Playbooks, threat updates, and behind-the-scenes posts from the Cyber Aware team. Written by operators, for operators.
Anti-phishing software for political and campaign offices in 2026: donor-portal pretexts, volunteer churn, nation-state risk. Cyber Aware is the Buy.
Best anti-phishing software for shift and frontline workers in 2026: mobile-first training, SMS phishing pretexts, no corporate email required. Buy: Cyber Aware.
Best security awareness platform for research institutes in 2026: grant-portal pretexts, semester turnover, Canvas breach fallout. Cyber Aware is the Buy.
Cyber security awareness programs for volunteer-run charities in 2026: BEC pretexts, Privacy Act Tranche 2, volunteer turnover. Cyber Aware is the Buy.
Security awareness training for oil and gas field contractors in 2026: vendor-portal pretexts, rotating crews, Colonial Pipeline lessons. Buy: Cyber Aware.
Anti-phishing software for stopping QR code phishing scams in 2026: QR sims, short lessons, finance filters and process rules beyond the gateway.
Best anti-phishing software for online marketplaces in 2026: seller payouts, admin portals, ranked. Cyber Aware is the Buy for lean ops teams.
Best security awareness training for aviation companies in 2026: SOCI Act reporting, invoice fraud, ranked picks. Cyber Aware is the Buy for lean ops teams.
Best security awareness training for sports clubs in 2026: membership portals, treasurer fraud, volunteers. Cyber Aware is the Buy for lean associations.
Cyber security awareness for staffing agencies in 2026: ATS portals, payroll diversion, candidate IDs. Cyber Aware is the Buy for multi-branch ops.
How to brief executives on security awareness outcomes in 2026: three numbers, residual risk, phishing beside completion, and one board decision per pack.
How to respond when a client fails a phishing simulation repeatedly in 2026: signed ladder, same-day coaching, privilege containment and QBR metrics.
How to set renewal reminders for training certifications in 2026: 60/30/14/7-day waves, auto-enrol, privileged escalation and audit samples.
Security awareness platform for IT consultancies in 2026: client-portal phishing, privileged cohorts, ranked. Cyber Aware is the Buy for lean consultancies.
Security awareness platform for telehealth in 2026: EHR portals, booking fraud, clinical teams. Cyber Aware is the Buy for virtual clinics.
Security awareness training for call centre and BPO teams in 2026: sub-8-minute lessons, voice and chat social engineering, same-shift fail coaching.
Security awareness training for mortgage brokers in 2026: aggregator portals, settlement diversion, ID packs. Cyber Aware is the Buy for broker networks.
Automated security awareness for architecture firms in 2026: BIM portals, consultant invoices, IP theft. Cyber Aware is the Buy for lean practices.
Best anti-phishing software for radiology and imaging providers in 2026: PACS, RIS, insurer claims. Cyber Aware is the Buy for multi-site groups.
Best cyber security awareness training for board directors in 2026: BEC, payment approvals, governance packs. Cyber Aware is the Buy for lean boards.
Best security awareness training for wholesale distributors in 2026: EDI fraud, carrier invoices, depot crews. Cyber Aware is the Buy for lean ops teams.
Cyber security awareness for debt collection agencies in 2026: debtor portals, payment diversion, privacy. Cyber Aware is the Buy for multi-site ops.
How to design gamified security awareness training in 2026: reward reports, short modules, private fail ranks. Culture metrics over vanity badges.
How to reduce security awareness training fatigue in 2026: sub-10-minute modules, fail-triggered coaching, spaced cadence. Finish rates over seat counts.
How to run multi-language security awareness training in 2026: preferred-language enrol, local phishing, cohort metrics. Finish rates across every site.
How to run stealth phishing simulations without alerts in 2026: charters, seed tests, SOC silence, private coaching. Real baselines over vanity drop rates.
How to track training completion for insurance renewal in 2026: named rosters, certificates, phishing metrics and exception lists underwriters accept.
Automated security awareness platform for NDIS providers in 2026: participant data, roster phishing, audit packs. Cyber Aware is the Buy for lean operators.
