
Many security awareness providers and solutions cannot cover what their customers require. This article lists their common weaknesses and the practical steps larger organizations can take to address them.
Research, guides and category thinking on Behavioral Defense.

Many security awareness providers and solutions cannot cover what their customers require. This article lists their common weaknesses and the practical steps larger organizations can take to address them.

The Marks & Spencer cyber attack shows that large companies with complex organizations, many languages and multiple LMS systems need cybersecurity awareness solutions designed to meet such challenges. Otherwise, there is a risk of group-wide failure.

In our irregular series on the biggest cyber heists in history, this post analyzes the Bybit, MGM and Sony hacks: what happened, how it happened, who noticed it, what damage was done and what the consequences were. At the end, we compare the cases and consider what could have been done better, also from a cybersecurity awareness perspective.

By exploiting details from your LinkedIn profile, Facebook posts or company website, attackers can craft highly personalized phishing scams that are harder to detect and resist. This article explores how cybercriminals turn your online presence into a weapon and shares tips to help you stay safe.

The U.S. presidential election was hit with billions of cyberattacks – 6 billion, to be exact – and somehow, things held up. Now Germany’s snap election is just weeks away, and experts are already sounding the alarm.

What began a year and a half ago as a business idea for AI-driven awareness has made an impact: CYBERDISE now trains and tests over 40,000 users. Having achieved product-market fit, the company is seeking investors to scale globally.

While “Carry-On” primarily focuses on physical security in an airport, its themes resonate deeply with today’s cybersecurity challenges. The movie is a stark reminder of how vulnerabilities, both technological and human, can be exploited with devastating consequences.

Compliance is a cornerstone of trust, security and resilience, yet telling GDPR, NIS2 and ISO 27001 apart can feel like solving a puzzle. Here is what each framework requires, what non-compliance risks and how the three interconnect.

Phishing attacks rely heavily on psychological tricks, which is why understanding these tactics matters for cybersecurity awareness. Nearly half (47%) of successful attacks still happen because of careless employees.

it-sa Expo & Congress in Nuremberg is one of Europe's leading cybersecurity events, and this year it set new records with 25,830 trade visitors from 65 countries and 897 exhibitors. We've sifted through the highlights for practical takeaways, from awareness training to protecting critical infrastructures.

A finance employee at a multinational company was duped into transferring $25 million during a fake video conference with deepfaked colleagues. This round-up also covers QR code phishing and a North Korean phishing attack on Diehl Defense.

Cybersecurity can make or break a company in the event of a breach, with millions of dollars and reputations on the line. Yet it is so unpopular among employees that most training programs end up being ineffective.