#security awareness
14 stories taggedsecurity awareness.

2.47 Million Simulated Attacks Suggest We're Measuring the Wrong Things in Phishing Training
New research points out a gap between what most companies track (who clicked a fake link) and what actually matters (whether stolen passwords are being spotted and staff are reporting suspicious emails).

From Navy Sailor to Cybersecurity Chief: What Chris Wheeler Learned About Trust
Resilience CISO Chris Wheeler spent years in the Navy before moving into corporate security. His core lesson: the job is about earning trust, not just blocking attacks.

The Security Chiefs Who Finally Get to Tell Their Stories
A new documentary series lets cybersecurity leaders speak openly about hacks, burnout, and the human cost of keeping organisations safe. One episode alone involves $2 million stolen in a single phone call.

The World's Greatest Detective Was Also the World's Greatest Con Artist
A cybersecurity professor dressed as Sherlock Holmes walked a DEF CON audience through why the tricks criminals use to manipulate people today are identical to what a Victorian fictional detective pulled off in the 1890s.

Cybersecurity Then and Now: What Actually Changed (and What Didn't)
How the threats facing ordinary people and the businesses they deal with have shifted over the decades, and why some of the oldest tricks still work best.

Black Hat 2025: Five things worth your time, and the traps to avoid
The Las Vegas conference still produces genuinely useful research. Getting to it means ignoring a lot of expensive noise.

What is social engineering? A plain-English guide
Social engineering is the art of manipulating people, not machines, to hand over access, money, or data. Here is how it works and how to stop it.

Ten things every security chief needs to know before reporting directly to the CEO
More chief security officers are earning a direct line to the chief executive. The skills that got them there aren't always the ones that will keep them there.

AI Can Build a Dossier on Your CEO in Ten Minutes. Most Companies Have No Answer for That.
AI tools have turned the slow, skilled work of researching a target executive into a task anyone with a browser can do. Security teams haven't caught up.

ClickFix: The Fake Error Pop-Up That Tricks You Into Hacking Yourself
A scam that launched in 2024 has grown into a thriving criminal marketplace. Researchers say standard antivirus tools are missing it almost entirely, and they have built a new detection method to fill the gap.

From Prison to Cybersecurity Advocate: The Jesse McGraw Story
Once known online as GhostExodus, Jesse McGraw hacked hospital systems as a teenager, went to federal prison, and came out the other side trying to help defenders. His story is a rare look at what radicalises young hackers and what, sometimes, pulls them back.

AI Is a Force Multiplier for Defenders and Attackers Both, Says Check Point CTO
Jonathan Zanger says every AI platform his team examined over the past year had serious security flaws. The fix isn't to avoid AI. It's to build security in from the start.

Blocking Phishing Emails Is Not Enough. Here Is Why the Attack Carries On Anyway.
Filtering a malicious email out of your inbox stops one message, not the criminal behind it. A live webinar on 8 July 2026 sets out what disrupting a phishing campaign at its source actually requires.

The USB Drop That Changed Pen Testing: Steve Stasiukonis's Credit Union Experiment, Revisited
Twenty years ago, a handful of booby-trapped thumb drives in a parking lot became one of the most-cited social-engineering case studies in security history. What actually happened, and why it still matters.