Latest News
Gain insights into the latest trends, customer stories, and industry updates. Explore our blog, press releases, e-books, whitepapers, and upcoming events & webinars – all consolidated in one place.
What is ransomware, and why do companies choose to pay millions to cybercriminals?
What is ransomware? Ransomware is a type of malware that allows cybercriminals to block access to a company's systems or data...
How phishing training works
Phishing remains one of the most common ways for cybercriminals to gain access to businesses. Even though spam filters, firewalls, and security systems are getting better, fake...
What is a phishing email? 10 signs of fake emails
Phishing emails are one of the most common forms of digital fraud targeting businesses. They often look just like ordinary emails from a bank, Microsoft...
What is spear phishing? How to spot targeted phishing emails
Phishing often targets a broad audience. Spear phishing is more targeted and attempts to trick a specific person, department, or company with an email that...
What is smishing? How to spot phishing via text message and phone calls
Phishing and digital fraud don’t just happen via email. Scammers also use text messages, phone calls, and messaging apps to trick employees into clicking...
KPIs for Phishing Tests: How to Measure Success Without Creating Blame
Phishing tests can provide valuable insights into how employees respond to fake emails. But if the test focuses solely on who clicks the links, it can...
What is the difference between spam and phishing?
Spam and phishing are often confused because both typically end up in your inbox. But the difference is important. Spam is usually unwanted...
How to Choose the Right Platform for Awareness Training in Your Company
Increasing customer demands, cyber insurance, GDPR, NIS2, and management requirements mean that awareness training is more than just an annual course. You need to be able to train...
When a single wrong click can trigger a serious security breach
AI phishing: When a single wrong click can trigger a serious security breach. AI phishing makes it harder for employees to spot fake emails,...
SecureFirst Strengthens Its Organization Following Significant Growth
ITWatch has once again written about SecureFirst as a follow-up to its article from last year. This comes as several of the company’s investors are now...
Zero-day vulnerability in Microsoft Defender
What does it mean in practice when a zero-day exploit like Redsun strikes? The so-called Redsun technique is a current example of how attackers can exploit a...
Malicious Chrome extensions can pose a hidden threat to corporate IT security
Chrome Extension Security: Why Is It an Overlooked Vulnerability? Many companies have their antivirus, firewalls, and access controls under control, but...
What is the D-mark?
The D-Mark is a Danish certification scheme that helps companies document their efforts in IT security, data protection, and responsible...
That is why companies should still start preparing now
Even though the implementation of the AI Act is being delayed, this does not change the fact that requirements for the responsible use of AI are on the way. Companies should therefore...
A new threat to corporate IT security
A new type of zero-click vulnerability in AI extensions demonstrates just how quickly attacks can occur without user interaction. For businesses, this means a significant...
The EU’s new legislative proposal, the Biotech Act, could have implications for data security and compliance.
The European Commission has presented a proposal for a Biotech Act aimed at boosting innovation in the biotechnology sector in Europe. At the same time, European...
How Companies Protect Themselves Against Social Engineering
Why technology alone isn't enough when it comes to social engineering. Many companies invest in advanced security solutions such as firewalls,...
Cybersecurity: How cybercriminals use social engineering to infiltrate companies
Social engineering is a growing threat to corporate cybersecurity. Cybersecurity is one of the biggest challenges facing businesses and...
CIS 18 – the most important controls for SMEs (where should you start?)
Many companies encounter CIS 18 for the first time in connection with NIS2, cyber insurance, or a customer requirement. The problem is rarely willingness—but...
CIS 18 vs. NIS2 – what is the difference, and what does it mean for your business?
Cybersecurity has evolved from being a technical issue to a management responsibility. Many companies therefore quickly encounter concepts such as CIS 18 and...
Cyber insurance and CIS 18 – why insurance companies impose requirements on your cyber security
Cyber attacks are no longer just a technical problem. They are an economic risk. That is why more and more cyber insurance companies are imposing specific requirements on...
NIS2 in practice – what responsibilities does management have, and what are the risks?
NIS2 is not just an IT issue. It is a management responsibility. For the first time, the EU is making it absolutely clear that cybersecurity is something that management and...
CIS 18, NIS2, and cyber insurance – a complete guide to cybersecurity for businesses
Cybersecurity is no longer a niche technical field. It is a management responsibility, a compliance requirement, and a financial risk factor. This page brings together...
How does phishing work?
How phishing works and threatens IT security In a digital world where cyber threats are constantly evolving, phishing remains one of the most...
AI Literacy: Mandatory Competency Development for Businesses. Is Your Organization Prepared for EU Requirements?
Introduction On February 2, 2025, the first provisions of the EU AI Act came into force. This introduces a new legal requirement: All employees who...
What are the Requirements for Cyber Insurance – and How Can Your Business Prepare?
Cyber Insurance: No Longer Optional, But a Requirement As cyber threats grow increasingly sophisticated and businesses of all sizes...
Cyber Insurance Requirements: Key Considerations for Your Business
Cyber Insurance Requirements Your Business Must Know As digitalization accelerates, the threat of cybercrime becomes increasingly complex and...
Why People, Process, and Technology Constitute the Holy Trinity of Cybersecurity
TL;DR: Within cybersecurity, the People, Process, and Technology framework is crucial for a robust defense. This article explores why...
Cybersecurity Solutions for SMEs | Effectively Protect Your Business
In an era where digitalization is crucial for business operations, small and medium-sized enterprises (SMEs) face a growing threat from...
Phishing Simulation – Protect Your Business from Cyberattacks
What is phishing, and why is it a threat? Phishing is a form of cyberattack where perpetrators impersonate a trustworthy sender...
Awareness Training
Your primary defense against cyber threats In an age where the threat of cyberattacks increases daily, technology alone is insufficient to protect your...
Cybersecurity Solutions
Protect your business in a digital world As businesses increasingly digitalize, the demand for robust cybersecurity solutions grows. Every...
3 Essential Steps for Effective Awareness and Phishing Training
3 considerations before choosing Awareness and Phishing Training Awareness and phishing training has become an integral part of daily operations...
What is a GAP Analysis? Get the Answer Here!
Do you truly know your objectives – and your current standing? It sounds simple. Yet, that is precisely the question a GAP analysis helps you address...
Avoid phishing: How to spot and stop fake emails
Consider this scenario: A colleague clicks on a seemingly harmless link in an email. Minutes later, the company's network is compromised...
Achieve CIS18 Compliance with Our Awareness Training
Control 14 in CIS18 recommends both awareness training and a corresponding policy, ensuring employees become an active part of the company's defense. With SecureFirst, you receive training that translates this recommendation into practice – concise, targeted, and accompanied by a relevant policy.


































