<turbo-stream action="append" target="posts_list"><template><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146282">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146282/watch_times"
  data-youtube-player-video-id-value="XgogrdK_NvU"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/acb4npkw0h975h9vsnyzavbjsylz" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146282">
          Jun 2, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146282">
            These Old Cyber Tricks STILL Work?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p><strong>What do Victoria’s Secret, TikTok, and a Scottish train station have in common?</strong><br>They all feature in this week’s episode—alongside malware, fake IT calls, and a growing pile of breached data.</p>
<p>Episode 31 is full of weird, worrying, and very real cyber stories. Retailers are still getting hit. TikTok is spreading malware using AI-generated videos. SIM swap attacks are back. And a voice actor says her voice was cloned by ScotRail without permission. There's also a bit of good news—Microsoft and Apple are making some smart software updates that might actually help.</p>
<p>Let’s break it all down…</p>
<p>🛍️<span> </span><strong>Victoria’s Secret and Adidas – Different Attacks, Same Worry</strong><br>Victoria’s Secret pulled down its entire US website after a security incident. Stores are still open, and the UK site is fine, but details are scarce. Meanwhile, Adidas confirmed that customer contact info was stolen via a third-party help desk. No credit cards were taken, but attackers now have names and email addresses—perfect for phishing.</p>
<p>The bigger trend? Help desks being socially engineered to reset passwords or provide access. It’s the same pattern we saw with MGM, M&amp;S, and others. Social engineering is winning because it’s fast and it works. You don’t need zero-days when you can just ask someone nicely.</p>
<p>🎣<span> </span><strong>AI-Generated TikToks Are Now Spreading Malware</strong><br>In a particularly grim twist, we found out this week that attackers are using TikTok to distribute info-stealing malware. The videos show fake software tips like “activate Microsoft Office” or “get Spotify Premium for free”—but they’re actually convincing users to open PowerShell and paste in malicious code.</p>
<p>One of these videos racked up half a million views.</p>
<p>This isn’t phishing in the traditional sense. There’s no dodgy link or email. Just a fake video and a bit of social engineering that hits people’s curiosity and FOMO. It’s especially dangerous on BYOD devices—because what gets installed at home could end up back on the corporate network.</p>
<p>📞<span> </span><strong>Google Meet Scam – Same Trick, New Platform</strong><br>We also spotted a fake Google Meet error message asking users to “fix” their microphone by pressing Win+R and pasting in a command. It looks like Google Meet, but it’s a full clone, and the code gets copied to the clipboard automatically. You barely have to think. Just press, paste, and enter. And just like that, someone else has control of your device.</p>
<p>Same goes for fake Cloudflare verifications targeting WordPress admins and even a Coursera-themed phishing campaign that leads to a fake Facebook login page. It's all part of a wider trend: fewer links, more human behaviour tricks.</p>
<p>The lesson? If a webpage tells you to open PowerShell or press Win+R,<span> </span><strong>don’t do it. Ever.</strong></p>
<p>🔄<span> </span><strong>SIM Swap Scams Are Back (And Still Working)</strong><br>This story came in from a listener—Oli spotted that someone he knows had been SIM swapped. They got a legitimate-looking message from EE confirming a new eSIM had been ordered, then a flurry of calls from an unknown number. They called EE, and yep—it had happened. Their mobile number had been reassigned, and SMS-based logins were no longer theirs.</p>
<p>It’s easy to forget just how much is tied to your phone number. SMS codes. Banking apps. Password resets. All it takes is one help desk that doesn’t ask the right questions. We talk about whether mobile providers should let users lock their SIM from porting—and why EE’s current process is nowhere near good enough.</p>
<p>🧠<span> </span><strong>The Awareness Angle – Tell People What’s<span> </span><em>Not</em><span> </span>Normal</strong><br>This week’s awareness messaging is simple:<br>If a website or video asks you to open Run (Win+R), PowerShell, or paste in a command—walk away. It’s not normal. It’s never okay. Your IT team will never ask you to do this.</p>
<p>The same goes for weird login pages, especially if they’re offering something free, urgent, or exclusive. Encourage your users to<span> </span><em>pause</em><span> </span>and check before entering credentials or following instructions.</p>
<p>🎙️<span> </span><strong>ScotRail Voice Controversy – AI and Consent</strong><br>Voice actor Gayanne Potter recorded some lines for accessibility tools back in 2021. This year, she discovered her voice had been turned into “Iona”—the new voice of ScotRail. She never gave permission for that. She’s spent two years trying to get it removed.</p>
<p>It’s a real-world version of the video we made last year—<em>Likeness</em>. It’s about how easily your identity can be used by an AI system once you've signed the wrong contract or clicked "agree" without reading. There’s currently no legal protection in the UK for voice or likeness. GDPR might not even apply if the company owns the original recordings.</p>
<p>This one’s a wake-up call for anyone working with audio, video, or their face and name online. Creators deserve more protection. And organisations using AI need to be upfront about how and why they’re doing it.</p>
<p>💰<span> </span><strong>Would You Sell Your Data for £40 a Month? Gen Z Might.</strong><br>A new app called<span> </span><em>Verb.AI</em><span> </span>is paying Gen Zers $50 a month to track their scrolling, clicking, and buying. It builds a “digital twin” that companies can query like a chatbot to understand habits and preferences. It’s being sold as a fair value exchange. But is it?</p>
<p>Apparently, 88% of Gen Z are okay with sharing personal data if there’s compensation. And yet they’re also more likely than older generations to use encrypted messaging, block cookies, and browse privately. There's a tension here between<span> </span><em>knowing the risks</em><span> </span>and<span> </span><em>doing it anyway</em>. And it’s something awareness teams need to understand.</p>
<p>The takeaway? Awareness isn’t just about teaching risk—it’s about helping people care. Especially when short-term rewards (like £40 a month) seem more tangible than long-term data consequences.</p>
<p>🔄<span> </span><strong>Smaller Bits Worth Your Time</strong></p>
<ul>
<li>
<p>WhatsApp is now offering<span> </span><em>passkey</em><span> </span>support for login—so you can ditch SMS codes and use fingerprint or face unlock instead.</p>
</li>
<li>
<p>Microsoft is building a new<span> </span><em>update orchestrator</em><span> </span>that will automatically patch all your drivers, apps, and system components in one go.</p>
</li>
<li>
<p>Apple’s switching to<span> </span><em>year-based naming</em><span> </span>for their OS updates—iOS 26, macOS 26, and so on—alongside a full redesign coming at WWDC.</p>
</li>
</ul>
<p>🧠<span> </span><strong>The Awareness Angle – This Week’s Takeaways</strong></p>
<p><strong>Don’t Run Commands from Random Websites</strong><br>That might sound obvious to security folks, but if TikTok videos and fake error messages are convincing thousands of people to paste code into PowerShell, we’ve still got work to do.</p>
<p><strong>Tell Better Help Desk Stories</strong><br>Attackers are getting in by calling IT. Seriously. The same way someone could walk into McDonald’s wearing a uniform and say “I work here now.” Teach your people to question unexpected requests, even from inside.</p>
<p><strong>People Care About People, Not Protocols</strong><br>£300 million lost. A cloned voice. A password on a post-it note. These are the kinds of details that stick. So make sure your awareness stories are human—not just technical.</p>
<p>🎙️<span> </span><strong>Quick Plugs</strong></p>
<p>We’re up for<span> </span><em>Best Newcomer</em><span> </span>and<span> </span><em>Back to Basics</em><span> </span>at the European Cybersecurity Blogger Awards 2025. Results announced Wednesday 5th June at InfoSec Europe. Ant will be there—say hi if you’re around!</p>
<p>Don’t Miss It!<br>Our<span> </span><em>Awareness Angle Interview</em><span> </span>with<span> </span><strong>Sara Carty</strong><span> </span>from Unboring is out on Thursday.<br>It’s full of honest chat about drama school, storytelling, cyber marketing, and why we need to ditch blue, padlocks, and hoodie stock images.</p>
<p>Listen back—this one’s got loads for awareness pros.</p>
<p>📉<span> </span><strong>Victoria’s Secret Breach</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=149" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=149</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/business-69081682</a></p>
<p>👟<span> </span><strong>Adidas Helpdesk Cyber Attack</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=190" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=190</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/technology-69073785</a></p>
<p>📹<span> </span><strong>TikTok Malware via PowerShell Commands</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=384" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=384</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.infosecurity-magazine.com/news/ai-tiktok-infostealer-malware/</a></p>
<p>🪟<span> </span><strong>Microsoft’s Unified Update System</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=523" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=523</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.windowscentral.com/software-apps/windows-11/microsoft-is-working-on-a-unified-update-platform-to-keep-your-pc-up-to-date</a></p>
<p>🍎<span> </span><strong>Apple OS Rename: iOS 26 and macOS 26</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=723" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=723</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://9to5mac.com/2025/05/28/ios-26-name-change/</a></p>
<p>📄<span> </span><strong>Tajikistan Targeted via Word Macros</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=847" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=847</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/russia-aligned-tag-110-targets-tajikistan-with-dotm-files/</a></p>
<p>☁️<span> </span><strong>Fake Cloudflare Verification Scam</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=996" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=996</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.wordfence.com/blog/2025/05/fake-cloudflare-page-malware/</a></p>
<p>🎥<span> </span><strong>Fake Google Meet PowerShell Attack</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=1080" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=1080</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.cyware.com/news/new-phishing-scam-fake-google-meet-page-tricks-users-into-running-malware-67df4f27</a></p>
<p>🎓<span> </span><strong>Coursera/Meta Phishing Scam</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=1214" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=1214</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://cofense.com/blog/fake-meta-certificates-coursera-phishing-campaign/</a></p>
<p>📱<span> </span><strong>SIM Swap Attack on EE</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=2490" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=2490</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://community.ee.co.uk/t5/Mobile-Services/SIM-Swap-Scam-warning/m-p/1317527</a></p>
<p>💵<span> </span><strong>Gen Z Selling Their Data for $50/month</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=2880" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=2880</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.fastcompany.com/91134124/gen-z-selling-personal-data-verb-app</a></p>
<p>🎙️<span> </span><strong>ScotRail AI Voice Controversy</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=3133" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=3133</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/uk-scotland-69085678</a></p>
<p>📜<span> </span><strong>T&amp;Cs Tool – TOSDR.org</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=3505" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=3505</a><br>Read –<span> </span><a href="https://tosdr.org/" target="_blank" rel="noopener">https://tosdr.org/</a></p>
<p>🔐<span> </span><strong>WhatsApp Adds Passkey Support</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=3660" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=3660</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.whatsapp.com/blog/passkeys-on-android</a></p>
<p>📧<span> </span><strong>Phishing Email Spoofing Luke</strong><br>Watch –<span> </span><a href="https://youtu.be/XgogrdK_NvU?t=3773" target="_blank" rel="noopener">https://youtu.be/XgogrdK_NvU?t=3773</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146282?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146282?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146282%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146282%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146283">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146283/watch_times"
  data-youtube-player-video-id-value="yR2iBWZlDVU"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/wwceeayyyk6duorii851thz2ffqi" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146283">
          May 26, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146283">
            Is Voice Phishing the Next Big Cyber Threat?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p><strong>What’s the cost of a retail ransomware attack? For M&amp;S, it’s £300 million.</strong></p>
<p>This episode is full of high-impact cyber stories—from supplier ransomware and spoofed IT calls to fake Chrome extensions and Discord privacy concerns. We also give credit where it's due with a rare win for the UK government, and dive into why your train, hospital, or ATM might still be running Windows XP.</p>
<p>Let’s break it all down...</p>
<p><strong>🛍️ M&amp;S Cyber Attack: £300m and Counting</strong><br>The attack hit at Easter and recovery is expected to last until July. It came via a third-party supplier, used social engineering (not fancy malware), and took down key services. Just browsing is back online—but you still can’t buy anything.</p>
<p><strong>🥩 Tesco &amp; Sainsbury’s Supplier Held to Ransom</strong><br>Cold storage logistics firm Peter Green Chilled was forced to stop taking new orders after a ransomware attack, leaving meat pallets at risk of spoiling. Food supply chains are becoming a soft target—and it’s starting to show on shelves.</p>
<p><strong>📞 3AM Ransomware: Fake IT Calls, Real Access</strong><br>A new campaign mixes email bombing with phone calls spoofed to look like internal IT support. Victims are persuaded to open Quick Assist and hand over control. It's bold, direct, and sadly, very effective.</p>
<p><strong>💸 HSBC CEO: “Cyber Threats Keep Me Awake”</strong><br>Ian Stuart told MPs that cyber risk is a top concern for banks—and a massive ongoing cost. With financial services under constant attack, the push for stronger authentication (like passkeys and number matching) is gaining momentum.</p>
<p><strong>📍 O2 Bug Leaked Your Location During Calls</strong><br>A flaw in O2’s VoLTE and WiFi calling systems exposed IMSI, IMEI, and cell tower data for over a year. It’s now fixed, but highlights how verbose network protocols can become a serious privacy risk.</p>
<p><strong>🚗 Goodbye QR Codes in Car Parks?</strong><br>The UK government is rolling out a National Parking Platform so drivers can use any parking app in any supported location. It’s a big step toward ending QR confusion and fake codes in car parks.</p>
<p><strong>🧩 Chrome Extensions Gone Rogue</strong><br>More than 100 fake Chrome extensions have been caught stealing credentials, hijacking sessions, and injecting ads. Many posed as known tools or services. Don’t trust what you find in the Chrome Web Store—especially if you got there via an ad.</p>
<p><strong>💬 2 Billion Discord Messages Scraped</strong><br>Brazilian researchers scraped public Discord messages from over 3,000 servers and released the dataset for academic use. It’s anonymised, but the backlash shows how fragile our expectations of online privacy really are.</p>
<p><strong>🧠 The Awareness Angle – This Week’s Takeaways</strong></p>
<p><strong>Trust Is Still the Weak Link</strong><span> </span>– Ransomware groups aren’t breaking in. They’re being let in, by confused or tricked staff who think it’s IT calling.</p>
<p><strong>Legacy Systems Are Hidden Risks</strong><span> </span>– From O2’s metadata leak to lifts running Windows XP, old tech can cause new problems.</p>
<p><strong>People Remember What’s Relatable</strong><span> </span>– A £300m price tag sticks. So does a fake IT call. Tell the real stories, not just the technical ones.</p>
<p><strong>🎙️ Quick Plugs</strong></p>
<p>We’re up for Best Newcomer and Back to Basics at the European Cybersecurity Blogger Awards. Voting closes on 27th May. You can vote now at<span> </span><a href="https://riskycreative.com/" target="_blank" rel="noopener">riskycreative.com</a></p>
<p><strong>Don't Forget!  <br></strong>The Awareness Angle interview with Amy Stokes-Waters is out now.  Go back one episode and listen. It’s full of personality, honesty, and escape rooms. Don’t miss it.</p>
<p></p>
<p><strong>M&amp;S Cyber Attack – £300m Loss and Third-Party Access</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=373" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=373</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/business-69050058</a></p>
<p><strong>Tesco &amp; Sainsbury’s Supplier Ransomware Attack</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=602" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=602</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.theregister.com/2025/05/21/peter_green_cyberattack/</a></p>
<p><strong>3AM Ransomware – Fake IT Calls and Email Bombing</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=779" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=779</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/3am-ransomware-uses-email-bombing-and-fake-it-calls-to-breach-companies/</a></p>
<p><strong>HSBC CEO – “Cyber Threats Keep Me Up at Night”</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=937" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=937</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/business-68939456</a></p>
<p><strong>O2 Mobile Bug – User Location Leaked via Call Metadata</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=1099" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=1099</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/o2-uk-bug-exposed-mobile-users-location-during-voice-calls/</a></p>
<p><strong>UK Government Unifies Parking Apps to Reduce QR Risks</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=1338" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=1338</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bbc.co.uk/news/technology-68993852</a></p>
<p><strong>100+ Fake Chrome Extensions Stealing Data</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=1477" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=1477</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/over-100-malicious-chrome-extensions-used-to-hijack-browsers/</a></p>
<p><strong>2 Billion Discord Messages Scraped and Published</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=1770" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=1770</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.404media.co/researchers-scrape-and-release-2-billion-discord-messages/</a></p>
<p><strong>Still Booting – Ancient Windows Systems in Use Today</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=2514" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=2514</a><br>Read –<span> </span><a href="https://www.bbc.com/future/article/20240513-the-people-still-using-ancient-windows-computers" target="_blank" rel="noopener">https://www.bbc.com/future/article/20240513-the-people-still-using-ancient-windows-computers</a></p>
<p><strong>Vishr.ai – Live Demo of AI Vishing Simulator</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=2830" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=2830</a><br>Try –<span> </span><a href="https://vishr.ai/" target="_blank" rel="noopener">https://vishr.ai</a></p>
<p><strong>Deepfake Investment Scam Featuring Fake Anthony Bolton</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=3135" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=3135</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://www.fnlondon.com/articles/fidelitys-anthony-bolton-targeted-by-instagram-deepfake-scam-20240513</a></p>
<p><strong>Google Veo – AI Video Generation with Audio</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=3424" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=3424</a><br>Read –<span> </span><a target="_blank" rel="noopener">https://blog.google/technology/ai/google-veo-video-generation-ai-io-2025/</a></p>
<p><strong>Notebook LM – Turn Transcripts into Podcast Conversations</strong><br>Watch –<span> </span><a href="https://youtu.be/yR2iBWZlDVU?t=3858" target="_blank" rel="noopener">https://youtu.be/yR2iBWZlDVU?t=3858</a><br>Try –<span> </span><a href="https://notebooklm.google/" target="_blank" rel="noopener">https://notebooklm.google</a></p>
<p></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146283?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146283?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146283%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146283%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146284">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146284/watch_times"
  data-youtube-player-video-id-value="6-kB6Bi3zFw"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/en0ykvzdglc3qhk89fpx9fh6q0ya" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146284">
          May 22, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146284">
            Escape the Boring: Amy Stokes-Waters on Engaging Awareness
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p>When Amy Stokes-Waters realised traditional cyber awareness training wasn’t landing, she didn’t tweak the slides. She built a game. What started as a one-off weekend project became<span> </span><em>The Cyber Escape Room Co</em>, a business turning heads (and turning people into hackers) across the UK and beyond.</p>
<p>In this episode, Amy joins Ant for a brilliant, funny, and straight-talking conversation about disrupting the stale world of compliance-based training and replacing it with something people actually want to do.</p>
<p>Expect brutal honesty, memorable stories, and loads of laughs as we cover:</p>
<ul>
<li>
<strong>Why annual training isn’t working</strong><span> </span>– and why "tick the box" exercises don’t lead to behaviour change<br><br>
</li>
<li>
<strong>The power of play</strong><span> </span>– how escape rooms create moments that stick and get people asking questions<span> </span><em>after</em><span> </span>the session</li>
<li>
<strong>Letting people be the attacker</strong><span> </span>– flipping the script to make learning immersive, emotional, and fun<br><br>
</li>
<li>
<strong>Marketing tactics for awareness</strong><span> </span>– from brand voice to omnichannel campaigns, what security can learn from Coca-Cola<br><br>
</li>
<li>
<strong>Champions, scalability and authenticity</strong><span> </span>– building internal advocates and staying true to your tone, even in financial services<br><br>
</li>
</ul>
<p>You’ll also hear:</p>
<ul>
<li>The escape room horror story Amy learned from</li>
<li>Why she built a fake lingerie website to teach cyber lessons</li>
<li>How a school session at “Hogwarts” led to faculty asking about password managers</li>
<li>What’s next for escape rooms, including expansion to the US and into the world of OT security</li>
</ul>
<p><em>“Training in a box, never tick a box.”</em></p>
<p><br>This one’s packed with practical takeaways for anyone trying to make security engaging.</p>
<p>Connect with Amy on<span> </span><a href="https://www.linkedin.com/in/amystokeswaters/" target="_blank" rel="noopener">LinkedIn<span> </span></a>and check out<span> </span><a href="https://www.cyberescaperoom.co/" target="_blank" rel="noopener">cyberescaperoom.co</a><span> </span>to learn more.</p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146284?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146284?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146284%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146284%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146285">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146285/watch_times"
  data-youtube-player-video-id-value="1gP3YwQD1ew"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/j9jityq1fgg013wvk28xgnh9sq2h" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146285">
          May 19, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146285">
            Did That Freelancer Just Steal $88 Million for North Korea?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p><strong>What’s the cost of a Counter-Strike skin? Apparently $1.2 million.</strong><br>This episode is packed with cyber stories, from fake AI tools and North Korean fraud to deepfake investment scams and dodgy booking messages. We also look at the UK government’s Windows 3.1 problem, Steam's not-so-scary leak, and why your Windows 10 machine just got a few more years of life.</p>
<p>Let’s break it all down...</p>
<p>🎮<span> </span><strong>Steam Panic That Wasn't</strong><br>Reports claimed 89 million Steam accounts were leaked, but Valve confirmed no breach. Just some expired SMS codes with no link to passwords or account info. Nothing to do here—but maybe time to stop relying on text messages for your 2FA.</p>
<p>🪟<span> </span><strong>Microsoft Extends Windows 10 Support</strong><br>Microsoft’s changed its mind. Office apps and Defender on Windows 10 will now be supported until 2028. That gives users more time to upgrade and hopefully means fewer devices heading straight to landfill.</p>
<p>🧥<span> </span><strong>Dior Breach: Names, Numbers, and Purchase Histories</strong><br>No credit cards stolen, but Dior confirmed customer data was exposed in South Korea and China. Just another reminder that even luxury brands are vulnerable. Support your users if they’re affected, especially when it comes to phishing risks.</p>
<p>💣<span> </span><strong>North Korean Freelancers Infiltrate Tech Firms</strong><br>Using fake LinkedIn and Upwork profiles, North Korean operatives posed as US tech workers and raked in $88 million—straight into missile funding. This wasn’t hacking. It was hiring fraud. And it worked.</p>
<p>🧠<span> </span><strong>AI Malware Masquerades as AI Video Tools</strong><br>Fake ads for video generators like "Dream Machine" are tricking people into downloading a new info-stealer called Noodlophile. Spoiler: it steals everything. Don’t download tools from Facebook ads. Ever.</p>
<p>🏛️<span> </span><strong>Government Still Using Windows 3.1</strong><br>A new report found that 28% of public sector IT systems are outdated, with some still running Windows 3.1. That’s software from the 90s, unsupported since 2001. Apparently we’re aiming to fix that... by 2030.</p>
<p>📱<span> </span><strong>Google Pushes Passkeys and Scam Protection</strong><br>Android 16 brings scam detection right to your device and warns users if they open a banking app while on a dodgy call. Google is also testing a feature to convert saved passwords into passkeys automatically. Passwords, your days are numbered.</p>
<p>🧠<span> </span><strong>The Awareness Angle – This Week's Takeaways</strong></p>
<ul>
<li>
<p><strong>Trust Is the Attack Vector</strong><span> </span>– From North Korea’s job scams to fake Booking.com chats, social engineering is the real risk. Tech is just the delivery method.</p>
</li>
<li>
<p><strong>Old Systems, Big Risks</strong><span> </span>– If your infrastructure is still running legacy systems, it’s not just inefficient. It’s vulnerable.</p>
</li>
<li>
<p><strong>Training That Doesn’t Stick</strong><span> </span>– Abnormal Security’s latest report says SAT is effort-heavy and impact-light. Maybe it’s time to rethink how we engage people.</p>
</li>
</ul>
<p>🎙️<span> </span><strong>Quick Plugs</strong></p>
<ul>
<li>
<p>We’ve been nominated for the European Cybersecurity Blogger Awards! Voting’s open until 27th May. Vote for us at<span> </span><a href="https://riskycreative.com/" target="_blank" rel="noopener">riskycreative.com</a></p>
</li>
<li>
<p>Our interview with Amy Stokes-Waters from The Cyber Escape Room Co. drops this Thursday. It’s full of fun, reality checks, and a bit of colourful language. Headphones advised!</p>
</li>
</ul>
<p></p>
<p><strong>Microsoft's Windows 10 U-Turn – Support extended to 2028</strong><br>Watch the discussion -<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=290" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=290<br>Read - </a><a href="https://www.extremetech.com/computing/microsoft-extends-windows-10-support-for-office-apps-until-2028" target="_blank" rel="noopener">https://www.extremetech.com/computing/microsoft-extends-windows-10-support-for-office-apps-until-2028</a><strong></strong><strong></strong><strong></strong></p>
<p><strong>Google Starts Auto-Upgrading Your Passwords to Passkeys<br></strong>Watch - <a href="https://youtu.be/1gP3YwQD1ew?t=1728" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=1728</a><br>Read -<span> </span><a href="https://www.androidpolice.com/google-may-auto-convert-passwords-to-passkeys-on-android/" target="_blank" rel="noopener">https://www.androidpolice.com/google-may-auto-convert-passwords-to-passkeys-on-android/</a></p>
<p><strong>North Korean Hackers Infiltrate US Tech Companies</strong><br>Watch the discussion -<span class="ml-rte-link-wrapper"><a href="https://youtu.be/1gP3YwQD1ew?t=1100" target="_blank" rel="noopener"><span> </span>https://youtu.be/1gP3YwQD1ew?t=1100</a></span><br>Read more -<span> </span><a href="https://hackread.com/north-korean-hackers-stole-88m-posing-us-tech-workers/" target="_blank" rel="noopener">https://hackread.com/north-korean-hackers-stole-88m-posing-us-tech-workers/</a><strong></strong></p>
<p><strong>Steam “Leak” of Expired SMS Codes</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=460" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=460</a><br>Read –<span> </span><a href="https://www.bleepingcomputer.com/news/security/steam-user-data-leak-just-expired-verification-codes/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/steam-user-data-leak-just-expired-verification-codes/</a></p>
<p><strong>Dior Cyberattack – Customer Data Exposed</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=646" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=646</a><br>Read –<span> </span><a href="https://www.bleepingcomputer.com/news/security/dior-discloses-data-breach-customer-purchase-data-exposed/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/dior-discloses-data-breach-customer-purchase-data-exposed/</a></p>
<p><strong>Co-op and M&amp;S Cyber Incidents</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=729" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=729</a><br>Read –<span> </span><a href="https://www.bbc.co.uk/news/articles/cwy382w9eglo" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/cwy382w9eglo</a></p>
<p>Fake AI Tools Spreading Noodlophile Malware<br>Watch -<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=1292" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=1292</a><br>Read -<span> </span><span class="ml-rte-link-wrapper"><a href="https://www.bleepingcomputer.com/news/security/fake-ai-tools-spread-noodlophile-malware-stealing-data/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/fake-ai-tools-spread-noodlophile-malware-stealing-data/</a></span></p>
<p><strong>UK Government Still Running Windows 3.1</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=1536" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=1536</a><br>Read -<span> </span><a href="https://www.theregister.com/2025/05/10/uk_cybersecurity_legacy_systems_report/" target="_blank" rel="noopener">https://www.theregister.com/2025/05/10/uk_cybersecurity_legacy_systems_report/</a></p>
<p><strong>Android 16 Adds Scam Detection and USB Lockdown<br></strong>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=1859" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=1859</a><br>Read –<span> </span><a href="https://www.cyberscoop.com/google-android-16-security-anti-scam/" target="_blank" rel="noopener">https://www.cyberscoop.com/google-android-16-security-anti-scam/</a></p>
<p><strong>Booking.com Chat Scam Targeting Travellers</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=3090" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=3090</a><br>Read –<span> </span><a href="https://vm.tiktok.com/ZNd6sahwo/" target="_blank" rel="noopener">https://vm.tiktok.com/ZNd6sahwo/</a></p>
<p><strong>GoDaddy’s Fake Bonus Phishing Test (2020 Throwback)</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=3490&amp;feature=shared" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=3490</a><br>Read –<span> </span><a href="https://www.cbsnews.com/news/godaddy-apologizes-insensitive-phishing-email-offering-bonuses/" target="_blank" rel="noopener">https://www.cbsnews.com/news/godaddy-apologizes-insensitive-phishing-email-offering-bonuses/</a></p>
<p><strong>Phishing Passkeys Using Device Code Flow</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=1957" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=1957</a><br>Read –<span> </span><a href="https://denniskniep.github.io/posts/09-device-code-phishing/" target="_blank" rel="noopener">https://denniskniep.github.io/posts/09-device-code-phishing/</a></p>
<p><strong>Abnormal Security Awareness Report</strong><br>Watch –<span> </span><a href="https://youtu.be/1gP3YwQD1ew?t=2055" target="_blank" rel="noopener">https://youtu.be/1gP3YwQD1ew?t=2055</a><br>Read –<span> </span><a href="https://abnormal.ai/resources/state-of-security-awareness-training" target="_blank" rel="noopener">https://abnormal.ai/resources/state-of-security-awareness-training</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146285?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146285?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146285%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146285%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146286">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146286/watch_times"
  data-youtube-player-video-id-value="1EEv-bnKHs4"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/ps6vtbprck6str89rdvkjpk4wks4" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146286">
          May 12, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146286">
            Is That Voice Note from Your Child, or an AI Voice Clone?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p>This week’s episode is packed. We’re kicking off with the ongoing mess in UK retail. Co-op is still battling a cyber incident that’s disrupted deliveries, while M&amp;S and Harrods stay eerily quiet. It’s a sobering reminder that even the biggest names can be caught off guard, and it’s a golden opportunity for awareness teams to highlight why secure password resets and helpdesk verification really matter. If you ever needed a case study to get leadership attention, this is it.</p>
<p>We also explore a new twist on an old scam. The “Hi Mum” WhatsApp con is back, but this time it comes with cloned AI voice notes. Imagine hearing your child’s voice asking for help, only it’s not really them. We talk about how these scams are evolving, how to spot them, and what conversations we should be having with our families and teams to stay safe.</p>
<p>From there, we dive into Microsoft’s new OneDrive feature that could quietly lead to serious data leaks if not configured properly. We also break down the LockBit ransomware gang breach, which exposed affiliate credentials, victim chats, and some embarrassing passwords. It’s a strange comfort to know that even cybercriminals struggle with good security practices.</p>
