Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
PayPal phishing email scams exploit online shoppers' trust of the iconic brand, built by the PayPal Mafia's founding fathers, Peter Thiel and Elon Musk.
A clever spear phishing campaign has resurfaced around the globe. It can bilk millions from victims in just a few hours of scam emails with imposters.
CISOs need the soft skills and business expertise to shake hands with the board and high five the C-suite in their role's evolution to business enablers
Emotionally triggering email attacks remain on the rise for attackers, who have seen the pandemic's potency for converting emotional distress into success.
Understanding the different ways that malware can infect your device, and knowing a few vital malware safety tips will help you stay malware-free.
Positive phishing awareness training lowers data breach risk and builds cybersecurity culture; CISOs are moving on from traditional punitive models.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
Cyber security simulation training measurably changes employee behavior by testing them with realistic threats.
Hoxhunt had the privilege of attending the SANS Human Risk Summit in person on August 1-2. We've compiled a summary of the most impactful talks, highlighting key takeaways that are particularly releva
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
5 tips to stay safe from new vishing scams we're seeing on the rise and increasingly dangerous to individuals and organizations
Cybercriminals use tax season as an emotional trigger for phishing attacks. During this stressful time, a clever email can trick victims more easily.
Email attacks are constantly mutating into more sophisticated variants. Learn about the various ways your credentials could be harvested.
Attackers commonly use impersonation and smishing to lure their victims into doing something that will result in financial gains for them.
In December 2020, we have noticed two phishing attacks spreading across organizations in Europe. Both attacks are trying to harvest credentials.
Ransomware has been on the rise during 2020 through a variety of attack vectors, targeting both individuals and organizations. Learn more about ransomware!
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Phishing campaigns can hijack legitimate services like Microsoft or Adobe to bypass spam filters and earn user trust
Attackers often craft phishing campaigns based on data they find online about the victims. Why would you miss out on personalizing your phishing training?
Learn about the most common social engineering tactics that attackers use to bypass two-factor authentication.
How to prepare your employees to recognize social engineering? We'll explain what it is and what you need to do shield your company from social engineering.