Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
The rise in secure messaging services' popularity has come with a rise in secure messaging phishing email scams. 6 tips to stay off the hook!
A recent email scam trend impersonates employees to ask HR to switch their bank deposit details, and redirect payments to the scammer's account.
This guide to the DoD Phishing Awareness Challenge gives 9 key takeaways from the training to help determine if it’s right for you and your organization
Emotet, “The king of malware,” is one of the decade’s worst botnets. The feds killed it. Now it's back. Beware the undead king of malware, Emotet.
Summer OOO messages are like chum in the water for bad actors' BEC-inspired, little-known but dangerous Out of Office and Read Receipt phishing attacks
The difference between measured risk and true risk of a phishing attack breach is based on user engagement, and the difference is critical to resilience.
All of the best practices, metrics and strategies you'll need to maximize the effectiveness of your Cyber Security Awareness Month efforts.
What are the 4 essential phishing metrics of an effective training program? It's not what you think. Spoiler: failure rate is not amongst them.
The ultimate guide to protecting your organization on social networking sites. How to build your social media security policies and procedures to measurably reduce risk.
This playbook will guide you through the essential email security best practices you need to know to educate employees, mitigate risks, and protect your organization.
In the guide below we'll break down exactly what you need to know about MFA fatigue, how to spot attacks as well as the latest security practices for protecting your organization.
Your essential guide to building a robust security culture. How to implement effective training, policies, and recognition systems to mitigate human cyber risk.
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Practice makes perfect. Especially when something as important as cybersecurity is on the line.
Infrequent phishing tests are still popular for measuring an organization's resiliency. Are they good enough or do you need to step up your training game?
Without practice, people won’t know what to do with a dangerous email. Through continuous training, you can reinforce the right behavior in cybersecurity.
Today, cybersecurity awareness training for your employees should be just as important as defense technology. Learn how to train your employees better.
TikTok's open redirection vulnerability is being used in phishing emails. Here's what we know and how to prevent successful attacks.
Your ultimate guide to deepfake attacks to keep your organization safe. Includes video examples and case studies.
Looking for genuinely engaging Cybersecurity Awareness Month ideas? Here are some of the best ones we've collected over the years here at Hoxhunt.
Your guide to the kinds of threats out there, what to look out for and the measures you can take to prevent invoice fraud.
Here are the 10 major phishing red flags that your employees should already be aware of.
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.
The more digital money you make, the more digital problems you get. Here's some tips to keep your crypto wallet safe.