-

KnowBe4 Finds U.S. Phishing Emails Focus on Password Alerts and Policy Changes While EMEA Focuses on Everyday Tasks

KnowBe4 releases Q4 2021 global phishing report

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, today announced the results of its Q4 2021 top-clicked phishing report.

“When comparing the results from the U.S. phishing emails to those in Europe, the Middle East and Africa (EMEA), email subjects in the U.S. appear to originate from the users’ organizations and are focused on security alerts related to passwords and internal company policy changes,” said Stu Sjouwerman, CEO, KnowBe4. “However, in EMEA, the top subjects are related to users’ everyday tasks and the subject lines appear to be more personalized to entice the user to click. As expected, we did see some phishing email subjects related to the holidays, especially holiday shopping in particular. Employees should remain ever vigilant when it comes to suspicious email messages in their inboxes because just one wrong click can wreak havoc for an organization.”

Top 10 Email Categories Globally:

  1. Business
  2. Online Services
  3. Human Resources
  4. IT
  5. Banking and Finance
  6. Coronavirus/COVID-19 Phishing
  7. Mail Notifications
  8. Holiday
  9. Phishing for Sensitive Information
  10. Social Networking

Top phishing email subjects were also broken out, comparing those in the U.S. to those in EMEA. In Q4 2021, KnowBe4 examined tens of thousands of email subject lines from simulated phishing tests. The organization also reviewed ‘in-the-wild’ email subject lines that show actual emails users received and reported to their IT departments as suspicious. The results are below.

Top Phishing Email Subjects:

The U.S.

  1. Password Check Required Immediately
  2. Important: Dress Code Changes
  3. Vacation Policy Update
  4. Important Social Media Policy Change
  5. Employee Discounts on Amazon for your Holiday Shopping

EMEA

  1. Accept Invitation - Staff Meeting via Teams
  2. Employee Portal - Timecard Not Submitted
  3. Enclosed attachment for your review
  4. Immediate password verification required
  5. [[company_name]] Invoice

*Capitalization and spelling are as they were in the phishing test subject line.
**Email subject lines are a combination of both simulated phishing templates created by KnowBe4 for clients, and custom tests designed by KnowBe4 customers.

Common “In-the-Wild” attacks:

  • IT: Cloud Enrollment
  • Special Project Information
  • You Have Some New Messages
  • Teams Events
  • Microsoft: Private Shared Document Received

*Capitalization and spelling are as they were in the phishing test subject line.
**In-the-wild email subject lines represent actual emails users received and reported to their IT departments as suspicious. They are not simulated phishing test emails.

For more information on KnowBe4, visit www.knowbe4.com.

About KnowBe4

KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platform, is used by more than 44,000 organizations around the globe. Founded by IT and data security specialist, Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness about ransomware, CEO fraud, and other social engineering tactics through a new-school approach to awareness training on security. Kevin Mitnick, an internationally recognized cybersecurity specialist and KnowBe4's Chief Hacking Officer, helped design the KnowBe4 training based on his well-documented social engineering tactics. Tens of thousands of organizations rely on KnowBe4 to mobilize their end users as their last line of defense.

Contacts

Amanda Tarantino
amandat@knowbe4.com

More News From KnowBe4

KnowBe4 Secures the Human and AI Workforce with Agent Risk Manager

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today announced the launch of Agent Risk Manager, the industry’s first defense system designed to secure, monitor, and govern the behavior of autonomous AI agents. KnowBe4 Agent Risk Manager arrives as a cornerstone of the KnowBe4 HRM+ platform, fundamentally changing how organizations quantify and mitigate risks of the human and AI workforce. A new securit...

KB4-CON 2026 to Feature World-Renowned Climber Alex Honnold and Documentary Filmmaker Brett Culp as Keynote Speakers

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today announced the keynote speakers for its KB4-CON 2026 event taking place in Orlando, FL May 12-14 at the Orlando World Center Marriott. The theme of this year’s event is ‘AI-Powered, Grounded in Trust’ to reflect KnowBe4’s progress in innovation and workforce trust management. The opening keynote for KB4-CON, world-renowned climber Alex Honnold who was...

Veena Bricker Joins KnowBe4 as Chief Human Resources Officer

TAMPA BAY, Fla.--(BUSINESS WIRE)--KnowBe4, the world-renowned platform that comprehensively addresses human and agentic AI risk management, today announced the appointment of Veena Bricker as KnowBe4's Chief Human Resources Officer (CHRO). Reporting to CEO Bryan Palma, Bricker will lead the organization’s overarching people strategy, championing global recruitment, compensation, employee relations, and training programs, as well as developing an inclusive culture. A seasoned executive with over...
Back to Newsroom