Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Learn what credential harvesting is, how to detect phishing attacks, and protect your organization from credential theft.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
In the guide below we'll break down exactly what you need to know about MFA fatigue, how to spot attacks as well as the latest security practices for protecting your organization.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
Everything you need to know about end user security training. Why its necessary, what training looks like and how to quantify cyber risks.
Your essential guide to clone phishing. Real-world examples, prevention tactics, and actionable strategies to safeguard your organization.
Fantasy football can teach us how to learn stop worrying and love the art and chaos of starting a new leadership position.
Recent research published in the wall street was correct: bad phishing simulations produce bad results. So what now?
The CISO Fantasy Phish Bowl 2025 brings together some old friends and new joiners. There's one heavy absence: Shawn Bowen, to whom this year's Phish Bowl is dedicated. Here's to you, Shawn!
Phishing simulation best practices with real case results from Bird & Bird - ethical lures, instant feedback, and KPIs that drive reporting.
Best phishing simulation tools for enterprises (2025) - AI-powered, gamified platforms with multi-vector realism, SOC integrations, and risk dashboards.
Cybersecurity Awareness Month ideas that work: run a focused 10-day campaign, launch phishing simulations, boost MFA adoption, and use our 2025 toolkit.
New employees are a big risk for the security team. How can your security team tackle onboarding employees while considering their busy schedules?
Traditionally, finance has been responsible for reducing business risk. CFOs need to cooperate with IT leadership to mitigate risk from cyber attacks.
Smartphones could be a cyber threat for your company for several reasons. Learn what you should teach them about safe smartphone habits to prevent a breach.
Build a winning business case to gain leadership support so that you can invest in people-first phishing training. Learn now.
Understanding how and why people make errors is the first step to planning on how to address and eliminate human risk. Learn more about human risk.
Failing to provide security training to remote employees can leave your company vunerable to cyberattacks that have been increasing recently.
Repeat phishing offenders aren’t the problem... static training is. Learn how we use adaptive simulations to convert clickers into security assets.
Here's how to change the narrative around cybersecurity to get employees engaged.
How do you achieve cybersecurity behavior change? A breakdown of how science-based training transforms awareness into real-world risk reduction.
Learn how behavior-based cyber security training drives lasting employee behavior change. A breakdown of the key components, benefits, and why it’s essential for building a strong security culture.
Discover how Hoxhunt outperforms competitors in cybersecurity training. Based on real reviews, compare Hoxhunt's features, quality, and effectiveness to leading alternatives.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
A deep dive on real reported invoice fraud emails. Learn how to protect your business from invoice fraud with 9 simple steps to identify fake invoices.
How pervasive are AI phishing attacks? We break down the findings from millions of real reported malicious emails, sent to 2.5 million users.
A break down of the latest cyber security threats in the manufacturing industry. Get actionable strategies to your business and ensure operational resilience.
Learn how to prevent smishing with these 7 best practices. Your ultimate guide to how smishing works, what attacks look like and how to protect your business.
TikTok's open redirection vulnerability is being used in phishing emails. Here's what we know and how to prevent successful attacks.
Your ultimate guide to deepfake attacks to keep your organization safe. Includes video examples and case studies.
We train our users to always hover over links in emails and to validate the domain where the links points to. This can’t be trusted if you are using Microsoft Edge to view your emails in Office 365.
Stop deepfake, smishing & vishing scams with 8 proven tactics: Feel→Slow→Verify→Act, no approvals in live calls, out-of-band callbacks, and a reporting culture.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
Vishing attacks are spiking, and they’re powered by AI voice clones and social engineering. Here's how to prevent vishing with real-world tactics and simulation-based training.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.