Read articles about security awareness, risk management, behavior change, and more
How quishing is being used in attacks, what these threats look like in the wild and best practices for avoiding them.
Here's what real Hoxhunt customers say about the platform. A deep dive into simulations, reporting, quality of support and more.
Empower your team to be a human firewall. Discover how training, vigilance, and smart habits protect against cyber threats.
The top KnowBe4 competitors to consider for security awareness and phishing training. Compare features, personalization, analytics, and more to make the right choice for your organization.
TikTok's open redirection vulnerability is being used in phishing emails. Here's what we know and how to prevent successful attacks.
A complete overview of major standards and regulations that require awareness training. Identify the most common standards, regulations, and frameworks that require security awareness programs.
Your ultimate guide to deepfake attacks to keep your organization safe. Includes video examples and case studies.
Every year around Halloween, security professionals gather around the campfire to tell spooky tales. This year, Barak Engel and Petri Kuivala join Hoxhunt to share some of their cyber horror stories.
Cyber security simulation training measurably changes employee behavior by testing them with realistic threats.
Hoxhunt had the privilege of attending the SANS Human Risk Summit in person on August 1-2. We've compiled a summary of the most impactful talks, highlighting key takeaways that are particularly releva
Why cyber insurance needs human risk management platforms and so do you
Your ultimate guide on how to prevent phishing. Everything you need to know to implement best practices and set up training that measurably reduces risk.
Your ultimate guide to spam vs phishing. What the differences are, how to recognize them and all of the practical measures you can take to keep your organization safe.
What is an SOC report? What are the different types of SOC reports available? How do you obtain one? Your questions answered.
We'll look into the behaviors to watch out for, how to assess risk and all the strategies you need to tangibly reduce human risk across your organization.
The Human Risk Manager controls the process of identifying, evaluating, and mitigating the cybersecurity risks associated with people.
Here's how integrating Yu-kai Chou's Octalysis Gamification and Behavioral Design Framework into cybersecurity training can dramatically improve user engagement and resilience.
Wondering which attack simulation training is best for your team? Get a full breakdown of Hoxhunt vs. Microsoft Defender to make an informed decision.
Maxime Cartier recaps the webinar series, "The Human Element: The Science Behind Influencing Security Behaviors" and key learnings of the intricacies of human behavior in reducing cybersecurity risk.
The differences between old school awareness training and modern security behavior change are revealed in measuring true risk managing human risk
Gamification helps the end user understand that their actions matter, and that every click they make can have an effect.
We picked up a Deliveroo feedback survey phishing email that is fairly clever. Here's how to spot it and stay off the hook.
Learn to recognize phishing emails and stay off the hook by knowing the top 4 ways how hackers bypass email filters.
Let’s talk about porn scams, also known as sextortion attacks. First, they are always a hoax. Second, here's how to stay off the hook.
Right-to-Left overrides (RTLO) take advantage of a special Unicode character [U+202e], which flips characters for languages like Arabic read right to left.
Gift card phishing attacks use an old trick that fell by the wayside with the rise of cryptocurrency phishing attacks. It's a trick, never a treat.
As celebrities attract stalkers, so too are cryptocurrencies attracting cybercriminals. Beware of these new cryptocurrency phishing attacks!
We train our users to always hover over links in emails and to validate the domain where the links points to. This can’t be trusted if you are using Microsoft Edge to view your emails in Office 365.
Phishing campaigns can hijack legitimate services like Microsoft or Adobe to bypass spam filters and earn user trust
Attackers often craft phishing campaigns based on data they find online about the victims. Why would you miss out on personalizing your phishing training?
Learn about the most common social engineering tactics that attackers use to bypass two-factor authentication.
How to prepare your employees to recognize social engineering? We'll explain what it is and what you need to do shield your company from social engineering.