<p>Finally, it’s all about passkeys. Microsoft, the UK Government, and the FIDO Alliance are leading the charge toward a passwordless future. But are people actually ready for this shift? We look at what awareness teams need to do now, and how to explain this to non-technical users in a way that sticks. All that, plus some odd AI moments and a proud moment for us with three nominations at the European Cybersecurity Blogger Awards.</p>
<p></p>
<p><strong>Co-op cyber incident update</strong><br><a href="https://www.telegraph.co.uk/business/2025/05/08/co-op-halts-delivery-non-essential-goods-cyber-attack/" target="_blank" rel="noopener">https://www.telegraph.co.uk/business/2025/05/08/co-op-halts-delivery-non-essential-goods-cyber-attack/</a></p>
<p><strong>WhatsApp “Hi Mum” scam with AI voice cloning</strong><br><a href="https://www.theguardian.com/money/2025/may/04/hi-mum-whatsapp-text-scam-parents-friends-bank" target="_blank" rel="noopener">https://www.theguardian.com/money/2025/may/04/hi-mum-whatsapp-text-scam-parents-friends-bank</a></p>
<p><strong>OneDrive’s risky new sync feature</strong><br><a href="https://hansbrender.com/2025/05/02/onedrive-microsofts-new-rollout-may-be-a-gift-wrapped-data-leak/" target="_blank" rel="noopener">https://hansbrender.com/2025/05/02/onedrive-microsofts-new-rollout-may-be-a-gift-wrapped-data-leak/</a></p>
<p><strong>LockBit ransomware gang breached</strong><br><a href="https://www.bleepingcomputer.com/news/security/lockbit-ransomware-gang-hacked-victim-negotiations-exposed/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/lockbit-ransomware-gang-hacked-victim-negotiations-exposed/</a></p>
<p><strong>Microsoft pushes passkeys for World Passkey Day</strong><br><a href="https://www.microsoft.com/en-us/security/blog/2025/05/01/pushing-passkeys-forward-microsofts-latest-updates-for-simpler-safer-sign-ins/" target="_blank" rel="noopener">https://www.microsoft.com/en-us/security/blog/2025/05/01/pushing-passkeys-forward-microsofts-latest-updates-for-simpler-safer-sign-ins/</a></p>
<p><strong>UK Government joins passkey movement</strong><br><a href="https://www.ncsc.gov.uk/news/government-adopt-passkey-technology-digital-services" target="_blank" rel="noopener">https://www.ncsc.gov.uk/news/government-adopt-passkey-technology-digital-services</a></p>
<p><strong>Cyber chief warns firms not to pay hackers</strong><br><a href="https://www.itv.com/news/2025-05-07/dont-pay-hackers-cyber-security-chiefs-warning-after-major-retail-attacks" target="_blank" rel="noopener">https://www.itv.com/news/2025-05-07/dont-pay-hackers-cyber-security-chiefs-warning-after-major-retail-attacks</a></p>
<p><strong>Angry NHS staff call leaked to YouTube</strong><br><a href="https://www.bbc.co.uk/news/articles/c2dedp9nkwro.amp" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/c2dedp9nkwro.amp</a></p>
<p><strong>CoGUI phishing platform sends 580 million scam emails</strong><br><a href="https://www.bleepingcomputer.com/news/security/cogui-phishing-platform-sent-580-million-emails-to-steal-credentials/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/cogui-phishing-platform-sent-580-million-emails-to-steal-credentials/</a></p>
<p><strong>AI-generated testimony accepted in court</strong><br><a href="https://www.404media.co/email/0cb70eb4-c805-4e4e-9428-7ae90657205c/" target="_blank" rel="noopener">https://www.404media.co/email/0cb70eb4-c805-4e4e-9428-7ae90657205c/</a></p>
<p><strong>Clipboard warning for Samsung phone users</strong><br><a href="https://www.linkedin.com/posts/craigpickles_implement-auto-delete-clipboard-history-to-activity-7324758602190102528-Nuxs" target="_blank" rel="noopener">https://www.linkedin.com/posts/craigpickles_implement-auto-delete-clipboard-history-to-activity-7324758602190102528-Nuxs</a></p>
<p><strong>Discussion about Royal Mail ryml.me link</strong><br><a href="https://www.reddit.com/r/mildlyinfuriating/s/Zv5ZhvLeds" target="_blank" rel="noopener">https://www.reddit.com/r/mildlyinfuriating/s/Zv5ZhvLeds</a><br><br><strong>Clipboard warning from Craig Pickles</strong><br><a href="https://www.linkedin.com/posts/craigpickles_implement-auto-delete-clipboard-history-to-activity-7324758602190102528-Nuxs" target="_blank" rel="noopener">https://www.linkedin.com/posts/craigpickles_implement-auto-delete-clipboard-history-to-activity-7324758602190102528-Nuxs</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146286?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146286?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146286%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146286%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146288">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146288/watch_times"
  data-youtube-player-video-id-value="pizzIkUWjuU"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/bax4uughhn6rjxayz86yms92loc8" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146288">
          May 8, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146288">
            Three Deep Breaths: Jasmine Eskenzi on Cyber Mindfulness
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p><strong>This one’s all about calm, clarity, and why it matters in cybersecurity.</strong></p>
<p><strong></strong><br>In this episode of<span> </span><em>The Awareness Angle Interviews</em>, I’m joined by Jasmine Eskenzi, co-founder of<span> </span><em>The Zensory,</em> a platform that uses mindfulness techniques to help people stay calm, focused, and secure online.</p>
<p>We dig into what happens in the brain when we’re under stress, and why that’s such a big deal for security teams. Whether it's a phishing email designed to create panic or a distracted moment between meetings, those are exactly the times when mistakes happen. Jasmine shares how tools like breathing techniques, binaural beats, and even fingerprint grounding can help people recognise stress and reset — fast.</p>
<p>One stat that really stood out:<span> </span><strong>47% of social engineering attacks happen when people are stressed, overwhelmed, or distracted.</strong><strong></strong> That alone makes this a conversation every awareness professional should hear.</p>
<p>We also talk about how stress affects the brain's ability to make clear decisions, the importance of culture and leadership in setting the tone, and why awareness teams need to be thinking about mindset as much as they think about messages.</p>
<p>And yes, there's a mini guided breathing session at the end. No chanting. Just practical stuff that can help you (and your colleagues) stay a little more present, a little more resilient, and a lot more aware.</p>
<p><strong>In this episode:</strong></p>
<ul>
<li>
<p>Why calm brains are more secure brains</p>
</li>
<li>
<p>The science behind amygdala hijacks and poor decision making</p>
</li>
<li>
<p>What phishing has to do with stress and distraction</p>
</li>
<li>
<p>Subtle, simple mindfulness tools that anyone can use</p>
</li>
<li>
<p>How The Zensory works in a workplace setting</p>
</li>
<li>
<p>What awareness teams can learn from wellbeing and neurodiversity</p>
</li>
</ul>
<p>If you’re working in awareness, culture, training, or just juggling too much and feeling frazzled — this one’s for you.</p>
<p>🧠 Visit<span> </span><a href="https://www.thezensory.com/" target="_blank" rel="noopener">thezensory.com</a><span> </span>to learn more about the platform<br>📱 Download the app on iOS or Android<br>👤 Connect with Jasmine on<span> </span><a href="https://www.linkedin.com/" target="_blank" rel="noopener">LinkedIn</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146288?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146288?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146288%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146288%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146289">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146289/watch_times"
  data-youtube-player-video-id-value="edWqjAOeU9s"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/id0qskhbbb6yvdh9owfzxhoxlne1" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146289">
          May 5, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146289">
            Is UK Retail Under A Targeted Cyber Attack?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p>This week, UK retail has been at the centre of a cyber storm. Co-op, Marks &amp; Spencer, and Harrods have all experienced significant cyber incidents, forcing system shutdowns, service disruptions, and some serious crisis response. From cameras-on policies to staff working on personal devices, the human side of these attacks is impossible to ignore. As reports of ransomware, insider stress, and third-party questions surface, we explore what this all means for awareness, planning, and the people on the ground trying to keep the lights on.</p>
<p>Alongside the retail chaos, we’re also talking password spraying — a technique that’s back in force, targeting Microsoft 365 accounts and exploiting gaps in multi-factor authentication. And if that wasn’t enough, over 1.7 billion stolen passwords have found their way to dark web forums. Yep, billion with a B. We unpack how these attacks work, why they’re still so effective, and what organisations can do to protect their people.</p>
<p>And finally, a story from the train: someone left their laptop open and unlocked for 11 minutes while they wandered off. No screen lock, no awareness, just a glowing screen full of potential risk. It’s a small thing, but it says a lot about how habits — or the lack of them — shape our security exposure every day.</p>
<p>In this episode of<span> </span><em>The Awareness Angle</em>, we’re not here to panic or point fingers. We’re here to talk about what happened, why it matters, and how we can all respond better. Give it a listen and stay in the loop.</p>
<p><strong>Co-op cyber attack – BBC News</strong><br><a href="https://www.bbc.co.uk/news/articles/cg72k851dd8o" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/cg72k851dd8o</a></p>
<p><strong>M&amp;S cyber attack – The Guardian</strong><br><a href="https://www.theguardian.com/business/2025/may/01/m-and-s-unable-to-take-on-new-workers-as-disruptions-continue-after-cyber-attack" target="_blank" rel="noopener">https://www.theguardian.com/business/2025/may/01/m-and-s-unable-to-take-on-new-workers-as-disruptions-continue-after-cyber-attack</a></p>
<p><strong>M&amp;S insider reveals staff working conditions – Sky News</strong><br><a href="https://news.sky.com/story/mands-had-no-plan-for-cyber-attacks-insider-reveals-with-staff-left-sleeping-in-the-office-amid-paranoia-and-chaos-13361359" target="_blank" rel="noopener">https://news.sky.com/story/mands-had-no-plan-for-cyber-attacks-insider-reveals-with-staff-left-sleeping-in-the-office-amid-paranoia-and-chaos-13361359</a></p>
<p><strong>Harrods targeted in cyber attack – LinkedIn article</strong><br><a href="https://www.linkedin.com/pulse/harrods-becomes-latest-uk-retailer-targeted-ongoing-1r0lc" target="_blank" rel="noopener">https://www.linkedin.com/pulse/harrods-becomes-latest-uk-retailer-targeted-ongoing-1r0lc</a></p>
<p><strong>Password spraying attack targets Microsoft 365 – Forbes</strong><br><a href="https://www.forbes.com/sites/daveywinder/2025/04/28/microsoft-confirms-password-spraying-attack---what-you-need-to-know/" target="_blank" rel="noopener">https://www.forbes.com/sites/daveywinder/2025/04/28/microsoft-confirms-password-spraying-attack---what-you-need-to-know/</a></p>
<p><strong>1.7 billion stolen passwords on the dark web – Forbes</strong><br><a href="https://www.forbes.com/sites/daveywinder/2025/04/29/malware-steals-17-billion-passwords---publishes-them-to-dark-web/" target="_blank" rel="noopener">https://www.forbes.com/sites/daveywinder/2025/04/29/malware-steals-17-billion-passwords---publishes-them-to-dark-web/</a></p>
<p><strong>WhatsApp adds advanced chat privacy – The Hacker News</strong><br><a href="https://thehackernews.com/2025/04/whatsapp-adds-advanced-chat-privacy-to.html" target="_blank" rel="noopener">https://thehackernews.com/2025/04/whatsapp-adds-advanced-chat-privacy-to.html</a></p>
<p><strong>Apple sends spyware alerts to targeted users – Mashable</strong><br><a href="https://mashable.com/article/apple-targeted-mercenary-spyware-attack-april-2025-notifications" target="_blank" rel="noopener">https://mashable.com/article/apple-targeted-mercenary-spyware-attack-april-2025-notifications</a></p>
<p><strong>FBI offers reward for Salt Typhoon tips – Cybersecurity Dive</strong><br><a href="https://www.cybersecuritydive.com/news/fbi-china-salt-typhoon-hack-telecom-tips/746490/" target="_blank" rel="noopener">https://www.cybersecuritydive.com/news/fbi-china-salt-typhoon-hack-telecom-tips/746490/</a></p>
<p><strong>PlayStation Store scam game – PlayStation Lifestyle</strong><br><a href="https://www.playstationlifestyle.net/2025/04/28/ps-store-scam-schedule-1-name-change/amp/" target="_blank" rel="noopener">https://www.playstationlifestyle.net/2025/04/28/ps-store-scam-schedule-1-name-change/amp/</a></p>
<p><strong>Cybersecurity CEO charged over hospital malware – The Register</strong><br><a href="https://www.theregister.com/2025/04/28/infosec_ceo_accused_of_installing_malware/" target="_blank" rel="noopener">https://www.theregister.com/2025/04/28/infosec_ceo_accused_of_installing_malware/</a></p>
<p><strong>Anti-piracy campaign used pirated font – Sky News</strong><br><a href="https://news.sky.com/story/you-wouldnt-steal-a-font-famous-anti-piracy-campaign-may-have-used-pirated-typeface-13357462" target="_blank" rel="noopener">https://news.sky.com/story/you-wouldnt-steal-a-font-famous-anti-piracy-campaign-may-have-used-pirated-typeface-13357462</a></p>
<p><strong>Iberian power outage and cyber speculation – Reuters</strong><br><a href="https://www.reuters.com/world/europe/what-could-be-behind-iberian-power-outage-2025-04-29" target="_blank" rel="noopener">https://www.reuters.com/world/europe/what-could-be-behind-iberian-power-outage-2025-04-29</a></p>
<p><strong>Kevin Beaumont on Microsoft password spraying – LinkedIn</strong><br><a href="https://www.linkedin.com/posts/kevin-beaumont-security_microsoft-announced-in-a-friday-night-blogpost-activity-7321615691210543108-1a6T" target="_blank" rel="noopener">https://www.linkedin.com/posts/kevin-beaumont-security_microsoft-announced-in-a-friday-night-blogpost-activity-7321615691210543108-1a6T</a></p>
<p><strong>Joe Head on train laptop screen privacy – LinkedIn</strong><br><a href="https://www.linkedin.com/posts/joehead1_taking-pictures-of-people-with-their-laptops-activity-7322599457643024384-C4H0" target="_blank" rel="noopener">https://www.linkedin.com/posts/joehead1_taking-pictures-of-people-with-their-laptops-activity-7322599457643024384-C4H0</a></p>
<p></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146289?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146289?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146289%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146289%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146290">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146290/watch_times"
  data-youtube-player-video-id-value="tdKnf7avRWQ"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/zi7icc12abcb9nsxysjn5xd6yudh" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146290">
          Apr 28, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146290">
            Can Hackers Hijack Your Device With A Zoom Call?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p>This episode is packed with real-world cybersecurity stories, retail disruptions, clever scams, and some big questions about resilience and trust.</p>
<p>We start with the Marks &amp; Spencer cyber incident, which caused major disruption to contactless payments and Click &amp; Collect services. While some praised their communication, we discussed how real questions about the root cause and customer data remain unanswered. With reports that remote workers were also locked out, it highlights the human pressure that sits behind every cyber incident. Our thoughts are genuinely with the teams at M&amp;S working through what must be an incredibly challenging time.</p>
<p>We also look at a clever abuse of Zoom’s remote control feature, where attackers trick victims into handing over screen control during meetings, leading to stolen crypto funds. It is a perfect example of how trust in technology can be turned against users.</p>
<p>Stephen Bartlett’s experience with AI deepfakes is another reminder that scams are evolving fast. As deepfake technology becomes more accessible, verifying requests and setting up trusted backchannels is becoming critical.</p>
<p>Elsewhere, we talk about mystery USB sticks left on cars and handed out in public, and why plugging unknown devices into trusted systems can have real-world consequences. Plus, we highlight a warning about fake recruiter scams on LinkedIn, where attackers target job seekers to harvest personal data.</p>
<p>This week’s stories all point to the same reality: cybersecurity is no longer just about systems, it is about people. How we communicate, how we build trust, and how we react in the moment matters more than ever.</p>
<p><span style="text-decoration:underline;"><strong>Links</strong></span></p>
<p><strong>M&amp;S Cyber Incident Update – Official Statement</strong><br><a href="https://corporate.marksandspencer.com/media/press-releases/cyber-incident-further-update" target="_blank" rel="noopener">https://corporate.marksandspencer.com/media/press-releases/cyber-incident-further-update</a></p>
<p><strong>M&amp;S Incident Coverage – The Register</strong><br><a href="https://www.theregister.com/AMP/2025/04/24/marks_spencer_outage_ongoing/" target="_blank" rel="noopener">https://www.theregister.com/AMP/2025/04/24/marks_spencer_outage_ongoing/</a></p>
<p><strong>Risky Business Bulletin – Zoom Remote Control Abuse</strong><br><a href="https://risky.biz/risky-bulletin-zoom-has-a-remote-control-feature-and-crypto-thieves-are-abusing-it/" target="_blank" rel="noopener">https://risky.biz/risky-bulletin-zoom-has-a-remote-control-feature-and-crypto-thieves-are-abusing-it/</a></p>
<p><strong>Google OAuth Loophole – Gbhackers Coverage (Ad Warning)</strong><br><a href="https://gbhackers.com/cybercriminals-exploit-google-oauth/" target="_blank" rel="noopener">https://gbhackers.com/cybercriminals-exploit-google-oauth/</a></p>
<p><strong>Sexploitation Up 43% – Good Morning Britain Clip</strong><br><a href="https://x.com/gmb/status/1914566485051056366?s=46" target="_blank" rel="noopener">https://x.com/gmb/status/1914566485051056366?s=46</a></p>
<p><strong>Windows 11 Recall – Ars Technica Deep Dive</strong><br><a href="https://arstechnica.com/gadgets/2025/04/in-depth-with-windows-11-recall-and-what-microsoft-has-and-hasnt-fixed/?utm_source=tldrinfosec" target="_blank" rel="noopener">https://arstechnica.com/gadgets/2025/04/in-depth-with-windows-11-recall-and-what-microsoft-has-and-hasnt-fixed/?utm_source=tldrinfosec</a></p>
<p><strong>OpenAI Wants to Buy Chrome – Ars Technica Report</strong><br><a href="https://arstechnica.com/ai/2025/04/chatgpt-head-tells-court-openai-is-interested-in-buying-chrome/?utm_source=tldrmarketing" target="_blank" rel="noopener">https://arstechnica.com/ai/2025/04/chatgpt-head-tells-court-openai-is-interested-in-buying-chrome/?utm_source=tldrmarketing</a></p>
<p><strong>Interlock Ransomware Claims DaVita Attack – Bleeping Computer</strong><br><a href="https://www.bleepingcomputer.com/news/security/interlock-ransomware-claims-davita-attack-leaks-stolen-data/" target="_blank" rel="noopener">https://www.bleepingcomputer.com/news/security/interlock-ransomware-claims-davita-attack-leaks-stolen-data/</a></p>
<p><strong>Cookie Bite Attack on Microsoft 365 – Dark Reading</strong><br><a href="https://www.darkreading.com/remote-workforce/cookie-bite-entra-id-attack-exposes-microsoft-365" target="_blank" rel="noopener">https://www.darkreading.com/remote-workforce/cookie-bite-entra-id-attack-exposes-microsoft-365</a></p>
<p><strong>Stephen Bartlett AI Deepfake Warning – LinkedIn Post</strong><br><a href="https://www.linkedin.com/posts/stevenbartlett-123_ai-scams-activity-7321170901146783744-mH2A?utm_source=share&amp;utm_medium=member_ios&amp;rcm=ACoAAAUeqPUBaQ3cKS5lS2Jhty_E8O_cJBZ5gik" target="_blank" rel="noopener">https://www.linkedin.com/posts/stevenbartlett-123_ai-scams-activity-7321170901146783744-mH2A?utm_source=share&amp;utm_medium=member_ios&amp;rcm=ACoAAAUeqPUBaQ3cKS5lS2Jhty_E8O_cJBZ5gik</a></p>
<p><strong>FOG Gang Ransomware – PCM UK Coverage</strong><br><a href="https://uk.pcmag.com/security/157683/ransomware-gang-takes-page-from-elons-what-did-you-do-this-week-doge-emails" target="_blank" rel="noopener">https://uk.pcmag.com/security/157683/ransomware-gang-takes-page-from-elons-what-did-you-do-this-week-doge-emails</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146290?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146290?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146290%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146290%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146291">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146291/watch_times"
  data-youtube-player-video-id-value="s-iR485xnwA"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/tfl7751sc7on3kixs38yczgmmtbm" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146291">
          Apr 24, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146291">
            We Don’t Phish: Erin Gallagher on Doing Awareness Differently
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p><strong>"We don't phish our employees."</strong></p>
<p><strong></strong><br>That’s not something you hear every day. But it’s exactly what Erin Gallagher learned—seven interviews into joining Fastly. As someone who used to lead phishing programmes, it was a bit of a shock.</p>
<p>In this episode, Erin joins Ant to chat about what security awareness looks like when you ditch phishing simulations. Turns out, it’s less about testing people and more about building relationships. At Fastly, they prioritise engagement, keep training short and relevant, and use Slack (not email) as their main communication channel. No stiff corporate vibes here.</p>
<p>We also talk about how phishing can be reframed as just one tool in the awareness toolkit, especially when used thoughtfully and with the right audience. Erin shares some brilliant insights on simplifying training, measuring success without click rates, and why she secretly dreams of being a physical pen tester (spoiler: she’d be great at it).</p>
<p>If you’ve ever felt stuck in the cycle of monthly phishing emails or worried that your awareness programme is more about numbers than people, this episode is a refreshing listen.</p>
<p>👤 Connect with Erin on<span> </span><a href="https://www.linkedin.com/" target="_blank" rel="noopener">LinkedIn</a></p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146291?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146291?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146291%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146291%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame><turbo-frame class="main-list__list-item" data-testid="Post" id="post_146292">
    <div class="post" access="public">
  <div class="post__inner">
      <div class="post__media">
        <div class="media-player media-player--video">
            <div
  class="embed-player"
  data-controller="youtube-player"
  data-youtube-player-watch-times-path-value="https://riskycreative.com/supporters/api/v1/media_catalog/posts/video_embeds/146292/watch_times"
  data-youtube-player-video-id-value="2KR5WfXPGgU"
>
  <div class="media-player__cover" data-youtube-player-target="element">
    <img src="https://storage.googleapis.com/popshopprod-membership-assets-single-b5px4371/mh9mlq7c7qg5l8m80eeu7xizxj5t" class="media-player__cover-image media-player__cover-image--cover" loading="lazy" />
    <button type="button" class="media-player__cover-button" data-action="click->youtube-player#createPlayer" data-testid="YoutubePlayer.PlayButton">
      <svg xmlns="http://www.w3.org/2000/svg" width="32" height="32" viewBox="0 0 32 32" fill="none" role="img"><path d="M28.422 14.211c1.474.737 1.474 2.84 0 3.578L2.894 30.553A2 2 0 0 1 0 28.763V3.237a2 2 0 0 1 2.894-1.789l25.528 12.764Z" fill="currentColor"></path></svg>

    </button>
  </div>
</div>

        </div>
      </div>

    <div class="post__main">
  <div class="post__content">
        <a data-turbo-frame="_top" class="post__meta" href="/supporters/video_embeds/146292">
          Apr 20, 2025
</a>

      <div>
          <a data-turbo-frame="_top" class="post__title" href="/supporters/video_embeds/146292">
            Is Microsoft’s Copilot About to Leak Everything?
</a>      </div>

      

        <div
          class="post__body"
            data-controller="trim"
            data-trim-class-value="rich-text--trimmed-short"
            data-trim-height-value="220"
        >
          <div class="rich-text" data-trim-target="content">
            <body>
<p class="ember-view reader-text-block__paragraph"><strong>This week on The Awareness Angle...</strong>it’s one of those weeks where the stories basically write themselves. MITRE nearly lost its CVE funding, Microsoft brought back its creepy screenshot feature, and scammers are sticking fake QR codes all over the place. We’ve also got a letter from the DVLA that looked<span class="white-space-pre"> </span><em>so</em><span class="white-space-pre"> </span>dodgy we thought it had to be a scam – but it wasn’t. And someone got into a bank with nothing but a hi-vis and a bit of confidence.</p>
<p class="ember-view reader-text-block__paragraph">As always, we’re not just sharing stories, we’re giving you<span class="white-space-pre"> </span><em>The Awareness Angle</em><span class="white-space-pre"> </span>on each one. Three bullet points to help you explain what it means, why it matters, and how to talk about it with your people.</p>
<p class="ember-view reader-text-block__paragraph"></p>
<h3 class="ember-view reader-text-block__heading-3">CVE Crisis Averted - But Only Just!</h3>
<p class="ember-view reader-text-block__paragraph">Watch the discussion -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://youtu.be/2KR5WfXPGgU?t=312" target="_blank" rel="noopener"><strong>https://youtu.be/2KR5WfXPGgU?t=312</strong></a></p>
<p class="ember-view reader-text-block__paragraph">For a moment last week, it looked like MITRE’s CVE programme – the backbone of how we track and prioritise vulnerabilities – was about to vanish. Funding hadn’t been renewed, and the panic spread fast across the cybersecurity world. For those not deep in the weeds, CVEs (Common Vulnerabilities and Exposures) are those numbered IDs you see when there’s a new flaw – like CVE-2024-12345. They’re what security tools use to flag risk, and what engineers use to decide what gets fixed and when.</p>
<p class="ember-view reader-text-block__paragraph">It turns out the whole situation was a bit of a pressure play. MITRE made some noise, and CISA stepped in with 11 months of emergency funding to keep things running. But it raised bigger questions: Why was this<span class="white-space-pre"> </span><em>so</em><span class="white-space-pre"> </span>close to collapsing? And what would we do if it actually did?</p>
<p class="ember-view reader-text-block__paragraph">Read more (Soft Paywall) -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.bleepingcomputer.com/news/security/cisa-extends-funding-to-ensure-no-lapse-in-critical-cve-services/" target="_blank" rel="noopener"><strong>https://www.bleepingcomputer.com/news/security/cisa-extends-funding-to-ensure-no-lapse-in-critical-cve-services/</strong></a></p>
<p class="ember-view reader-text-block__paragraph"><strong>∠The Awareness Angle</strong></p>
<p class="ember-view reader-text-block__paragraph"></p>
<ul>
<li>
<strong>Prioritisation Power</strong><span class="white-space-pre"> </span>– CVEs help teams figure out which vulnerabilities are urgent. Without them, it's harder to make informed decisions.</li>
<li>
<strong>Tool Dependency</strong><span class="white-space-pre"> </span>– Loads of security tools rely on this data behind the scenes. If CVEs disappear, detection and patching workflows take a hit.</li>
<li>
<strong>Explain the Why</strong><span class="white-space-pre"> </span>– Most people outside of security won’t know what a CVE is, so this is a good chance to explain why “a 9.8 score” might make you nervous.</li>
</ul>
<p></p>
<p class="ember-view reader-text-block__paragraph"></p>
<h3 class="ember-view reader-text-block__heading-3">Microsoft Recall: Back, and Still a Privacy Nightmare</h3>
<p class="ember-view reader-text-block__paragraph">Watch the discussion -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://youtu.be/2KR5WfXPGgU?t=721" target="_blank" rel="noopener"><strong>https://youtu.be/2KR5WfXPGgU?t=721</strong></a></p>
<p class="ember-view reader-text-block__paragraph">Microsoft’s Recall feature is back after a short pause, but it hasn’t changed much. It screenshots your desktop every few seconds, stores the data locally, and uses AI to help you search your activity history. Sounds helpful? Maybe. But it also creates a huge pile of sensitive data just waiting to be exploited.</p>
<p class="ember-view reader-text-block__paragraph">Critics are calling it a “goldmine for attackers.” And while Microsoft says it’s opt-in, local, and secure, researchers have already shown how easily it could be abused.</p>
<p class="ember-view reader-text-block__paragraph">We don't see many reasons why users would want to opt-in but we do wonder if this will not be optional at some point in the future.</p>
<p class="ember-view reader-text-block__paragraph">Read more -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.bbc.co.uk/news/articles/cj3xjrj7v78o" target="_blank" rel="noopener"><strong>https://www.bbc.co.uk/news/articles/cj3xjrj7v78o</strong></a></p>
<p class="ember-view reader-text-block__paragraph">Kevin Beaumont's Breakdown -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e" target="_blank" rel="noopener"><strong>https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e</strong></a></p>
<p class="ember-view reader-text-block__paragraph"><strong>∠The Awareness Angle</strong></p>
<p class="ember-view reader-text-block__paragraph"></p>
<ul>
<li>
<strong>Local ≠ Safe</strong><span class="white-space-pre"> </span>– Just because data is stored locally doesn’t mean it’s secure. If malware gets access, everything’s on display.</li>
<li>
<strong>Privacy Pitfall</strong><span class="white-space-pre"> </span>– It could capture sensitive info from messages, passwords, even disappearing chats, without others' consent.</li>
<li>
<strong>Awareness Opportunity</strong><span class="white-space-pre"> </span>– This is a great story to help explain<span class="white-space-pre"> </span><em>why</em><span class="white-space-pre"> </span>we care about endpoint security, insider threats, and device access controls.</li>
</ul>
<p></p>
<p class="ember-view reader-text-block__paragraph"></p>
<h3 class="ember-view reader-text-block__heading-3">Would You Trust This Letter? The DVLA Dilemma</h3>
<p class="ember-view reader-text-block__paragraph">Watch the discussion -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://youtu.be/2KR5WfXPGgU?t=2892" target="_blank" rel="noopener"><strong>https://youtu.be/2KR5WfXPGgU?t=2892</strong></a></p>
<p class="ember-view reader-text-block__paragraph"><span><img class="ivm-view-attr__img--centered  reader-image-block__img evi-image lazy-image ember-view" alt="Article content" src="https://media.licdn.com/dms/image/v2/D4E12AQHpxPB_RXtWjw/article-inline_image-shrink_1500_2232/B4EZZTEv9YHkAY-/0/1745150485164?e=1759363200&amp;v=beta&amp;t=AnsoGELXJNUdGfrrtySfy7Ay5oxjpk3FQrym_9LCzjY" onerror="this.style.display='none'"></span>DVLA Letter - Real or Fake?</p>
<p class="ember-view reader-text-block__paragraph">A Reddit post showed a suspicious letter from the DVLA asking someone to return their driving licence due to a minor error. It looked real, but also<span class="white-space-pre"> </span><em>a bit</em><span class="white-space-pre"> </span>off. Polite tone, oddly personal wording, and no official online reference. Most commenters cried scam… but it turned out to be genuine.</p>
<p class="ember-view reader-text-block__paragraph">For those outside the UK: the DVLA (Driver and Vehicle Licensing Agency) is the government body that manages driving licences and vehicle registrations. So getting a letter from them<span class="white-space-pre"> </span><em>should</em><span class="white-space-pre"> </span>feel official. This didn’t – and that’s what made it so confusing.</p>
<p class="ember-view reader-text-block__paragraph">It’s a perfect example of how<span class="white-space-pre"> </span><em>real</em><span class="white-space-pre"> </span>comms can look suspicious – and how hard it is for people to make the right call.</p>
<p class="ember-view reader-text-block__paragraph">Read more -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.reddit.com/r/drivingUK/s/LCDfnJt4cE" target="_blank" rel="noopener"><strong>https://www.reddit.com/r/drivingUK/s/LCDfnJt4cE</strong></a></p>
<p class="ember-view reader-text-block__paragraph"><strong>∠The Awareness Angle</strong></p>
<p class="ember-view reader-text-block__paragraph"></p>
<ul>
<li>
<strong>Spotting Scams Isn’t Always Simple</strong><span class="white-space-pre"> </span>– Even legit messages can have red flags. That’s why we teach people to verify, not just judge.</li>
<li>
<strong>Go to the Source</strong><span class="white-space-pre"> </span>– Encourage staff to check official websites or contact organisations directly using trusted contact details.</li>
<li>
<strong>Sympathy Matters</strong><span class="white-space-pre"> </span>– This is a great reminder that users who report suspicious things aren’t overreacting – they’re doing the right thing.</li>
</ul>
<p></p>
<blockquote class="ember-view reader-text-block__blockquote"><strong>Do you have something you would like us to talk about? Are you struggling to solve a problem, or have you had an awesome success? Reply to this email telling us your story, and we might cover it in the next episode!</strong></blockquote>
<h3 class="ember-view reader-text-block__heading-3">Awareness Noticeboard</h3>
<h3 class="ember-view reader-text-block__heading-3">UK Cyber Week</h3>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/company/uk-cyber-week/" target="_blank" rel="noopener">UK Cyber Week</a><span class="white-space-pre"> </span>is back at Olympia, bringing together thousands of cybersecurity professionals, vendors, and speakers for two days of talks, demos, and networking.</p>
<p class="ember-view reader-text-block__paragraph">While there aren’t many awareness-specific vendors this year, it's still a good chance to see what’s happening across the wider cyber space and connect with others in the industry. Ant will be attending on Thursday – come say hi if you're there!</p>
<p class="ember-view reader-text-block__paragraph">🗓️<span class="white-space-pre"> </span><strong>23rd - 24th April</strong></p>
<p class="ember-view reader-text-block__paragraph">📍<span class="white-space-pre"> </span><strong>Olympia, London</strong></p>
<p class="ember-view reader-text-block__paragraph">🔗<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.ukcyberweek.co.uk/" target="_blank" rel="noopener"><strong>https://www.ukcyberweek.co.uk/</strong></a></p>
<p class="ember-view reader-text-block__paragraph"></p>
<h3 class="ember-view reader-text-block__heading-3">Leeds Digital Festival - Panel Discussion</h3>
<p class="ember-view reader-text-block__paragraph"><span><img class="ivm-view-attr__img--centered  reader-image-block__img evi-image lazy-image ember-view" alt="Article content" src="https://media.licdn.com/dms/image/v2/D4E12AQF-ZCfsdHUz0g/article-inline_image-shrink_1500_2232/B4EZZTKaotHcAU-/0/1745151962693?e=1759363200&amp;v=beta&amp;t=T7AsOWxTj1QGyYdCoK1L8jg1vELjXdDVgElb0dHOpdg" onerror="this.style.display='none'"></span></p>
<p class="ember-view reader-text-block__paragraph">On<span class="white-space-pre"> </span><strong>Tuesday 29th April</strong>, Ant will be joining a panel in Leeds as part of the<span class="white-space-pre"> </span><strong>Leeds Digital Festival</strong>, hosted by the team at<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/company/pentestpeople/" target="_blank" rel="noopener">Pentest People</a>. We’ll be discussing the cyber threats that are keeping security leaders up at night. From AI and ransomware to supply chain risks and human behaviour (yep, he’ll be covering that bit).</p>
<p class="ember-view reader-text-block__paragraph">It’s a free evening event at<span class="white-space-pre"> </span><strong>The Granary</strong>, with a panel discussion, Q&amp;A, and some good networking afterwards. If you’re in or near Leeds, come along!</p>
<p class="ember-view reader-text-block__paragraph">🗓️<span class="white-space-pre"> </span><strong>Tuesday 29th April, 5:30pm</strong></p>
<p class="ember-view reader-text-block__paragraph">📍<span class="white-space-pre"> </span><strong>The Granary, Leeds</strong></p>
<p class="ember-view reader-text-block__paragraph">🔗<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.eventbrite.co.uk/e/cyber-security-in-2025-the-cyber-threats-keeping-cisos-awake-tickets-1286168327089?aff=panelists" target="_blank" rel="noopener"><strong>Register here on Eventbrite</strong></a></p>
<p class="ember-view reader-text-block__paragraph"></p>
<h3 class="ember-view reader-text-block__heading-3">Webinar: Engaging Leadership in Cyber Security</h3>
<p class="ember-view reader-text-block__paragraph"><span><img class="ivm-view-attr__img--centered  reader-image-block__img evi-image lazy-image ember-view" alt="Article content" src="https://media.licdn.com/dms/image/v2/D4E12AQHE2QhLcouGqA/article-inline_image-shrink_1000_1488/B4EZZTKasaHUAU-/0/1745151962885?e=1759363200&amp;v=beta&amp;t=pJmBZVXoH6BEwBeiXGAAMhlrz1vUcqHWmSqZqPVLFXo" onerror="this.style.display='none'"></span></p>
<p class="ember-view reader-text-block__paragraph">On<span class="white-space-pre"> </span><strong>Wednesday 7th May at 12:30 PM</strong>, Ant will be joining a brilliant panel for a live webinar on how to get real exec buy-in for your cyber security work. He'll be chatting with<span class="white-space-pre"> </span><a class="ember-view" href="https://www.linkedin.com/in/simonmair/" target="_blank" rel="noopener">Simon Mair</a><span class="white-space-pre"> </span>(former CISO at the National Bank of Kuwait) and<span class="white-space-pre"> </span><a class="ember-view" href="https://www.linkedin.com/in/philipguest/" target="_blank" rel="noopener">Phil Guest</a><span class="white-space-pre"> </span>from<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/company/redflags-cyber-security/" target="_blank" rel="noopener">Redflags.</a><span class="white-space-pre"> </span>about how to win board-level support, align security with business goals, and actually show the impact of what we do. If leadership engagement is part of your world, we think you’ll find this one useful.<span class="white-space-pre"> </span></p>
<p class="ember-view reader-text-block__paragraph">🗓️<strong><span class="white-space-pre"> </span>Wednesday 7th May 2025, 12:30pm UK Time</strong></p>
<p class="ember-view reader-text-block__paragraph"><strong>📍 Location: Online</strong></p>
<p class="ember-view reader-text-block__paragraph"><strong>🔗<span class="white-space-pre"> </span></strong><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://us06web.zoom.us/webinar/register/WN_Gqk3Q5tZRMCk4KfQRTNzqg#/registration" target="_blank" rel="noopener"><strong>Register here</strong></a></p>
<blockquote class="ember-view reader-text-block__blockquote">
<strong>Whether you’re just getting started or have already adopted AI in your program, we’d love to hear what tools have been working for you. What’s been effective in improving your training, engagement, oa awareness efforts? Share your experiences and any tools you’re using with us at<span class="white-space-pre"> </span></strong><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="mailto:hello@riskycreative.com" target="_blank" rel="noopener"><strong>hello@riskycreative.com</strong></a><strong>. We’re always looking to learn from the community and continue the conversation!</strong>
</blockquote>
<h3 class="ember-view reader-text-block__heading-3">Other topics this week include…</h3>
<p class="ember-view reader-text-block__paragraph">📱 Android Auto-Reboot</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.androidauthority.com/android-auto-reboot-optional-3545366/" target="_blank" rel="noopener">https://www.androidauthority.com/android-auto-reboot-optional-3545366/</a></p>
<p class="ember-view reader-text-block__paragraph">🔍 QR Code Scams</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.bbc.co.uk/news/articles/cq6yznmv3gzo" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/cq6yznmv3gzo</a></p>
<p class="ember-view reader-text-block__paragraph">📮 DVLA Letter</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.reddit.com/r/drivingUK/s/LCDfnJt4cE" target="_blank" rel="noopener">https://www.reddit.com/r/drivingUK/s/LCDfnJt4cE</a></p>
<p class="ember-view reader-text-block__paragraph">🎈 Ohio Balloon Disaster (Yes, really)</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.bbc.co.uk/news/articles/cn05d58jwvdo" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/cn05d58jwvdo</a></p>
<p class="ember-view reader-text-block__paragraph">💳 Fake Apps &amp; In-Person Payment Scams</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.bbc.co.uk/news/articles/cq6yznmv3gzo" target="_blank" rel="noopener">https://www.bbc.co.uk/news/articles/cq6yznmv3gzo</a></p>
<p class="ember-view reader-text-block__paragraph">🚗 Hertz Data Breach</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.infosecurity-magazine.com/news/hertz-data-breach-exposes-customer/" target="_blank" rel="noopener">https://www.infosecurity-magazine.com/news/hertz-data-breach-exposes-customer/</a></p>
<p class="ember-view reader-text-block__paragraph">🕵️ DOGE / NLRB Whistleblower Claim</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.reuters.com/technology/cybersecurity/whistleblower-org-says-doge-may-have-caused-significant-cyber-breach-us-labor-2025-04-15/" target="_blank" rel="noopener">https://www.reuters.com/technology/cybersecurity/whistleblower-org-says-doge-may-have-caused-significant-cyber-breach-us-labor-2025-04-15/</a></p>
<p class="ember-view reader-text-block__paragraph">📲 Android Phones with Fake Apps</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://thehackernews.com/2025/04/chinese-android-phones-shipped-with.html?m=1" target="_blank" rel="noopener">https://thehackernews.com/2025/04/chinese-android-phones-shipped-with.html?m=1</a></p>
<p class="ember-view reader-text-block__paragraph">🎭 Deepfake on Social Media</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://vm.tiktok.com/ZNdFYvukA" target="_blank" rel="noopener">https://vm.tiktok.com/ZNdFYvukA</a></p>
<p class="ember-view reader-text-block__paragraph">🧑💻 Hacker Screen Mockup</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://vm.tiktok.com/ZNdFHqkqa/" target="_blank" rel="noopener">https://vm.tiktok.com/ZNdFHqkqa/</a></p>
<p class="ember-view reader-text-block__paragraph">📬 Subscribe to the Newsletter</p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://riskycreative.com/" target="_blank" rel="noopener">https://riskycreative.com</a></p>
<h3 class="ember-view reader-text-block__heading-3">The £5 Jacket That Beat £5 Million of Security</h3>
<p class="ember-view reader-text-block__paragraph">Watch the discussion -<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://youtu.be/2KR5WfXPGgU?t=3933" target="_blank" rel="noopener"><strong>https://youtu.be/2KR5WfXPGgU?t=3933</strong></a></p>
<p class="ember-view reader-text-block__paragraph"><a href="https://www.linkedin.com/posts/chriscooperuk_this-british-investment-bank-spent-5myear-activity-7315640653525241857-9DT-/" target="_blank" rel="noopener"><span><img class="ivm-view-attr__img--centered  reader-image-block__img evi-image lazy-image ember-view" alt="" src="https://media.licdn.com/dms/image/v2/D4E12AQEKd8gz_X8tkw/article-inline_image-shrink_1000_1488/B4EZZTQEtiHcAQ-/0/1745153446905?e=1759363200&amp;v=beta&amp;t=ID6Qysk7mGdlMV_7VPt4mx8AYiL2R_syRDJixjfAHfs" onerror="this.style.display='none'"></span></a>Chris Cooper's LinkedIn Post</p>
<p class="ember-view reader-text-block__paragraph">A LinkedIn post from<span class="white-space-pre"> </span><a class="ember-view" href="https://www.linkedin.com/in/chriscooperuk/" target="_blank" rel="noopener">Chris Cooper</a><span class="white-space-pre"> </span>shared a real-world red team test at a British investment bank. After passing every technical check, the final test was physical. A tester put on a £5 high-vis vest, carried a fake ID, and walked straight past reception. No alarms, no alerts, just human instinct to “let him through.”</p>
<p class="ember-view reader-text-block__paragraph">It’s a brilliant (and painful) reminder that people are still the most likely point of failure, especially when under pressure.</p>
<p class="ember-view reader-text-block__paragraph">🔗<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/posts/chriscooperuk_this-british-investment-bank-spent-5myear-activity-7315640653525241857-9DT-" target="_blank" rel="noopener"><strong>https://www.linkedin.com/posts/chriscooperuk_this-british-investment-bank-spent-5myear-activity-7315640653525241857-9DT-</strong></a></p>
<p class="ember-view reader-text-block__paragraph">∠<strong>The Awareness Angle</strong><span class="white-space-pre"> </span>–<span class="white-space-pre"> </span></p>
<p class="ember-view reader-text-block__paragraph"></p>
<ul>
<li>
<strong>Humans Under Pressure Default to Easy</strong><span class="white-space-pre"> </span>– Social engineering works best when staff are overwhelmed or distracted.</li>
<li>
<strong>Policy ≠ Practice</strong><span class="white-space-pre"> </span>– Real testing matters. Even strong rules can be sidestepped when the pressure’s on.</li>
<li>
<strong>Visuals Have Power</strong><span class="white-space-pre"> </span>– A high-vis jacket and confidence can override procedures – make sure your people know that too.</li>
</ul>
<p></p>
<p class="ember-view reader-text-block__paragraph"><strong><em>Thanks for reading! If you’ve spotted something interesting in the world of cyber this week — a breach, a tool, or just something a bit weird — let us know at<span class="white-space-pre"> </span></em></strong><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="mailto:hello@riskycreative.com" target="_blank" rel="noopener"><strong><em>hello@riskycreative.com</em></strong></a><strong><em>. We’re always learning, and your input helps shape future episodes.</em></strong></p>
<p class="ember-view reader-text-block__paragraph"><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/in/infosecant/" target="_blank" rel="noopener"><strong>Anthony Davis</strong></a><span class="white-space-pre"> </span>and<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/in/lukejpme/" target="_blank" rel="noopener"><strong>Luke Pettigrew</strong></a><span class="white-space-pre"> </span>write this newsletter and podcast.</p>
<p class="ember-view reader-text-block__paragraph">The Awareness Angle Podcast and Newsletter is a<span class="white-space-pre"> </span><a class="ksGOyBtVzEzOJgTMnCzNSFpERwCXUapITUY " href="https://www.linkedin.com/company/riskycreative/" target="_blank" rel="noopener"><strong>Risky Creative</strong></a><span class="white-space-pre"> </span>production.</p>
</body>
          </div>
          <button class="text-button text-button--pale post__action-button hidden" data-action="click-&gt;trim#expand" data-trim-target="button">
    ...Continue reading
</button>
        </div>

      

        <div class="post__section">
          <div class="post-actions">
            <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
  <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
    <div class="post-actions__item">
      <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="m2.662 7.721 5.14 5.918a.25.25 0 0 0 .378 0l5.142-5.92c1.856-2.21 1.25-4.386.03-5.37-.62-.5-1.407-.711-2.203-.513-.796.197-1.712.833-2.504 2.243a.75.75 0 0 1-1.308-.001c-.794-1.416-1.708-2.054-2.5-2.253-.79-.2-1.573.01-2.19.51-1.214.983-1.822 3.167.015 5.386Zm5.33-5.375C7.172 1.274 6.212.623 5.202.37c-1.292-.325-2.552.032-3.5.8-1.913 1.55-2.524 4.702-.19 7.515l.012.013 5.146 5.925a1.75 1.75 0 0 0 2.642 0l5.146-5.925.008-.009c2.362-2.805 1.75-5.956-.171-7.507-.95-.766-2.213-1.124-3.508-.802-1.01.25-1.974.898-2.795 1.966Z" clip-rule="evenodd"></path></svg>

    </div>

</button></form>
              <form class="post-actions__item-form" data-turbo="false" action="/supporters/sign_up" accept-charset="UTF-8" method="get">
    <button class="text-button text-button--small text-button--pale" aria-label="Become a member">
    
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M1.75 2.25a.25.25 0 0 0-.25.25v8.067c0 .139.112.25.25.25H3c.967 0 1.75.784 1.75 1.75v1.21c0 .216.255.33.416.187l3.053-2.706a1.75 1.75 0 0 1 1.16-.44h4.871a.25.25 0 0 0 .25-.25V2.5a.25.25 0 0 0-.25-.25H1.75ZM0 2.5C0 1.534.784.75 1.75.75h12.5c.966 0 1.75.784 1.75 1.75v8.067a1.75 1.75 0 0 1-1.75 1.75H9.38a.25.25 0 0 0-.166.063L6.16 15.087c-1.13 1-2.911.199-2.911-1.31v-1.21a.25.25 0 0 0-.25-.25H1.75A1.75 1.75 0 0 1 0 10.567V2.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number"></span>
      </div>

</button></form>
            
<div class="dropdown" data-controller="dropdown link-share" data-dropdown-placement-value="bottom-start" data-action="link-share:unavailable-&gt;dropdown#toggle" data-link-share-url-value="https://riskycreative.com/supporters/video_embeds/146292?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter">
      <div class="comment__menu" data-dropdown-target="button" data-action="click->link-share#share">
      <div class="post-actions__item">
        <svg xmlns="http://www.w3.org/2000/svg" width="14" height="14" fill="none" viewBox="0 0 16 16" role="img" class="post-actions__icon"><path fill="currentColor" fill-rule="evenodd" d="M6.996.471a1.41 1.41 0 0 1 2.008 0l4.943 5.013-1.068 1.053L8.75 2.35v9.121h-1.5V2.35L3.12 6.537 2.054 5.484 6.996.471ZM1.5 11.108v3.143c0 .138.111.249.249.249H14.25c.138 0 .249-.11.249-.25v-3.142H16v3.143c0 .965-.781 1.749-1.749 1.749H1.75A1.748 1.748 0 0 1 0 14.25v-3.142h1.5Z" clip-rule="evenodd"></path></svg>

        <span class="post-actions__item-number hidden@sm">Share</span>
      </div>
    </div>


  <div class="dropdown__menu hidden" data-dropdown-target="items">
    <div class="dropdown__items">
        <div class="dropdown__title">Share this post</div>

      

  <button class="dropdown__item" data-action="click-&gt;dropdown#hide" data-controller="clipboard" data-clipboard-text="https://riskycreative.com/supporters/video_embeds/146292?utm_medium=copy-share-link&amp;utm_source=share-link&amp;utm_campaign=post-share-supporter" type="button">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" fill="none" viewBox="0 0 16 16" role="img"><path fill="currentColor" fill-rule="evenodd" d="M12.145 1.5a1.762 1.762 0 0 0-1.246.516L8.234 4.681l-1.06-1.06L9.837.955a3.264 3.264 0 0 1 4.615 0l.591.591a3.264 3.264 0 0 1 0 4.613l-3.849 3.85a3.262 3.262 0 0 1-4.614 0l-.593-.592 1.062-1.06.591.592a1.763 1.763 0 0 0 2.493 0l3.85-3.85a1.762 1.762 0 0 0 0-2.492l-.592-.591a1.764 1.764 0 0 0-1.247-.517ZM7.112 6.534c-.468 0-.916.186-1.247.516L2.016 10.9a1.762 1.762 0 0 0 0 2.492m0 0 .592.592a1.764 1.764 0 0 0 2.493 0l2.665-2.665 1.06 1.06-2.664 2.666a3.264 3.264 0 0 1-4.615 0l-.592-.592a3.263 3.263 0 0 1 0-4.614l3.85-3.85a3.264 3.264 0 0 1 4.614 0l.592.593-1.06 1.06-.592-.592c-.331-.33-.78-.516-1.247-.516" clip-rule="evenodd"></path></svg>

    </div>

  
    Copy link

</button>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://twitter.com/intent/tweet?url=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146292%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 32 32" fill="none" role="img"><path d="M18.666 13.857 29.093 2h-2.47l-9.056 10.294L10.338 2H2l10.932 15.567L2 30h2.47l9.557-10.873L21.662 30H30M5.36 3.822h3.795L26.62 28.267h-3.794" fill="currentColor"></path></svg>

    </div>

  
    Share on X

</a>
  <a class="dropdown__item" data-action="click-&gt;dropdown#hide" href="https://facebook.com/sharer.php?u=https%3A%2F%2Friskycreative.com%2Fsupporters%2Fvideo_embeds%2F146292%3Futm_medium%3Dcopy-share-link%26utm_source%3Dshare-link%26utm_campaign%3Dpost-share-supporter" target="_blank">
    <div class="dropdown__item-icon">
      <svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 14 14" fill="none" role="img"><path d="m5.27 14-.02-6.125H2.625V5.25H5.25V3.5C5.25 1.138 6.713 0 8.82 0c1.009 0 1.876.075 2.129.109v2.468H9.488c-1.146 0-1.368.545-1.368 1.344V5.25h3.255L10.5 7.875H8.12V14H5.27Z" fill="currentColor"></path></svg>

    </div>

  
    Share on Facebook

</a>
    </div>
  </div>
</div>
          </div>

        </div>

      </div>
</div>

  </div>
</div>

</turbo-frame></template></turbo-stream>

<turbo-stream action="remove" target="posts_load_more"></turbo-stream>

  <turbo-stream action="append" target="posts_list"><template><turbo-frame id="posts_load_more">
  <a data-turbo-stream="true" data-controller="infinite-scroll" href="/supporters/load_more?last_id=146292&amp;last_live_at=2025-04-20T05%3A00%3A00.000%2B00%3A00&amp;order=desc"></a>
  <div class="loader">
  <svg class="loader__icon" viewBox="0 0 100 100">
    <circle class="loader__circle" cx="50" cy="50" r="45" />
  </svg>
</div>
</turbo-frame>
</template></turbo-stream>
