Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

PDF Files Can Be Abused to Steal Windows Credentials

PDF files can be weaponized by malicious actors to steal Windows credentials (NTLM hashes) without any user interaction, and only by opening a file, according to Assaf Baharav, a security ...
Continue Reading

Ransomware up 350% says 2018 Global Threat Intelligence Report

NTT Security 2018 Global Threat Intelligence Report (GTIR): Ransomware up 350% and spyware ranks first in volume of malware at 26% reflecting attackers' desire for long-term presence for ...
Continue Reading

Researchers discover next generation phishing kit

Researchers at Check Point and CyberInt, have discovered a new generation of phishing kit that is readily available on the Dark Web. The new kit, compiled and offered by a criminal whose ...
Continue Reading

Center for Orthopaedic Specialists notifies 85,000 patients of ransomware infection

Another indicator that a ransomware infection is seen as a HIPAA data breach and needs to be reported. The Center for Orthopaedic Specialists (COS) in California has three locations in ...
Continue Reading

Yahoo Pays $35 Million Penalty For The Hot Mess Of Their Massive Data Breach

This is the first time that a public company gets fined by regulators for failure to properly investigate their 2014 data breach, and disclose it to shareholders. Technically this is not ...
Continue Reading

Mysterious “double kill” Word/IE zero-day allegedly in the wild as phishing attack

“Double kill” is a bragging term from the world of violent video gaming – it means you finished off two assailants with a single shot. In the world of cybercrime, it’s the name given by ...
Continue Reading

Ransomware Attack Costs Dutch Builder 60,000 Euros

A ransomware infection has cost Dutch builder Almi Machinebouwers at least 60,000 euros. That is what director Frank Landhuis said in an interview with Sprout. Due to the infection, ...
Continue Reading

New Large Email Security Gap Analysis Shows a Massive 15% Failure Rate

We thought it was bad when we saw Cyren's recent analysis that 10.5% of bad emails made it through the filters. It could even be worse than that. "Mimecast's latest ESRA (email security ...
Continue Reading

[On-Demand Webinar] The Science and Methodology Behind Social Engineering

No matter how much security technology we purchase, we still face a fundamental security problem: people. Our CEO Stu Sjouwerman was interviewed by Information Security Media Group at RSA ...
Continue Reading

Poll: What Security Measures Are Most Effective In Fighting Ransomware?

The Spiceworks staff wrote: "Years after CryptoLocker raised its ugly head — setting off an unfortunate security trend — ransomware continues to be a rather painful thorn in the side of ...
Continue Reading

Many of us will be at the RSA Conference in SanFran this week. Here are some quick tips!

Lance Spitzner said: Eat breakfast, it may be the last meal you get that day. Schedule the most important meetings in the morning. RSA gives you a back-pack. Don't use it at the con, ...
Continue Reading

Britain braces for Russian cyber warfare targeting transport links, water supplies, hospitals and airports

The UK Mirror reported that Britain is braced for a wave of crippling cyber attacks in Russian retaliation for the Syrian missile strikes. Here is an excerpt: "Vital transport links, ...
Continue Reading

Positive Technologies Social Engineering Report: 17 Percent Fall Foul To “Attacks”

Employees download malicious files, click phishing links, correspond with hackers, and even share contact information for their colleagues. Positive Technologies has released a new report ...
Continue Reading

[NEW WHITEPAPER] 10 Best Practices for Protecting Against Phishing, Ransomware and Email Fraud

Organizations have been victimized by a wide range of threats and exploits, most notably phishing attacks that have penetrated corporate defenses, targeted email attacks launched from ...
Continue Reading

Ransomware, Phishing, and Pretexting in the Annual Verizon Databreach Report

Did you know, 43% of breaches result from social engineering attacks? What's more, according to a recent Verizon investigation, phishing emails account for 98% of all social engineering ...
Continue Reading

State Department warns staff of surge in spear phishing attempts

Eric Geller at Politico reported: "The State Department on Thursday warned employees about a tidal wave of malicious messages attempting to trick staffers into opening a door for hackers. ...
Continue Reading

How The World's Most Famous Hacker Tracks Down Lost Luggage...

The adventures of Kevin Mitnick and his girlfriend Kimberly. Kevin called me and told me a story how they were crazy enough to track down a lost (stolen?) bag in Mexico city. His GF ...
Continue Reading

[Heads-Up] Phishing Scam Of The Week: Bad Guys Go Nuclear

So, this one is the next new criminal low. This particular phish spoofs a campus-wide security alert for a community college (confidential information blocked out) in Florida. Given that ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews