Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Chief Executive Officer & President

Stu Sjouwerman (pronounced “shower-man”) is the founder and CEO of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Be like Bill Gates and Warren Buffett: If you’re not spending 5 hours per week learning, you’re being irresponsible

I just found a fabulous post on Quartz. “In my whole life, I have known no wise people (over a broad subject matter area) who didn’t read all the time — none. Zero.” — Charlie Munger, ...
Continue Reading

[Heads-up] Unusual Ransomware Strain Encrypts Cloud Email Real-time

OK, here is something unusual and really scary. KnowBe4's Chief Hacking Officer Kevin Mitnick called me with some chilling news. A white hat hacker friend of his developed a working ...
Continue Reading

How To Create A Security Culture in 2018

Ever heard: "If it was easy, everyone would do it" ? Creating a better security culture in your organization has a few challenges. Let's have a look at them, see how you can overcome ...
Continue Reading

63% of organizations experienced an attempted ransomware attack in 2017

Interesting research by Enterprise Strategy Group: 63% of organizations experienced an attempted ransomware attack in 2017, with 22% reporting these incidents occurred on a weekly basis. ...
Continue Reading

[On-Demand Webinar] Phishing Attack Landscape and Benchmarking

The most persistent security challenge you face today is bad guys social engineering your users. Phishing campaigns continue to be hacker’s No.1 preferred attack vector to get your ...
Continue Reading

SNAFU Some AV Tools Cause BSODs And Boot Failures After Meltdown Patches

Microsoft's patch to protect Windows computers from the Meltdown / Spectre "hardware bug" revealed the rootkit-like nature of many antivirus tools. Some AV products are incompatible with ...
Continue Reading

KnowBe4 Explosive Year-Over-Year Sales Increase of 255% for Q4 2017

We are excited to report a blow-out Q4, this is the 19th consecutive quarter increase! The continued accelerated growth we’ve seen this quarter is due in part to our exceptional focus on ...
Continue Reading

KnowBe4 Fresh Content Update & New Features Summary

First, I wanted to send you a note of our deep gratitude for your trust in us. We have worked really hard to create a powerful, yet super easy platform that we hope you love. How can we ...
Continue Reading

Scam Of The Week: Fake Meltdown And Spectre Patch Phishing Emails

We sent out some warnings and advisories last week about Spectre and Meltdown, but we want to remind everyone again about some steps you can take to protect yourself. Remember that the ...
Continue Reading

10 Things You Shouldn't Include in Your Security Awareness Training Program

If you want to succeed with your organization's security awareness program, here are some of the top "faux-pas" you should be sure to avoid. Here are some of the errors we have seen over ...
Continue Reading

How To Explain Meltdown And Spectre To Your C-Level and employees

OK, 2018 has just started and it has totally borked all networks in the whole world. That's a fine mess we're in to start off the year. :-) Meltdown and Spectre are CPU hardware design ...
Continue Reading

One surprising statistic explains why phishing will remain the most common cyberattack for the next few years

Phishing will remain the primary email attack vector through 2020. A new report from Comodo Security Threat Lab's VP, Fatih Orhan, brings up an interesting statistic from Friedrich ...
Continue Reading

Book Review: A Data-Driven Computer Security Defense: THE Computer Security Defense You Should Be Using

Excellent book about InfoSec that has everything you need to know and nothing you don't. A Data-Driven Computer Security Defense: THE Computer Security Defense You Should Be Using by ...
Continue Reading

Which EU 2018 Directive Is More Important Than GDPR?

If you have sales offices in Europe, or full subsidiaries, you need to be aware of the NIS directive. Peter Dekker at Enisa warned about the following: During 2017, the GDPR buzz reached ...
Continue Reading

Report: Most Government Agencies Vulnerable To Phishing

Nearly half of federal agency email domains have adopted policies to collect data on unauthorized emails, a move mandated by the Department of Homeland Security in October, according to a ...
Continue Reading

Chinese Cybercrime Develops Lucrative Hacking Services

The McAfee blog gave an interesting perspective on an area we do not look at too closely normally. Underground cybercrime profits in China have likely already exceeded US$15.1 billion ...
Continue Reading

An inventive YouTube moderator phishing scam

Full marks for inventiveness If you have a YouTube channel, and have had your fill of sifting through the vile torrent of abusive comments left on your video masterpieces, you can invite ...
Continue Reading

"123456" Remains Most Common Password Found in Data Dumps in 2017

For the second year in a row, "123456" remained the top password among the millions of cleartext passwords exposed online thanks to data breach incidents at various providers. While ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews