Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Password protected attachments can evade spam filters and raise users' curiosity and trust
Updated from its 2021 version, the 2022 spoofed US Department of Transportation credential harvesting site is extremely effective
Phishing campaigns can hijack legitimate services like Microsoft or Adobe to bypass spam filters and earn user trust
Pretexting a form of phishing that hooks victims with a simple but convincing message without malicious links.
How to measure and drive behavior change that shields your organization from cyber-attacks.
Breaking the phishing attack kill chain requires understanding the three steps that drive its process, and the five most common effects of a successful attack.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
Cyber security simulation training measurably changes employee behavior by testing them with realistic threats.
Hoxhunt had the privilege of attending the SANS Human Risk Summit in person on August 1-2. We've compiled a summary of the most impactful talks, highlighting key takeaways that are particularly releva
Smartphones could be a cyber threat for your company for several reasons. Learn what you should teach them about safe smartphone habits to prevent a breach.
Traditionally, finance has been responsible for reducing business risk. CFOs need to cooperate with IT leadership to mitigate risk from cyber attacks.
Build a winning business case to gain leadership support so that you can invest in people-first phishing training. Learn now.
Understanding how and why people make errors is the first step to planning on how to address and eliminate human risk. Learn more about human risk.
Failing to provide security training to remote employees can leave your company vunerable to cyberattacks that have been increasing recently.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
Phishing and BEC attacks are still the kingpins of cybercrime despite the headline grabbing ransomware attacks of 2021. Learn how to prevent them.
Attackers target CEOs in BEC attack, the most lucrative phishing attack of all; learn 5 ways to prevent Business Email Compromise attacks.
Email verification malware phishing lets bad actors blast out malicious links en masse using tools that get more phish past email filters
The rise in secure messaging services' popularity has come with a rise in secure messaging phishing email scams. 6 tips to stay off the hook!
A recent email scam trend impersonates employees to ask HR to switch their bank deposit details, and redirect payments to the scammer's account.
Emotet, “The king of malware,” is one of the decade’s worst botnets. The feds killed it. Now it's back. Beware the undead king of malware, Emotet.
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.
The more digital money you make, the more digital problems you get. Here's some tips to keep your crypto wallet safe.