Human Risk Management Blog

Keeping you informed. Keeping you aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

Stu Sjouwerman

Founder and Executive Chairman

Stu Sjouwerman (pronounced “shower-man”) is the Founder and Executive Chairman of KnowBe4, Inc., which hosts the world’s most popular integrated security awareness training and simulated phishing platform, with over 54,000 organization customers and more than 50 million users. A serial entrepreneur and data security expert with 30 years in the IT industry, Stu was the co-founder of Inc. 500 company Sunbelt Software, a multiple award-winning anti-malware software company that was acquired in 2010.


Recent Posts

Windows 10 Stops Ransomware Cold? Not So Fast!

Recently, Microsoft claimed that no known ransomware could penetrate the new Win10 Creators Update.

Global Cyber Alliance: "Few U.S. Hospitals Secure Their Email Against Phishing"

Shaun Waterman at the quite useful CyberScoop site wrote: "Fewer than one-third of the largest 98 public and private hospitals in the United States secure their email against phishing and ...

FBI: "Extortion And CEO Fraud Are The Top Online Fraud Complaints"

And victims aren't reporting ransomware attacks... Online extortion, tech support scams and phishing attacks that spoof the boss (CEO Fraud) were among the most damaging and expensive ...

July 4th and Current Events Phishing Templates

For KnowBe4 customers, we have some new templates available in Current Events and Holiday: Three July 4th-related templates in the Holiday category Five new Current Events templates ...

KnowBe4 Moves From #38 to #6 On Cybersecurity 500

The Cybersecurity 500 / Q2 2017 list of the world's hottest security companies was officially released June 21, 2017. In their press release they said: "Worldwide spending on ...

Web Hosting Provider Pays $1 Million to Ransomware Attackers

South Korean web hosting company Nayana agreed to pay $1 million in Bitcoin after a ransomware attack hit 153 Linux servers. The attack took place June 10 and resulted in over 3,400 ...

[BREAKING] Scam Of The Week: Your Politics Have Been Breached

Gizmodo reported on a blog post by IT Security company UpGuard which revealed the largest US voter data leak to date. Political data gathered on more than 198 million US citizens was ...

KnowBe4 May 2017 New Training Modules Released

Here are the May releases, with an indication on the subscription levels which give access to these modules: For May we released the following: Common Threats (standalone module) - Level ...

[ALERT] New Fileless, Code-injecting Ransomware Bypasses Antivirus

Security researchers have discovered a new fileless ransomware in the wild, which injects malicious code into a legitimate system process (svchost.exe) on a targeted system and then ...

See Me On Video At The NYSE Cyber Investing Summit Pitching KnowBe4

The CyberWire wrote: Pitches: "Innovation from Young Companies The Pitch Panel was the Cyber Investing Summit's fast round of innovation pitches, moderated by Allegis's Bob Ackerman and ...

FIN10: Anatomy of a Ransomware Phishing Extortion Operation

Cyber security firm FireEye reported that that a number of Canadian mines and casinos were hacked by a group named FIN10 – FireEye labels FIN10 to be “one of the most disruptive threat ...

CIA Director Brennan: "Russia's Cyber Capability Increasingly Sophisticated And Not Bound By Law"

I was at the Gartner Security & Risk Management Summit at National Harbor, in DC this week. One of the keynotes was by CIA Director George Brennan, who was sworn in as director of the ...

Did WannaCry Ransomware Escape North Korean Containment?

Mike Mimoso at Kaspersky's Threatpost blog raised the theory that the ransomware wasn’t contained properly and spread before it was meant to be unleashed. Malware expert Jake Williams, ...

Southern Oregon University Lost $1.9 Million Due To CEO Fraud

Mail Tribune reported that Southern Oregon University is just the latest victim of CEO fraud (which the FBI calls Business Email Compromise or BEC) after hackers tricked university ...

ICO less likely to issue fines for data breaches if they show staff training

The UK's Information Commissioner's Office has said that in the event of a data breach it would be less likely to issue a monetary penalty to charities which had taken “reasonable steps” ...

CyberheistNews Vol 7 #24

This Ransomware Targets HR Departments With Fake Job Applications

I missed this one a few months ago, but it's a great example how focused the bad guys are getting with their attacks, and you need to watch out for this social engineering attack vector ...

Windows 10 Stops Ransomware Cold... Or Does It?

OK, finally there is some good news in the fight against ransomware!

New PowerPoint Social Engineering Attack Installs Malware Without Requiring Macros

Researchers at Security firm SentinelOne reported that a group of hackers is using malicious PowerPoint files to distribute 'Zusy,' a banking Trojan, also known as 'Tinba' (Tiny Banker). ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.