KHIPU Networks Expands Simulation Capabilities to Assess Users, Infrastructure and Defences in the Event of a Phishing Attack.
- News
KHIPU Networks, a leading provider of cyber security and network infrastructure solutions, today announced the expansion of its Simulated Phishing and Awareness Training capabilities, now called “Phishing Assessment Services”.
The expanded service will enable KHIPU customers to gain a better understanding of how their business reacts to cyber attacks, so that appropriate recommendations and essential continuous improvements to security can be implemented.
A multi-layered approach to email phishing attacks
Truly effective defence against modern phishing attacks requires a multi-layered approach, utilising a combination of leading technology, robust processes and informed personnel. This proactive approach to combating email phishing enables organisations to use several methods to detect and respond to attacks before they create havoc.
A critical step towards achieving this goal is to understand how an organisation will respond in the event of a phishing attack, including how their security systems could be circumvented by imposter emails reaching its users and their devices. At the same time, assessing users’ ongoing proficiency in identifying and handling common phishing techniques used for collecting credentials and distributing malware, such as ransomware or extracting confidential information, is essential.
Cyber Risk Assessments
The new enhancements to KHIPU’s Phishing Assessment Services, include cyber risk assessments. These assessments are designed to help organisations effectively identify the areas of their business which are susceptible to compromise, and to subsequently find solutions and raise awareness, with the overall goal of improving their cyber security postures.
The new enhancements include:
- New pricing models – we now use cyber service credits, giving you the flexibility to buy whatever you need – simulations, awareness campaigns and/or cyber security 101 classroom training.
- QR code attacks “Quishing” to raise awareness of newer methods to be compromised. Please read here our full feature announcement.
- New phishing email templates and customisation capabilities.
- Wider portfolio phishing awareness portals to help train people to be more aware of attacks and what to do.
- New cyber security training topics – covering quishing and current methods of attacks, how to identify them and how to respond.
- New post-simulation report – More comprehensive detailing the following findings:
- Infrastructure vulnerabilities across email setups (e.g. have DMARC, SPF, DKIM been correct implemented), gateway and firewall configuration and capability assessments.
- Users who opened and were compromised – clicking URL’s and sharing information, opening attachments, scanning QR codes.
- Endpoint inventories and risks including operating systems, versions, browsers, plug-ins and vulnerabilities/patching needed.
- Wider portfolio of awareness campaigns showing who undertook them including videos watched and scores from quizzes.
- Best practise recommendations for on-going prevention and protection against cyber-attack across all areas.
- Reports will be reviewed by our team of cyber security experts and discussed with you as part of our strategic alignment, helping you understand all findings and look at ways to improve your cyber security posture.