Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Ransomware Remains the Largest Source of Cyber Claims and Downtime

Details shared from Canadian insurer CFC Underwriting highlight the realities of ransomware attacks, and just how negatively impactful the aftermath is on business.
Continue Reading

ModStore Release Announcement: "Using the Phish Alert Button"- 3-minute Short Version

Now live in the ModStore is a new Phish Alert video module: Using the Phish Alert Button - Basic Use This is the PAB (super short version) that we created based on requests from admins ...
Continue Reading

[ALERT] Now The Bad Guys Are Phishing For Your Retirement Money

Eric Howes, KnowBe4 Principal Lab Researcher observed: "Here is a screenshot of a phishing email that came in Friday. In it the bad guys attempt to apply the same modus operandi currently ...
Continue Reading

[Scam Of The Week] New Sextortion Attacks Take A Dark Turn And Infect People With GandCrab Ransomware

Our friends at Proofpoint reported that last week employees in the United States have been bombarded by a spam attack that pushed a double-whammy of a sextortion attempt combined with a ...
Continue Reading

The FBI Catches CEO Fraud Scammers by Giving Them a Taste of Their Own Medicine

The case of how the FBI turned the tables on cybercriminals using the very same tactics demonstrates how powerful the art of social engineering and deception can get a victim to act.
Continue Reading

True Phishing Confessions From A Compromised Company. This One Has A Twist At The End

"The email you hope you never have to send to clients/customers" OK, so here is another horror story that you hope you can prevent from happening to your own organization. This is an ...
Continue Reading

When Does a Legitimate Password Reset Email Feel Like a Phishing Attack? Just Ask Citrix Users

A recent password reset email from ShareFile (a Citrix company) put some users on edge, questioning both the emails legitimacy and why the reset.
Continue Reading

CEO Fraud Attacks are Citing the California Wildfires

Criminals are using the California wildfires as a social engineering tactic to manipulate people into buying gift cards supposedly intended for victims of the disaster, according to James ...
Continue Reading

Google Maps’ Bank Listings Updated by Scammers

Scammers are taking advantage of Google Maps by modifying the contact information of the service’s bank listings. After replacing banks’ legitimate phone numbers with numbers of their ...
Continue Reading

GreyEnergy Malware Spreads Through Phishing Emails

The GreyEnergy APT primarily uses phishing emails as its initial infection method, according to analysis by Nozomi Networks. The malware has been targeting industrial control systems in ...
Continue Reading

Phishing Emails are Targeting Spotify Users

A phishing campaign is attempting to steal login credentials from Spotify users, according to researchers at AppRiver. The emails ask users to click a hyperlink to confirm their accounts, ...
Continue Reading

Hackers reportedly breached Republican campaign committee emails during 2018 elections

The National Republican Congressional Committee (NRCC) was hacked during the 2018 midterm elections, according to a report from Politico. Republican officials said that hackers had access ...
Continue Reading

61% of Organizations Believe Negligent Users Will be the Primary Cause of a Data Breach in the Next 12 Months

Dark Readings annual Strategic Security Survey provides several details highlighting that organizations aren’t ready, and users aren’t helping.
Continue Reading

Why You Need To Make Security Awareness Training Mandatory. Read This Horror Story.

OK, so here is a horror story that you can prevent from happening in your own organization. Now and then we hear that KnowBe4 customers do not make the security awareness training ...
Continue Reading

Data Breach at Q&A Site Quora Affects 100 Million

It's all over the news, it even made the Wall Street Journal. I'm a quora participant myself and received the news directly in an email.
Continue Reading

That was fast! Bad Guys Are Using The Marriott Breach For Phishing Attacks

As predicted, the Marriott breach is heaven for bad guys. KnowBe4 customers are using the (free) Phish Alert Button to report in the wild phishing attacks using the recent news.
Continue Reading

From the “Shaking My Head” File: New Phishing Scam Seeks to Help Wildfire Victims… With Google Play Cards???

Cybercriminals will take advantage of any major news story if there’s a way to make money from it. But sometimes, the scam just gets a little too odd to believe.
Continue Reading

The Massive Marriott Data Breach: Some Practical Advice For Business Travelers

If you have stayed in one or the following hotels in the last 4 years, it's very likely that your personal data—and even potentially your passport number—has been stolen and is available ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews