Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Cybercriminals are taking a page from the annals of rigged sports gambling, offering a little cash in return for a much bigger pay-off. This new phishing tactic plays on workforce disgruntlement to turn employees into insider threats with the exchange of bribes for complicity in a ransomware attack.
Open Redirects help attackers spoof legitimate brand URLs in their phishing attacks.
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
Knowing how hackers bypass multi-factor authentication helps users stay safe and make the right choices.
David X Martin is one of the world’s leading authorities on risk management and cybersecurity. Here he discusses the ideas and experiences behind the genesis of his latest book.
We picked up a Deliveroo feedback survey phishing email that is fairly clever. Here's how to spot it and stay off the hook.
This playbook will guide you through the essential email security best practices you need to know to educate employees, mitigate risks, and protect your organization.
Gamified cyber security training is a scientifically proven method to boost user engagement and motivate them to change behavior and build cyber skills continuously.
Compare Hoxhunt vs. KnowBe4 with real user insights, reviews, and security team feedback. Find out how each platform drives real behavior change, reduces admin overhead, and builds a stronger security
A breakdown of the best security awareness training and compare top security awareness training vendors based on real reviews, not marketing claims.
At Hoxhunt, we’ve spent years redesigning what effective security awareness training should look like. Here's what we've found works.
Your ultimate breakdown on how effective security awareness training really is and why traditional compliance programs fall short.
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Repeat phishing offenders aren’t the problem... static training is. Learn how we use adaptive simulations to convert clickers into security assets.
Here's how to change the narrative around cybersecurity to get employees engaged.
How do you achieve cybersecurity behavior change? A breakdown of how science-based training transforms awareness into real-world risk reduction.
Learn how behavior-based cyber security training drives lasting employee behavior change. A breakdown of the key components, benefits, and why it’s essential for building a strong security culture.
Discover how Hoxhunt outperforms competitors in cybersecurity training. Based on real reviews, compare Hoxhunt's features, quality, and effectiveness to leading alternatives.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
Looking for genuinely engaging Cybersecurity Awareness Month ideas? Here are some of the best ones we've collected over the years here at Hoxhunt.
Here are the 10 major phishing red flags that your employees should already be aware of.
Think you know everything about spear-phishing vs phishing? Here's the different techniques and prevention measures you need to know to prevent both kinds of attacks.
Learn how to protect your organization from whaling phishing. Understand how attacks target executives, spot warning signs, and implement best practices to prevent breaches.
Learn what credential harvesting is, how to detect phishing attacks, and protect your organization from credential theft.
We train our users to always hover over links in emails and to validate the domain where the links points to. This can’t be trusted if you are using Microsoft Edge to view your emails in Office 365.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
Vishing attacks are spiking, and they’re powered by AI voice clones and social engineering. Here's how to prevent vishing with real-world tactics and simulation-based training.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.