJ Pro’s James Rundle reports. Maritime freight operators must ...
Continue Reading

Brand-New Ransomware Simulator Tool Now with Two New Ransomware Scenarios

The bad guys are continuing to evolve their approach to evading detection. That’s why we’ve updated our Ransomware Simulation tool “RanSim” to include two new ransomware scenarios! These ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews