Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
The rise in secure messaging services' popularity has come with a rise in secure messaging phishing email scams. 6 tips to stay off the hook!
A recent email scam trend impersonates employees to ask HR to switch their bank deposit details, and redirect payments to the scammer's account.
This guide to the DoD Phishing Awareness Challenge gives 9 key takeaways from the training to help determine if it’s right for you and your organization
Emotet, “The king of malware,” is one of the decade’s worst botnets. The feds killed it. Now it's back. Beware the undead king of malware, Emotet.
Summer OOO messages are like chum in the water for bad actors' BEC-inspired, little-known but dangerous Out of Office and Read Receipt phishing attacks
The difference between measured risk and true risk of a phishing attack breach is based on user engagement, and the difference is critical to resilience.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
Cyber security simulation training measurably changes employee behavior by testing them with realistic threats.
Hoxhunt had the privilege of attending the SANS Human Risk Summit in person on August 1-2. We've compiled a summary of the most impactful talks, highlighting key takeaways that are particularly releva
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
#HoxhuntPhishmas Day 24: A real-world Credential Harvesting case explored and exposed!
We asked the AI bot ChatGPT about its dangers and designs on phishing and world domination. Its responses may surprise you.
The true cost of phishing and security breaches doesn’t just lie with the cost of the actual breach itself.
What could be more safe and secure than someone's voice? Actually, as it turns out, a lot of things.
yB posing as an IT person via a text message or behind a computer, an attacker can gain physical access to your computer and compromise not just your computer but your entire company network.
Harvesting personally identifiable information (PII) is common practice for hackers and other malicious actors. Here's how they do it.
We train our users to always hover over links in emails and to validate the domain where the links points to. This can’t be trusted if you are using Microsoft Edge to view your emails in Office 365.
Your ultimate guide to the process behind social engineering training and all of the tips and know-how you need to ensure your training successfully changes behavior.
From Spear-Phishing, to Credential Harvesting, To Possible Ad Fraud. Keep Reading To Find Out How This Story Unfolded and How You Can Avoid Getting Caught.
We're seeing an uptick in social engineers targeting social media accounts
Now that cookies are on their way out, a much sneakier way of identifying you is on its way in.
Years later, pop-ups are back, this time serving a different purpose... stealing your info.
The more digital money you make, the more digital problems you get. Here's some tips to keep your crypto wallet safe.