Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
What is the real cost of phishing in 2021? The answers will surprise you. Especially cyber insurance; premiums have exploded while in the industry has imploded.
Cybercriminals are taking a page from the annals of rigged sports gambling, offering a little cash in return for a much bigger pay-off. This new phishing tactic plays on workforce disgruntlement to turn employees into insider threats with the exchange of bribes for complicity in a ransomware attack.
Open Redirects help attackers spoof legitimate brand URLs in their phishing attacks.
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
Knowing how hackers bypass multi-factor authentication helps users stay safe and make the right choices.
David X Martin is one of the world’s leading authorities on risk management and cybersecurity. Here he discusses the ideas and experiences behind the genesis of his latest book.
Security engagement training is changing the way employees learn to recognize and report phishing emails. Learn how it is replacing security awareness.
We listed 10 cybersecurity trends that will drive cybersecurity strategies in 2020. Read our predictions to learn what most CISOs will implement.
Employees shopping online from work devices or network could have serious consequences for your company. Learn how you can mitigate the risks.
Create cybersecurity awareness in your organization. Get our best tips for transforming your organization’s cybersecurity culture.
Hackers can stalk and record you through your webcam – All it needs is a malicious program snuck into your computer.
Security awareness training is often half-hearted and inefficient – but it doesn’t have to be. Here's our key points on making it work
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
We picked up a Deliveroo feedback survey phishing email that is fairly clever. Here's how to spot it and stay off the hook.
Learn to recognize phishing emails and stay off the hook by knowing the top 4 ways how hackers bypass email filters.
Let’s talk about porn scams, also known as sextortion attacks. First, they are always a hoax. Second, here's how to stay off the hook.
Right-to-Left overrides (RTLO) take advantage of a special Unicode character [U+202e], which flips characters for languages like Arabic read right to left.
Gift card phishing attacks use an old trick that fell by the wayside with the rise of cryptocurrency phishing attacks. It's a trick, never a treat.
As celebrities attract stalkers, so too are cryptocurrencies attracting cybercriminals. Beware of these new cryptocurrency phishing attacks!
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.
The more digital money you make, the more digital problems you get. Here's some tips to keep your crypto wallet safe.