Best anti-phishing software for automotive dealership groups in 2026: OEM invoice fraud, DMS phishing, ranked. Cyber Aware is the Buy for multi-rooftop groups.
Best security awareness platforms for community housing providers in 2026: tenant data, rent portal phishing, board packs. Cyber Aware is the Buy.
Best security awareness platforms for waste management in 2026: depot crews, panel invoices, fleet dispatch. Cyber Aware is the Buy for multi-depot operators.
Best security awareness training for member associations in 2026: member data, event payments, volunteer access. Cyber Aware is the Buy for lean teams.
Cyber security awareness for agribusiness in 2026: co-op vendor fraud, portal phishing, harvest-season drills. Cyber Aware is the Buy for lean boards.
Cyber security awareness for pharmacy chains in 2026: PBS claims, patient scripts, roster phishing. Cyber Aware is the Buy for multi-site groups.
How to build a security awareness policy for audits in 2026: scope, cadence, evidence exports and escalation — built for Essential Eight and insurer packs.
How to train contractors on security awareness in 2026: SOW clauses, day-one enrolment, short modules, scoped phishing and offboarding exports.
Security awareness platform for software and SaaS companies in 2026: BEC, SSO phishing, SOC 2 evidence. Cyber Aware is the Buy for growth-stage teams.
Automated security awareness platform for telcos in 2026: SIM-swap, customer portal and BEC drills. Cyber Aware is the Buy for lean security teams.
Best anti-phishing software for veterinary clinics in 2026: invoice fraud, lab portals, ranked. Cyber Aware is the Buy for multi-clinic groups.
Best security awareness training for utilities companies in 2026: CI phishing, field crews, Essential Eight evidence. Cyber Aware is the Buy.
Cyber security awareness for mining companies in 2026: contractor fraud, FIFO phishing, OT-aware drills. Cyber Aware is the Buy for mid-tier operators.
How to benchmark phishing click rates against industry averages in 2026: freeze definitions, segment by privilege, and pair report rate with every board slide.
How to build vendor risk management using training data in 2026: SOW clauses, high-tier sims, and red-band access kills.
How to train seasonal staff on security awareness quickly in 2026: day-1 gate, three-module cut, week-one sim, and same-day fail close-out.
How to deliver security awareness training without company email in 2026: SMS and kiosk enrol, 30-minute baseline, channel-aware sims.
How to transition security awareness training at offboarding in 2026: export certificates first, kill seats same day, archive for insurers.
Security awareness training for childcare centres in 2026: parent data, enrolment IDs, payroll fraud. Cyber Aware is the Buy for multi-site ops.
Best anti-phishing software for e-commerce retailers in 2026: invoice fraud, marketplace logins, ranked verdicts. Cyber Aware is the Buy.
Best Cythera alternative for MSP compliance teams in 2026: Cyber Aware wins on multi-tenant phishing, white-label depth, and Essential Eight evidence.
Best phishing simulation tools for universities and TAFEs in 2026: ranked picks, academic pretexts, and cohort setup. Cyber Aware is the Buy.
Best security awareness platforms for superannuation funds in 2026: CPS 234 evidence, member-data phishing, trustee packs. Cyber Aware is the Buy.
Cyber security awareness for engineering firms in 2026: IP-theft pretexts, vendor invoice fraud, and field-staff training. Cyber Aware is the Buy.
Design an escalation path for repeat phishing clickers in 2026: four tiers, access containment, manager scripts, and metrics that spare the blame culture.
Train payroll teams to stop CEO fraud emails in 2026: call-back rules, three drills, and a 30-day plan that blocks off-cycle wires.
Train staff to spot deepfake video call scams in 2026: a verify-out-of-band rule, three drills, and a 30-day plan that stops emergency wire requests.
Security awareness platform for local government in 2026: Essential Eight evidence, rate-notice phishing, and CEO-ready reports. Cyber Aware is the Buy.
Security awareness training for smishing in 2026: what to look for, three programme picks with Buy/Consider/Skip verdicts, and traps to avoid.
The best anti-phishing software for stopping invoice fraud in 2026, ranked by simulation quality, reporting, and fit for finance teams.
The best Cyberwardens alternatives for small business owners in 2026, ranked by ongoing simulation, reporting, and ease of setup.
