Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
What is the real cost of phishing in 2021? The answers will surprise you. Especially cyber insurance; premiums have exploded while in the industry has imploded.
Cybercriminals are taking a page from the annals of rigged sports gambling, offering a little cash in return for a much bigger pay-off. This new phishing tactic plays on workforce disgruntlement to turn employees into insider threats with the exchange of bribes for complicity in a ransomware attack.
Open Redirects help attackers spoof legitimate brand URLs in their phishing attacks.
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
Knowing how hackers bypass multi-factor authentication helps users stay safe and make the right choices.
David X Martin is one of the world’s leading authorities on risk management and cybersecurity. Here he discusses the ideas and experiences behind the genesis of his latest book.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
Cyber security simulation training measurably changes employee behavior by testing them with realistic threats.
Hoxhunt had the privilege of attending the SANS Human Risk Summit in person on August 1-2. We've compiled a summary of the most impactful talks, highlighting key takeaways that are particularly releva
The difference between measured risk and true risk of a phishing attack breach is based on user engagement, and the difference is critical to resilience.
CISOs need the soft skills and business expertise to shake hands with the board and high five the C-suite in their role's evolution to business enablers
The hybrid work environment is here to stay and security teams must face its unique challenges with great technical controls and training.
New employees are a big risk for the security team. How can your security team tackle onboarding employees while considering their busy schedules?
Practice makes perfect. Especially when something as important as cybersecurity is on the line.
Infrequent phishing tests are still popular for measuring an organization's resiliency. Are they good enough or do you need to step up your training game?
Without practice, people won’t know what to do with a dangerous email. Through continuous training, you can reinforce the right behavior in cybersecurity.
Today, cybersecurity awareness training for your employees should be just as important as defense technology. Learn how to train your employees better.
TikTok's open redirection vulnerability is being used in phishing emails. Here's what we know and how to prevent successful attacks.
Your ultimate guide to deepfake attacks to keep your organization safe. Includes video examples and case studies.
Looking for genuinely engaging Cybersecurity Awareness Month ideas? Here are some of the best ones we've collected over the years here at Hoxhunt.
Your guide to the kinds of threats out there, what to look out for and the measures you can take to prevent invoice fraud.
Here are the 10 major phishing red flags that your employees should already be aware of.
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.
The more digital money you make, the more digital problems you get. Here's some tips to keep your crypto wallet safe.