Blog

  • Is Your Invoice a Deepfake? Securing Your Accounts Payable Process Against Voice and Email Cloning

    Is Your Invoice a Deepfake? Securing Your Accounts Payable Process Against Voice and Email Cloning

    It’s a statistic that sends a shiver down the backs of SME owners, managers and employees.   According to the FBI’s 2025 Internet Crime Report, business email compromise (BEC) cost US businesses more than $3 billion last year. This makes it one of the most financially damaging cybercrimes on record.  AI has made these attacks harder…

  • Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    You click a link, sign in, approve the MFA prompt, and get on with your day. Completely unaware that someone else just logged into your account at the same moment. That scenario surprises many businesses, particularly those that rely on multi-factor authentication (MFA) to protect cloud accounts. But this is exactly how Adversary-in-the-Middle (AiTM) phishing…

  • The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    MFA is a strong front-door lock. But it’s not the only thing that decides whether someone can get in. After you sign in, your browser keeps you logged in using a session token (often stored as a cookie). It’s the digital version of a wristband at an event: once you’ve been checked, the wristband proves…

Archived posts

  • LinkedIn “Social Engineering”: Protecting Your Staff from Fake Recruitment Scams

    A fake recruiter message is one of the cleanest social engineering tricks around because it doesn’t look like a trick. That’s why LinkedIn recruitment scams work so well inside real businesses.  They don’t arrive as malware. They arrive as a normal conversation that nudges someone toward one small action: click this link, open this file,…

  • “Clean Desk” 2.0: Securing Your Home Office from Physical Data Leaks

    In the traditional office, a “Clean Desk” policy was a simple habit: shred the sensitive stuff, lock it away, and don’t leave passwords where someone can see them. In 2026, the same idea still matters but the “desk” has changed.  For many teams, the home office is now the default workspace, and that means physical…

  • The Essential Checklist for Securing Company Laptops at Home

    At home, security incidents don’t look like dramatic movie hacks. They look like stepping away from your laptop during a delivery, or leaving it unlocked while you grab something from another room. Those ordinary moments, repeated over time, are how work devices end up exposed. A remote work security checklist focuses on simple, practical controls…