Fortinet security awareness alternative platforms for MSPs, ranked for 2026. Cyber Aware wins for multi-tenant delivery — see the full verdict breakdown.
Compare Cyber Aware, KnowBe4, Mimecast and more for 2026 renewals. Ownership shifts, verdicts, and which proofpoint alternative fits enterprise IT security teams.
Ranked Safetrac alternative platforms for 2026, with verdicts on Cyber Aware, KnowBe4, and Proofpoint for HR and compliance managers.
Ranked Sentrient alternative platforms for 2026 compliance teams: Cyber Aware wins for audit-ready phishing reporting. Full comparison table and verdicts.
Cyber security awareness programs for event management companies in 2026: vendor invoice fraud, ticket scams, and seasonal staff training gaps.
Per-seat security awareness training pricing punishes MSP growth. See the real 2026 math on per-seat vs flat-fee pricing and why margins break at scale.
Communicate a data breach to non-technical staff in 2026: a 60-minute first message, plain-language FAQ, and seven-day cadence that cuts rumour and risk.
Keep phishing simulations current in 2026: a monthly threat scan, template refresh queue, and six-step cadence that tracks live scam tactics.
Reduce business email compromise risk in 2026 with staff training: call-back rules, three BEC simulations, and a 30-day plan you can measure.
Run phishing simulations during a company merger in 2026 without wrecking trust: timeline, dual-brand rules, and a 45-day integration plan.
Teach staff to verify supplier bank detail changes in 2026: a call-back rule, three drills, and a 30-day plan that stops invoice fraud wires.
Cyber Aware tops our 2026 picks for a security awareness platform for faith-based organisations: buying criteria, top picks, verdicts, and what to skip.
Security awareness platform for local government in 2026 — Cyber Aware wins for Essential Eight evidence and council-size rosters.
Security awareness training for recruitment tech platforms in 2026: why candidate data is a target, what to train for, and how to roll it out.
See what actually works for security awareness training for small business owners in 2026 - free ACSC resources, automated platforms, and what to skip.
PhishLabs killed its security awareness training twice, and in 2026 the brand itself was retired. Here's the full timeline - and where MSPs searching for a white-label alternative should look instead.
Run a phishing simulation pilot in 2026 with the right sample size, cadence, and go/no-go threshold before rolling security training out company-wide.
Calculate the real cost of a phishing incident for clients in 2026 - labor hours, downtime, remediation, and notification costs, step by step.
Over the past few weeks, countless Australians have fallen victim to Flubot Scams; scams that use voice-recording links and other false messaging to
Hackers are using mirroring apps to monitor SMS activity, enabling them to view private conversations, scalp private data, and appropriate SMS authentication
Recent research from the International Data Corporation has revealed that Australian organisations are more likely to pay out a ransom than any other nation.
A recent cyberattack against Stonnington Council has exposed private ratepayer information across some of Australia's most expensive suburbs. In a Channel 7
From counterfeit vaccine shipments to forged vaccine certificates, it seems that criminals are using every means available to profit on the COVID-19 pandemic.
An investigative consultant has revealed that last month's historical ransomware attack against Colonial Pipelines was committed through a simple password
A whopping 47 meat processing facilities across Australia have closed operations due to a cyber-attack against JBS Foods.
Victorians are currently on day five of a planned seven-day snap lockdown, and there is increasing worry that we may see significant extensions.
A ransomware attack against Colonial Pipeline - a major fuel pipeline operator responsible for nearly half of the USA's east coast fuel supply - has resulted
You may remember in late March that not only Channel Nine, but also Federal Parliament, were making headlines for being targetted by significant cyber attacks.
New decade, same trends! Cybercrime is continuing on a rampant incline and shows no signs of slowing down.
The broadcast of Channel 9, one of Australia's most widely watched television networks, was disrupted by a hack on Sunday Morning. The attack took them off
Uniting Care Queensland IT (UCQ), an organisation responsible for servicing four hospitals and dozens of aged care & disability services in Queensland,
Since passwords were established in 1960, a recurring theme of cybersecurity has been Password Strength. The globally implemented tool for login security has
In August, when I first learned that Scamwatch had received reports of puppy scams totaling $300,000, I was already concerned about Australia’s increased
Last night, I finally sat down and watched Netflix’s new trending film The Social Dilemna; a docudrama exploring the intentionally addictive patterns
In a recent Ray Morgan survey, 39% of Australians working from home reported that they ‘find it difficult.’ This coincides with a Society of Human Resources
About two weeks ago, I published an article on LinkedIn and the Cyber Aware blog in which we forecasted a second wave of scams related to COVID-19. The
Social media influencer and millionaire, Ramon Olorunwa Abbas, is currently being detained for criminal charges over alleged involvement in a major scam
Now that we’ve reached the mid-way point of 2020, I can’t help but feel as though we’re resting in the eye of the storm. By all means, we’ve largely done a
This morning, Scott Morrison addressed the Australian public to raise awareness of ongoing cyber threats facing the Australian government, as well as both the
No one could have predicted the COVID-19 pandemic. At least, that’s what I’m hearing. In reality, the ramifications and likelihood of a global pandemic have
Scammers always exploit people's fears, and what could be an easier target today than COVID-19.
Despite decades of warnings and best advice from leading scientific bodies, no one was adequately prepared for the COVID-19 pandemic.
Depending on your part of the world, today is World Password Day! While for fellow Downundians it was actually yesterday, there’s never a bad time to
As new cases of COVID-19 remain low, and discussions of lowered restrictions populate Australian news, it’s time that we take a step back and
Before COVID-19 dominated the news cycle, you may have seen that Toll Group, the well-known global logistics network, and freight transport
On April 14, 2020, Gartner surveyed 145 leading legal and compliance entities, revealing that more than half of the respondents deem cybersecurity and
Have you received the below SMS message?
SpaceX (Elon Musk's aerospace manufacturer company) recently banned its employees from video conferencing via Zoom on account of "significant privacy and
If your business faced a ransomware attack, would you pay the hacker?
With the advent of remote-working in response to COVID-19, we’re all making necessary adjustments. We’re incorporating new behaviors into our day-to-day life,
Another year, another “Black Friday Crowds rampaging through Walmart” Youtube compilation for me to relax too while doing my online Christmas shopping! But
Many years ago, when I was a 14-year-old budding computer nerd, I experienced my first data-breach. I'd been playing World of Warcraft for hours on end (I was
The immediate and rapid migration from our workplaces to the household has greatly expanded the cybercrime landscape:
Hacking attempts are not just a problem for large corporations. Unfortunately, cybercriminals are equal opportunists, a fact which has been corroborated by
We can all appreciate the availability of an Internet connection when we are away from our home or office connectivity. Some people are on limited data plans,
New mandatory data breach notification laws take effect in Australia on 22 February 2018. This latest legislation seeks to protect consumers’ personal
Small and medium-sized businesses (SMB’s) are not exempt from cyber attacks. In fact, close to 60% of all breached organisations can be categorised in this
The recent Mandatory Breach Notification legislation has brought the issue of cybersecurity to the forefront of national dialogue. The Australian Prudential
ybercrime is on the rise. Not only are rates of cybercrime increasing but its breadth and depth have reached a level of sophistication that is
Generally when we think of online hackers, we think of faceless perpetrators whose intention is to scam us out of our hard earned money in one swift malicious
A recent study by Tripwire has found that more than half of all security professionals surveyed had noticed a rise in phishing attacks at their organisation
When we hear about cyber hacking crimes, the target of the attack is usually a large corporation or household name; however hackers are increasingly targeting
Nowadays, a common problem that most businesses will face is understanding how they can protect themselves from cyber attack and whose responsibility this is.
The danger of a cyber security breach lies not only in the breach itself but in its significant legal ramifications. It’s just a matter of time before
Last month the Minister Assisting the Prime Minister for Cyber Security, Dan Tehan MP, released the 2017 Australian Cyber Security Centre (ACSC) Threat
A recent email scam targeting road users has highlighted the case for stronger education around what constitutes good e-mail practice in today’s corporate
Spin up a fully branded Cyber Aware portal under your name - live, in your browser, before you finish your coffee.