Log In

 

Product

Articles

Malicious File Extensions: Inspect The Bytes, Not The Name

A new phishing campaign is delivering malware inside files that carry a font extension that is not actually a font. We examine how these campaigns bypass cybersecurity controls and what organizations need to know.

Do Your Due Diligence Before Hiring For Financial Positions

A Massachusetts man pled guilty to embezzling $7.8 million from two different medical practices using the same scheme. We discuss the importance of due diligence when hiring and how it can help avoid the fraud risks.

The Multiple Risks From "Boss Scams": More Than Just Lost Revenue

Executive impersonation is a common social engineering tactic used by cyber criminals. We comment on protecting the tricked employee from unfounded accusations while protecting the organization from loss.

Novel AI Malware Presents New Challenges And Requires More From Employers

Cybersecurity experts have identified detection gaps with AI-generated malware. We discuss what makes AI malware unique and how it evades discovery.

Requiring "Full Recovery" For Return-To-Work Increases EPL Risk

The EEOC sued a New Mexico hospital for allegedly requiring an employee to be fully recovered before returning to work. We examine this case and the discrimination risks of full recovery policies.