Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Stop deepfake, smishing & vishing scams with 8 proven tactics: Feel→Slow→Verify→Act, no approvals in live calls, out-of-band callbacks, and a reporting culture.
Fantasy football can teach us how to learn stop worrying and love the art and chaos of starting a new leadership position.
Recent research published in the wall street was correct: bad phishing simulations produce bad results. So what now?
The CISO Fantasy Phish Bowl 2025 brings together some old friends and new joiners. There's one heavy absence: Shawn Bowen, to whom this year's Phish Bowl is dedicated. Here's to you, Shawn!
Phishing simulation best practices with real case results from Bird & Bird - ethical lures, instant feedback, and KPIs that drive reporting.
Best phishing simulation tools for enterprises (2025) - AI-powered, gamified platforms with multi-vector realism, SOC integrations, and risk dashboards.
Cybersecurity Awareness Month ideas that work: run a focused 10-day campaign, launch phishing simulations, boost MFA adoption, and use our 2025 toolkit.
New employees are a big risk for the security team. How can your security team tackle onboarding employees while considering their busy schedules?
Traditionally, finance has been responsible for reducing business risk. CFOs need to cooperate with IT leadership to mitigate risk from cyber attacks.
Smartphones could be a cyber threat for your company for several reasons. Learn what you should teach them about safe smartphone habits to prevent a breach.
Build a winning business case to gain leadership support so that you can invest in people-first phishing training. Learn now.
Understanding how and why people make errors is the first step to planning on how to address and eliminate human risk. Learn more about human risk.
Failing to provide security training to remote employees can leave your company vunerable to cyberattacks that have been increasing recently.
Repeat phishing offenders aren’t the problem... static training is. Learn how we use adaptive simulations to convert clickers into security assets.
Here's how to change the narrative around cybersecurity to get employees engaged.
How do you achieve cybersecurity behavior change? A breakdown of how science-based training transforms awareness into real-world risk reduction.
Learn how behavior-based cyber security training drives lasting employee behavior change. A breakdown of the key components, benefits, and why it’s essential for building a strong security culture.
Discover how Hoxhunt outperforms competitors in cybersecurity training. Based on real reviews, compare Hoxhunt's features, quality, and effectiveness to leading alternatives.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
In December 2020, we have noticed two phishing attacks spreading across organizations in Europe. Both attacks are trying to harvest credentials.
Ransomware has been on the rise during 2020 through a variety of attack vectors, targeting both individuals and organizations. Learn more about ransomware!
Postal service and package delivery phishing are extremely common - both in the workplace and among personal emails. Learn how attackers use these emails.
In quarantine phishing emails, attackers notify victims that an important message is in quarantine and they need to take action to release it.
In cybercrime, financial gain is still the primary driver and attacks are increasingly targeting C-level. Learn how to protect employees from criminals.
Lazy Office 365 credential phishing attacks can bind us from recognizing seriously dangerous ones. See a few examples where things can go south.
We train our users to always hover over links in emails and to validate the domain where the links points to. This can’t be trusted if you are using Microsoft Edge to view your emails in Office 365.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
Vishing attacks are spiking, and they’re powered by AI voice clones and social engineering. Here's how to prevent vishing with real-world tactics and simulation-based training.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.