Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Founder and Executive Chairman

Stu Sjouwerman (pronounced “shower-man”) is the Founder and Executive Chairman of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

[InfoGraphic] AUGH! Your Users Are Clicking On 50% Of The LinkedIn Phishing Tests

KnowBe4 Q1 2019 top-clicked phishing subject lines reveals LinkedIn messages to be most popular. Today, we revealed that simulated phishing tests that include “LinkedIn” in the subject ...

President Signs Executive Order to Boost Federal Cyber Workforce

The White House launched its latest effort to bolster the government’s cybersecurity workforce.

4 Ways CISOs Can Improve Their Organization’s Security Position

Understanding where your biggest risks are, and how cybercriminals take advantage of those risks help CISOs to build a better strategy to defend against, detect, and address threats.

Ransomware Attacks Jump 500% as Businesses Continue to Be the Prime Target

Malwarebyte’s latest Cybercrime Tactics and Techniques report exposes some trends indicating that 2019 is looking to be the year of the cyberthreat for businesses.

Tech Support Scam Freezes Browsers

Trend Micro has found a new tech support scam that abuses HTML’s Inline Frame element (iframe) along with authentication pop-ups to freeze victims’ browsers by trapping them in a type of ...

Brunswick Church Falls For Phishing Scam Of Almost $2 Million

Staff at St. Ambrose Roman Catholic Church in Brunswick say the church was scammed out of nearly $2 million. The church said a phishing email led it to believe that a construction firm ...

PSA: How To Recognize Disinformation

One of the skills everyone needs to prevent social engineering attacks is to recognize disinformation. False information that is intended to mislead people has become an epidemic on the ...

Why Marketing Departments Are Cyber Security Targets

Because of what they do, marketing departments are potential cybersecurity risks themselves, and digital bad actors are well aware of it. "Since marketers are more closely connected to ...

BEC Scams are a Growing Threat to Retailers

Cybercriminals are improving their social engineering skills to target online retailers with sophisticated business email compromise (BEC) scams, according to Rafael Lourenco at ...

Vendors are Responsible for Almost Half of All Data Breaches

The latest data from a survey of 600 SpiceWorks IT and Security professionals shows that vendor users aren’t doing their part to keep your organization’s data safe.

Business Email Compromise Doubled in 2018, Topping the FBI’s List of Internet Crimes

Despite the massive uptick in just about every cybercrime category, good old-fashioned fraud via email phishing and social engineering dominate as the threat to be most concerned about.

U.K. Study Finds only 15% of People Sufficiently Know How to Protect Themselves Online

With 80% of people saying cybersecurity is a priority, the disparity between what they believe is important and their ability to protect themselves puts organizations at risk.

Cryptojacking Phishing Attacks Target Enterprises With NSA-Linked Exploits

Summary: Researchers at Symantec are tracking a cryptojacking campaign that —for now—seems mostly to affect businesses in China. They're calling the campaign "Beapy," and the worm ...

PDFs Return as Phishbait

The use of malware-laden PDF email attachments has spiked in recent months, internet security company SonicWall has found. Over the course of 2018, SonicWall detected 47,000 new attack ...

Scott County Schools victim of $3.7 million CEO Fraud Phishing Scam

GEORGETOWN, Ky. (WKYT) - Scott County Schools has announced the district is a victim of a multi-million dollar online CEO fraud scam.

[BREAKING NEWS] US Supreme Court Curbs Class Action Lawsuits Caused By W-2 Phishing Fraud

BREAKING NEWS: The upshot: This case made it all the way to the Supreme Court and sets a new precedent. A phished employee sent out 1,300 confidential employee W-2 data.

[Heads up] Sneaky Phishing Attacks Exploit Legitimate Services & Platforms to Fly Below Your AV's Radar

By Eric Howes, KnowBe4 Principal Lab Researcher. Over the last few months, we have seen a rising trend of the bad guys using legitimate services—mainly file hosting platforms, but also ...

Phishing Emails Will Always Get Through

Attackers have proven their ability to adapt to improved security measures, and organizations should never assume they’re safe from phishing emails, says Paul Gillin at SiliconANGLE.

Executives are Out and Employees are In as Cybercriminals Change Their Primary Targets for Cyberattack

Phishing and Social Engineering scammers are shifting tactics, focusing efforts on low-level employees using a variety of methods as a means to cast a wider net within a targeted ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.