Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Your ultimate guide to deepfake attacks to keep your organization safe. Includes video examples and case studies.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
All of the best practices, metrics and strategies you'll need to maximize the effectiveness of your Cyber Security Awareness Month efforts.
What are the 4 essential phishing metrics of an effective training program? It's not what you think. Spoiler: failure rate is not amongst them.
The ultimate guide to protecting your organization on social networking sites. How to build your social media security policies and procedures to measurably reduce risk.
This playbook will guide you through the essential email security best practices you need to know to educate employees, mitigate risks, and protect your organization.
In the guide below we'll break down exactly what you need to know about MFA fatigue, how to spot attacks as well as the latest security practices for protecting your organization.
Your essential guide to building a robust security culture. How to implement effective training, policies, and recognition systems to mitigate human cyber risk.
What is the real cost of phishing in 2021? The answers will surprise you. Especially cyber insurance; premiums have exploded while in the industry has imploded.
David X Martin is one of the world’s leading authorities on risk management and cybersecurity. Here he discusses the ideas and experiences behind the genesis of his latest book.
The difference between measured risk and true risk of a phishing attack breach is based on user engagement, and the difference is critical to resilience.
CISOs need the soft skills and business expertise to shake hands with the board and high five the C-suite in their role's evolution to business enablers
The hybrid work environment is here to stay and security teams must face its unique challenges with great technical controls and training.
New employees are a big risk for the security team. How can your security team tackle onboarding employees while considering their busy schedules?
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
Looking for genuinely engaging Cybersecurity Awareness Month ideas? Here are some of the best ones we've collected over the years here at Hoxhunt.
Your guide to the kinds of threats out there, what to look out for and the measures you can take to prevent invoice fraud.
Here are the 10 major phishing red flags that your employees should already be aware of.
Think you know everything about spear-phishing vs phishing? Here's the different techniques and prevention measures you need to know to prevent both kinds of attacks.
Your SaaS suite is leaving your backdoor open. Here's how to fix it.
Log4J Log4Shell vulnerability explained to help you understand what it is and how to stay protected
A security vulnerability was recently reported in the default guest permissions of Microsoft Azure Active Directory. Here’s how to fix it and stay safe from attackers.
This phishing email was sent from outside the organization but is replacing the Caution! External Sender banner with a safe sender banner.
Apple just recently confirmed the most significant vulnerability in iOS history after ZecOps made a public announcement about their discovery of a security flaw.
According to security researchers, the iOS mail app, which is the email client that can be found on most Apple iPhones and iPads, has a severe security flaw making it vulnerable to attacks.
Phishing campaigns can hijack legitimate services like Microsoft or Adobe to bypass spam filters and earn user trust
Attackers often craft phishing campaigns based on data they find online about the victims. Why would you miss out on personalizing your phishing training?
Learn about the most common social engineering tactics that attackers use to bypass two-factor authentication.
How to prepare your employees to recognize social engineering? We'll explain what it is and what you need to do shield your company from social engineering.