Generated by All in One SEO Pro v5.0.0.1, this is an llms.txt file, used by LLMs to index the site. # CyberAwake Wake Up To Cyber Security ## Sitemaps - [XML Sitemap](https://www.cyberawake.co.uk/sitemap.xml): Contains all public & indexable URLs for this website. ## Blog - [Cyber Security Knowledge](https://www.cyberawake.co.uk/cyber-security-knowledge/) - Cyber Security Knowledge Base Cyber Security The CIA Triad – Confidentiality, Integrity and Availability (pt. 2) As part of this weeks summer cyber security webinar about encryption, I touched on the idea of how it can Read More » Clive Catton 2 July 2025 Cyber Security OSINT – Do you know what it is? I - [The CIA Triad - Confidentiality, Integrity and Availability (pt. 2) ](https://www.cyberawake.co.uk/2025/07/02/the-cia-triad-confidentiality-integrity-and-availability-pt-2/) - The Availability part of the CIA triad can cause confusion, but just means your data must be available to those who need it, not to everyone. - [OSINT - Do you know what it is?](https://www.cyberawake.co.uk/2025/05/28/osint-do-you-know-what-it-is/) - I am in the process of writing our new course at the moment – more details in our newsletter – so for this week I have an article about the open-source intelligence, first published on Smart Thinking Solutions. I chose this article as I have been discussing with several clients recently how they need to think carefully - [The Out-Of-Office Email and How It Compromises Your Organisation’s Cyber Security](https://www.cyberawake.co.uk/2022/08/04/the-out-of-office-email-and-how-it-compromises-your-organisations-cyber-security/) - The out-of-office email notification is a useful business tool but be careful what it says about your cyber security to the threat actors - talking helps! - [If you need some help with cyber security - look no further...](https://www.cyberawake.co.uk/2025/05/15/if-you-need-some-help-with-cyber-security-look-no-further/) - I am in a busy period helping several organisations with IT and Cyber Security Audits among other jobs. Because of that I thought I would point you at an article on Smart Thinking Solutions that will give you access to a selection of primers looking at various aspects of business cyber security. Back to Basics - [Practice Drinking Coffee* better known as Planning and Preparation](https://www.cyberawake.co.uk/2025/03/20/practice-drinking-coffee-better-known-as-planning-and-preparation/) - You need to take time out in any cyber security planning and preparation to think about the "what ifs" get a coffee, sit down and think about what has happened. - [Identity Theft (part 2)](https://www.cyberawake.co.uk/2025/03/13/identity-theft-part-2/) - Identity theft allows threat actors to gain access to an organisation’s data and is extremely widespread. Risk factors include hybrid working on SaaS platforms. - [The BitLocker Recovery Key](https://www.cyberawake.co.uk/2025/03/06/the-bitlocker-recovery-key/) - I am going to ask a question later: “Do you have a secure record of your BitLocker recovery key?” I got the idea for this article whilst working with a client last week on their cyber security. I was testing Microsoft Defender’s scanning for a training session I was writing for them, when I thought - [Privacy and Encryption](https://www.cyberawake.co.uk/2025/02/20/privacy-and-encryption/) - Privacy is essential in creating a secure organisation, if tools you depend on for that privacy are compromised by hackers or government you have a problem. - [More About Privacy](https://www.cyberawake.co.uk/2025/02/13/more-about-privacy/) - Popular browsers enable tracking protect your privacy. I recommend the free TOR browser but beware of fakes and use my download link. - [Open Source Intelligence – OSINT ](https://www.cyberawake.co.uk/2025/02/06/open-source-intelligence-osint/) - Open Source Intelligence (OSINT) is the data you leave online without realising, and rejecting cookies does not protect you. Use the TOR browser to be secure. - [Social Media and Privacy](https://www.cyberawake.co.uk/2025/01/30/social-media-and-privacy/) - There has been a lot of talk over the past couple of weeks about the privacy of and the banning or selling of TikTok in the US (Marsh 2025). Although there appears to be an open and shut case being proposed by the American government the complete argument is obviously going to be more complicated. - [INCIDENT RESPONSE PLAN – “WHAT IF”](https://www.cyberawake.co.uk/2025/01/09/incident-response-plan-what-if/) - Regular review of your incident response plan is important as it needs to be relevant. Reviews can also find errors and inconsistencies. Need help? Contact us! - [The Insider threat – Not just a question of trust. (pt.1)](https://www.cyberawake.co.uk/2024/09/19/the-insider-threat-not-just-a-question-of-trust-pt-1/) - Insider threat is the risk that someone you trust in your organisation betrays that trust accidentally or deliberately. Sub-contractors can also present a risk. - [Insider threat – A conclusion… (pt.7)](https://www.cyberawake.co.uk/2024/11/28/insider-threat-a-conclusion-pt-7/) - Insider threat is an issue for joiners and leavers. When does a new team member earn your trust? When do you need to rescind leaver access to sensitive data? - [Insider Threat and BYOD (pt.6)](https://www.cyberawake.co.uk/2024/11/21/insider-threat-and-byod-pt-6/) - BYOD lays your organisation open to insider threat. You can either forbid the use of team devices (which comes at a cost) or mitigate the risk with policies. - [The Insider Threat – Careless (pt.5)](https://www.cyberawake.co.uk/2024/10/31/the-insider-threat-careless-pt-5/) - Up to now, we have been discussing the insider threat in relation to a trusted insider committing a breach of trust and maliciously exposing your secrets. As discussed in the last article this type of malicious act does happen but more often than not your trusted employee is just a little careless or acts without carefully - [Passwords - Back to Basics](https://www.cyberawake.co.uk/2023/09/05/passwords-back-to-basics/) - Most users generate a common core for all their passwords then add bits at the beginning and end as needed, but the hackers know about this, so be more random! - [The Insider Threat – An Investment. (pt.4)](https://www.cyberawake.co.uk/2024/10/16/the-insider-threat-an-investment-pt-4/) - Before we start this next article in my Insider Threat Primer, I need to address a question that a client raised with me this week. “How common is the insider threat?” Let me quote the UK’s National Cyber Security Centre (NCSC) here, “Malicious insider activity is relatively rare…”. So there you have it, do not - [Investigations](https://www.cyberawake.co.uk/2024/10/10/investigations/) - It does not matter what you do - sometimes you will need cyber security investigations. Most times just to prove that your defences have worked. - [Are you using Bring Your Own Device – BYOD - to save money?](https://www.cyberawake.co.uk/2022/09/27/are-you-using-bring-your-own-device-byod-to-save-money/) - Many companies allow staff to use their mobile phones for business use, but there are risks to sensitive data so here are some ideas for writing a BYOD policy - [The Insider threat – Start thinking about sorting. (pt.2)](https://www.cyberawake.co.uk/2024/09/26/the-insider-threat-start-thinking-about-sorting-pt-2/) - Reduce the risk of insider threat by protecting your data. Sort it into categories and restrict your team members’ access to only what they need for their jobs. - [The Insider Threat – Mitigation. (pt.3)](https://www.cyberawake.co.uk/2024/10/03/the-insider-threat-mitigation-pt-3/) - This is the third part of my series on the Insider Threat. We have touched on trust and have discussed sorting your information to limit access using the Principle of Least Privilege (PoLP), which you should have read about in my primer about authentication, authorisation and accountability. The Insider threat – Not just a question - [Information Security in the Office (pt.4)](https://www.cyberawake.co.uk/2024/09/12/information-security-in-the-office-pt-4/) - This is part 4 of a short series looking at information security in the office – here are links to part 1, 2 and 3. Information Security in the Office (pt.1) The Printer is the Issue Information Security in the Office (pt.2) Forgotten Technology Information Security in the Office (pt.3) Reliable Infrastructure Today we are - [INFORMATION SECURITY IN THE OFFICE (PT.2)](https://www.cyberawake.co.uk/2024/09/05/information-security-in-the-office-pt-2/) - In Part 1 of this Information Security mini-series, we looked at the printer. Today we are going to look at some of the technology that seemed like a good idea but is often neglected. CCTV We will start with the obvious – CCTV. Many offices and organisations have it installed for a range of different - [It's the holidays and The Out of Office Message](https://www.cyberawake.co.uk/2024/07/18/its-the-holidays-and-the-out-of-office-message/) - Out of Office Message is a subtle but sure way that what could be useful information for a hacker could be leaking out of your organisation. Check now! - [Training: Back-to-Basics – The Collection III](https://www.cyberawake.co.uk/2024/07/11/training-back-to-basics-the-collection-iii/) - My Back-to-Basics mini-series are a fast-track way for board members & senior managers to get to grips with some of the fundamentals of cyber security training. - [Scan It! – QR Codes](https://www.cyberawake.co.uk/2024/06/20/scan-it-qr-codes/) - QR codes are widely used to pass on information. However, beware malicious codes in phishing emails or stickers over a legitimate code on e.g. a payment machine - [Email Phishing – Back to bait… (pt. 9)](https://www.cyberawake.co.uk/2024/06/13/email-phishing-back-to-bait-pt-9/) - Email phishing requiring the recipient to click on a link is a common way to harvest your username and password. A plausible reason is given to allay suspicion - [Phishing Primer – Phishing Types (pt. 4)](https://www.cyberawake.co.uk/2024/05/28/phishing-primer-phishing-types-pt-4/) - Phishing is a mass effect attack It was mentioned in the previous article that technology today, especially AI, can enhance a phishing scheme, creating perfectly crafted emails, with the correct style of language used (remember this is not just an “English” phenomenon) and errors such as layouts and idioms fixed. Salutations and job titles are - [Phishing Primer – Social Engineering (pt. 2)](https://www.cyberawake.co.uk/2024/05/16/phishing-primer-social-engineering-pt-2/) - Of huge benefit to threat actors in social engineering is the amount of data that is lying around physically or virtually – open source intelligence, or OSINT. - [When hardware reaches EOL](https://www.cyberawake.co.uk/2024/05/02/when-hardware-reaches-eol/) - Devices and software reach end of life (EOL) when they are broken or when vendors stop supporting them. A regular audit is a must to identify insecure devices. - [We all need some cyber security education.](https://www.cyberawake.co.uk/2024/04/18/we-all-need-some-cyber-security-education/) - Cyber security education is essential to understand the threats and risks to make informed decisions when to do it yourself and when you need to call for help. - [Keep It Simple… Encryption (pt. 2)](https://www.cyberawake.co.uk/2024/04/11/keep-it-simple-encryption-pt-2/) - Encryption keeps your data safe and within M365 you can encrypt your documents with a secure password. But, if you forget that password it cannot be recovered! - [Secure those Online Services](https://www.cyberawake.co.uk/2024/04/04/secure-those-online-services/) - Services such as Microsoft 365 have the advantage of always being updated but how do you secure those online services? We recommend multi-factor authentication. - [A USB Cyber-attack](https://www.cyberawake.co.uk/2024/02/01/a-usb-cyber-attack/) - USB cyber-attack needs cooperation from the victim as certain actions have to be performed before the attack can launch. Training and good procedures are needed - [What the “Principle of Least Privilege” does for you? (pt. 2)](https://www.cyberawake.co.uk/2024/03/28/what-the-principle-of-least-privilege-does-for-you-pt-1/) - The Principle of Least Privilege (PoLP) is a cybersecurity concept it ensures users are granted only the minimum access rights required to perform their work. - [One More Thing about Device Security…](https://www.cyberawake.co.uk/2024/03/14/one-more-thing-about-device-security/) - Device security is basic cyber security that is often forgotten or not addressed, particularly when staff members are using their own devices for hybrid working - [Device Security (Pt. 1)](https://www.cyberawake.co.uk/2024/03/07/device-security-pt-1/) - Device security is a basic of cyber security that is often forgotten or not addressed, particularly when staff members are using home networks in hybrid working - [It All Starts with a Phishing Email](https://www.cyberawake.co.uk/2024/02/22/it-all-starts-with-a-phishing-email/) - Phishing email is the most consistent cyber threat every organisation faces. Is your team well trained in how to spot them and what to do if things go wrong? - [Realistic Cyber Security](https://www.cyberawake.co.uk/2024/02/08/realistic-cyber-security/) - Realistic cyber security for most means crossed fingers. Eat that elephant one bite at a time, start with Authentication, Authorisation and Accountability - [More about your VPN](https://www.cyberawake.co.uk/2024/01/25/more-about-your-vpn/) - Using a VPN (Virtual Private Network) is encouraged when travelling as public internet connections are not secure, which means your activity could be seen. - [Let’s Talk About Your VPN](https://www.cyberawake.co.uk/2024/01/18/lets-talk-about-your-vpn/) - Using a VPN (Virtual Private Network) is encouraged when travelling as hotel internet connections are not secure, which means your activity could be seen. - [Bugged by Phishing Email Attacks (pt. 2)](https://www.cyberawake.co.uk/2024/01/11/bugged-by-phishing-email-attacks-pt-2/) - Phishing email is the most consistent cyber threat every organisation faces. Are your team well trained in how to spot them and what to do if things go wrong? - [What’s Wrong with MFA](https://www.cyberawake.co.uk/2023/11/09/whats-wrong-with-mfa/) - Threat actors can get round MFA by attempting to use stolen credentials repeatedly, so that the genuine user gets flustered by notifications and makes a mistake - [Back to Basics – Why MFA? (pt.3)](https://www.cyberawake.co.uk/2023/11/16/back-to-basics-why-mfa-pt-3/) - Resistance to MFA is common amongst client staff, but here we give you a few pointers to make them more willing to embrace this crucial cybersecurity protection - [Ransomware - The Impact](https://www.cyberawake.co.uk/2023/02/16/ransomware-the-impact/) - The Impact of Ransomware So the worst has happened. You come into work on a Monday morning early, to get a head start on the week. You switch on your PC and whilst it is booting you make a coffee. Now you sit down and go to open Outlook to check your schedule for the - [Back to Basics – MFA](https://www.cyberawake.co.uk/2023/10/31/back-to-basics-mfa/) - In the never-ending bid to thwart hackers, Multi-Factor Authentication (MFA) is useful as knowing the username and password is not enough - a code is needed too - [Back to Basics – One more thing about your passwords](https://www.cyberawake.co.uk/2023/10/03/back-to-basics-one-more-thing-about-your-passwords/) - How do you remember all your complicated passwords? Of these three common methods one is definitely not recommended! It’s best to put them in an encrypted file - [The Passwords Mini-series is really finished...](https://www.cyberawake.co.uk/2023/10/17/the-password-mini-series-is-really-finished/) - The passwords used by your team are an essential step in your organisation's cyber security stance - do you know if their password usage is effective? Read on. - [Passwords – Security Theatre](https://www.cyberawake.co.uk/2023/10/10/passwords-security-theatre/) - OK, so when does a developer’s action heralded as increased user cyber security actually have the opposite effect? When it’s cyber security theatre of course! - [Back to Basics – The Password Part 2](https://www.cyberawake.co.uk/2023/09/12/back-to-basics-the-password-part-2/) - This is the second part of a mini-series looking at how hackers exploit user mistakes when it comes to choosing a secure password. - [Back to Basics – The Password Keyboard Walk (part 3)](https://www.cyberawake.co.uk/2023/09/14/back-to-basics-the-password-keyboard-walk-part-3/) - A popular type of password using adjacent keys on the keyboard (keyboard walk) may adhere to an organisation’s password policy but is well known by hackers. - [Back to Basics (4) – Password Sharing](https://www.cyberawake.co.uk/2023/09/19/back-to-basics-4-password-sharing/) - Sharing a password is a bad idea when it comes to cyber security. If an incident needs to be investigated, whoever owns the password will be held accountable! - [Back to Basics Your Password the Finale](https://www.cyberawake.co.uk/2023/09/26/back-to-basics-your-password-the-finale/) - password - [Prioritise Risks and Propose Risk Management Actions](https://www.cyberawake.co.uk/2023/09/07/prioritise-risks-and-propose-risk-management-actions/) - Here is the final part of our series looking at risk, how to understand it, quantify it and mange it. What you need it a white board, determination and coffee. - [It is the Summer](https://www.cyberawake.co.uk/2023/08/16/it-is-the-summer/) - I am on three weeks leave at the moment but rather than leaving you with no posts I suggest you have a look at this holiday themed article I wrote for Smart Thinking: It’s holiday time again – dust off that VPN! Cyber Security Awareness Training The other post I wanted to highlight here was - [Anti-virus - This is why you need more and better…](https://www.cyberawake.co.uk/2023/08/01/anti-virus-this-is-why-you-need-more-and-better/) - Anti-virus protection has been available for many years and is improving continually. However, your anti-virus cannot find everything and you need to stay alert - [Risk Analysis Get Help With Business Threat Assessment](https://www.cyberawake.co.uk/2023/07/18/risk-analysis-get-help-with-business-threat-assessment/) - Part of risk analysis is to identify threats to our organisation, assess the vulnerability of our systems and processes, then estimate the likelihood of attack. - [Assess The Cyber Security Risk](https://www.cyberawake.co.uk/2023/07/25/assess-the-cyber-security-risk/) - By effectively communicating risks to decision makers, organisations can better assess cyber security risk to mitigate them and safeguard operations and assets - [Risk Assessment - Understanding Your Assets](https://www.cyberawake.co.uk/2023/07/11/risk-assessment-understanding-your-assets/) - Risk assessment is crucial to understand what steps need to be taken to mitigate the potential impact of any asset compromise, whether accidental or deliberate. - [The Zero-day Threat - a Primer](https://www.cyberawake.co.uk/2023/07/06/the-zero-day-threat-a-primer/) - Having an understanding and a strategy for the zero-day cyber security threat is important - this is a primer on the first steps every organisation must take. - [Risk Appetite](https://www.cyberawake.co.uk/2023/06/29/risk-appetite/) - Getting to grips with what level and kind of risk your organisation is willing to accept without mitigation is a necessary step as most budgets are limited. - [Risk. Where do you start?](https://www.cyberawake.co.uk/2023/06/27/risk-where-do-you-start/) - You need to evaluate risk when you build a cyber security plan. What kind of threats can you identify? What could happen to your company? Make a detailed list. - [Code Risk](https://www.cyberawake.co.uk/2023/05/25/code-risk/) - Developers re-use core code sequences, storing them in code repositories. Bad actors target them, so there can be code risk in your supposedly bespoke software. - [The Zero-day Threat - What can you do about it?](https://www.cyberawake.co.uk/2023/06/22/the-zero-day-threat-what-can-you-do-about-it/) - Defending against Zero-day attacks means installing updates and patches, training your team and being vigilant – checking your computer is behaving as expected. - [Authorisation - It Shows You Care.](https://www.cyberawake.co.uk/2023/06/08/authorisation-it-shows-you-care/) - The second AAA principle is authorisation. A team member’s role defines their access to resources, so a set of credentials only reaches a subset of your data. - [We all thought biometrics were better security...](https://www.cyberawake.co.uk/2023/06/06/we-all-thought-biometrics-were-better-security/) - Every cybersecurity plan should include the use of MFA for authentication but it is not without issues. Researchers have now compromised fingerprint biometrics. - [I am on leave this week...](https://www.cyberawake.co.uk/2023/06/01/i-am-on-leave-this-week/) - ...but I did have this published on Smart Thinking Solutions. If you and your team know what the latest phishing email attacks look like and how ChatGPT and other AI systems are eroding your ability to spot threat emails then that is good. However if you cannot do this then read the article and sign - [Let’s Talk About WordPress](https://www.cyberawake.co.uk/2023/05/18/lets-talk-about-wordpress/) - WordPress is the most popular website software platform, so it is a target for cyber attacks. We ensure your software and any plugins are secure and updated. - [Cyber Security Awareness Training - We do not need it!](https://www.cyberawake.co.uk/2023/05/11/cyber-security-awareness-training-we-do-not-need-it/) - Cyber security awareness training encourages your team members to be vigilant and pro-active to protect your organisation’s data and their personal credentials. - [Cyber Security Incident Follow-up Meetings](https://www.cyberawake.co.uk/2023/05/09/cyber-security-incident-follow-up-meetings/) - After something happens it is important to have incident follow-up meetings, during which all actions taken are reviewed, discussed and if necessary improved. - [Cyber Security THE LAYER CAKE APPROACH](https://www.cyberawake.co.uk/2023/04/27/cyber-security-the-layer-cake-approach/) - For the best cyber security you must use a range of tools to create defence in depth and do not forget that your people are a key part of your security culture. - [The Cyber Security Culture](https://www.cyberawake.co.uk/2023/04/20/the-cyber-security-culture/) - The cyber security culture within your organisation is hugely important as exchanging ideas about security should be within an open and free no-blame space. - [Incident Response Communications - Have You Got It Covered?](https://www.cyberawake.co.uk/2023/04/13/incident-response-communications-have-you-got-it-covered/) - Even a thoroughly thought-out incident response plan should be tested and updated regularly and the incident response communications are vital so they must work - [Pull the Plug: But I haven’t got a plug!](https://www.cyberawake.co.uk/2023/04/04/pull-the-plug-but-i-havent-got-a-plug/) - This article is a response to a question I got about this article “Minimise the Damage – Planning and Preparation”. Ransomware Incident Response In my article looking at the immediate response any individual or organisation should make if they even suspect malware is running on their machine I suggested that suspect machines should be isolated - [Before! - Ransomware Part 9](https://www.cyberawake.co.uk/2023/03/09/before-ransomware-part-9/) - Ransomware attacks are no joke and you need both managed ransomware resilient backup and Incident Response, Business Continuity and Cyber Security Master Plans. - [From Encryption Ransomware to Extortion Ransomware Part II](https://www.cyberawake.co.uk/2023/03/28/from-encryption-ransomware-to-extortion-ransomware-part-ii/) - You can protect your confidential files from extortion ransomware by classifying them then restricting access, as well as using client-side encryption. - [From Encryption Ransomware To Extortion Ransomware Part I](https://www.cyberawake.co.uk/2023/03/21/from-encryption-ransomware-to-extortion-ransomware-part-i/) - We all understand the threat of encryption ransomware and take precautions - but what do you do about the threat of data exfiltration and extortion ransomware? - [Ransomware – A Primer](https://www.cyberawake.co.uk/2023/03/16/ransomware-a-primer/) - Do you want to understand the threat of ransomware and what you can do about it? Then this is the mini-series for you - find out in 10 easy reads what to do. - [A Bag of Spanners - Planning and Preparation](https://www.cyberawake.co.uk/2023/02/07/a-bag-of-spanners-planning-and-preparation/) - planning and preparation are key when formalising your response to a ransomware incident and never is it more true that “failing to plan is planning to fail”. - [Detecting Ransomware - Ransomware Part 4](https://www.cyberawake.co.uk/2023/02/14/detecting-ransomware-ransomware-part-4/) - Detection is key to foiling ransomware attacks whether discovered by technical solutions or spotted by well-trained staff but your plan needs to address this. - [You and a ransomware resilient back-up](https://www.cyberawake.co.uk/2023/02/21/you-and-a-ransomware-resilient-back-up/) - A ransomware resilient back-up is a must (see checklist) and don’t forget to back up your cloud-based software such as accounts, payroll and Microsoft 365! - [After Ransomware](https://www.cyberawake.co.uk/2023/03/14/after-ransomware/) - A ransomware attack may be behind you but there is still work to be done – go through what happened and how you dealt with it and make improvements if necessary - [If you must use portable USB drives, then you must read this...](https://www.cyberawake.co.uk/2022/09/08/if-you-must-use-portable-usb-drives-then-you-must-read-this/) - We consider USB storage a cyber security risk, but when you have to use it, find out what can go wrong and find out how to do it securely. - [What exactly do I mean when I say “ransomware resilient back-up”?](https://www.cyberawake.co.uk/2022/12/01/what-exactly-do-i-mean-when-i-say-ransomware-resilient-back-up/) - Companies still offering cyber insurance are demanding clients have ransomware resilient back-up like our offering, so here is a breakdown of what that means. - [Credential Sharing and Passwordless](https://www.cyberawake.co.uk/2023/02/02/credential-sharing-and-passwordless/) - Companies sometimes let users share passwords and usernames when accessing software. This is problematic for security reasons and needs to be managed carefully. - [Something better than a password – passwordless Authentication](https://www.cyberawake.co.uk/2023/01/31/something-better-than-a-password-passwordless-authentication/) - The future is passwordless – every major software developer tells us so. Seems odd as passwords have been with us forever, but they are not secure enough now. - [Microsoft Office Macros Are Still an Issue](https://www.cyberawake.co.uk/2023/01/24/microsoft-office-macros-are-still-an-issue/) - Power users of Excel have Microsoft Office macros enabled so without training are prey for attack emails containing macros, now often in OneNote attachments. - [What is Credential Stuffing and why is it a problem for you?](https://www.cyberawake.co.uk/2023/01/19/what-is-credential-stuffing-and-why-is-it-a-problem-for-you/) - Credential stuffing is serious, not a Christmas treat. Attackers try compromised usernames and passwords on other services. Use MFA and do not reuse passwords. - [Take Care of the Credit Cards](https://www.cyberawake.co.uk/2023/01/17/take-care-of-the-credit-cards/) - Missing one software security update can let bad actors in, so for peace of mind use a recognised payment processor when taking client credit cards. - [The Blame Game](https://www.cyberawake.co.uk/2023/01/12/the-blame-game/) - Looking to blame someone who mistakenly clicks on a malicious link makes it less likely that they will report it and this can cause many more problems. - [Don’t Blame your Team - "Just Click Here"](https://www.cyberawake.co.uk/2023/01/10/dont-blame-your-team/) - Although evidence shows that being told not to “click on links” is not working, training so that users report phishing is crucial to mitigate the consequences. - [Where are the boundaries for your cyber security?](https://www.cyberawake.co.uk/2022/09/13/where-are-the-boundaries-for-your-cyber-security/) - There is only so much budget for your cyber security, so where do you spend it to give the best protection possible. Training? Anti-virus? Back-up? Read on... - [Sometimes a simple email may work for the bad guys](https://www.cyberawake.co.uk/2023/01/05/sometimes-a-simple-email-may-work-for-the-bad-guys/) - Hackers may work for governments as well as criminals and you can get caught in the crossfire unless you have been trained to recognise fake emails and scams. - [Christmas cyber security advice](https://www.cyberawake.co.uk/2022/12/20/christmas-cyber-security-advice/) - Festivities are an ideal opportunity for business email compromise as your guard may be down. Put in place our suggestions before closing for the holiday. - [How Microsoft Patch Tuesday can help your cyber security planning](https://www.cyberawake.co.uk/2022/12/16/how-microsoft-patch-tuesday-can-help-your-cyber-security-planning/) - Most software vendors issue updates on Patch Tuesday, so planning ahead can mitigate bandwidth issues whilst ensuring we have the latest protection in place. - [Cyber Security and Hybrid Working](https://www.cyberawake.co.uk/2022/12/08/cyber-security-and-hybrid-working/) - The hybrid working practices of the pandemic, now preferred by most office staff, have highlighted the need for robust cyber security policies and procedures. - [The Basics of Cyber Security – A quick look at OSINT and Redacting](https://www.cyberawake.co.uk/2022/12/06/the-basics-of-cyber-security-a-quick-look-at-osint-and-redacting/) - We are familiar with reports that include redacting – thick black blocks over sensitive information – but the underlying text is not necessarily irretrievable. - [If your plan to defeat ransomware is to pay up, then read on…](https://www.cyberawake.co.uk/2022/08/02/if-your-plan-to-defeat-ransomware-is-to-pay-up-then-read-on/) - NCSC and the ICO say – Don’t pay the malware ransom. A couple of weeks back The National Cyber Security Centre (NCSC) and the Information Commissioner’s Office (ICO) wrote to The Law Society and The Bar Council outlining why it is better for everyone (including those infected with the ransomware) not to engage with the threat actors by paying the ransoms demanded. - [Microsoft Office Macros – The Good, The Bad and the Ugly](https://www.cyberawake.co.uk/2022/08/09/microsoft-office-macros-the-good-the-bad-and-the-ugly/) - The Good Diana (my partner at Smart Thinking Solutions) loves Microsoft Office macros and her financial Excel spreadsheets are liberally scattered with them. They automate tasks, combine data, automatically generate reports, leverage Windows PowerShell, etc, etc, etc. But she is very aware of the extra step we insist on, that she has to enable macro - [More about VPNs](https://www.cyberawake.co.uk/2022/09/29/more-about-vpns/) - A Virtual Private Network (VPN) is one of the basic tools of cyber security, ensuring you keep your data and your activities private wherever you go. - [How do you spot a malicious Word document?](https://www.cyberawake.co.uk/2022/09/22/how-do-you-spot-a-malicious-word-document/) - The main problem with this question, is that that the threat actors, (that is newspeak for hackers), work hard to make their malicious Word documents appear as friendly as possible. When not being friendly – here is a tax rebate for you – they will threaten – here is a tax demand – but in - [What do you know about your website?](https://www.cyberawake.co.uk/2022/09/15/what-do-you-know-about-your-website/) - On Tuesday I wrote a little about the opening hours of a cyber security review, going through some of the obvious technical areas that everyone thinks of, anti-virus and (hopefully) a ransomware secure back-up, to some of the less thought-about areas, the use of paper and how your team should print securely. We also talked - [How Gift Cards are exploited by Cyber Criminals](https://www.cyberawake.co.uk/2022/11/29/how-gift-cards-are-exploited-by-cyber-criminals/) - Phoney gift card offers are difficult to recognise. To be safer, check with originator of an instruction, and don’t follow links, type the store’s URL yourself. - [How much are you relying on your web designer to protect your reputation?](https://www.cyberawake.co.uk/2022/11/24/how-much-are-you-relying-on-your-web-designer-to-protect-your-reputation/) - WordPress Websites are cyber targets yet owners often do not know how they are set up and managed by their developer – you need to make it your business to know - [Just Check](https://www.cyberawake.co.uk/2022/11/22/just-check/) - Cyber Security Due Diligence I use and recommend to clients Microsoft 365 and Google Workspace and I do not run any due diligence before committing to these apps. I can think of a raft of other software (Adobe, Cisco, Apple etc) that fall into the category where their reputation validates their products. It does not - [Do you have a “work from anywhere” policy? We'll start with a VPN.](https://www.cyberawake.co.uk/2022/08/30/do-you-have-a-work-from-anywhere-policy-well-start-with-a-vpn/) - “Working from anywhere” can mean working somewhere really nice – the photo is from a lake side cabin at Pine Lake Country Club in Lancashire. Do you have a “work from anywhere” policy? I particularly like our “work from anywhere” policy, it means I can have some great toys… Sorry let me rephrase that in - [Why Should I Bother with Cyber Security Training for My Team?](https://www.cyberawake.co.uk/2022/07/26/why-should-i-bother-with-cyber-security-training-for-my-team/) - “Everyone in any organisation has a role to play in the cyber security planning and implementation for that organisation, so cyber security training has to be part of the security framework the organisation creates.” CyberAwake The question at the top of the page is a valid question for any business. Any extra expense on a - [Don’t be tempted to open that zip file A story of a phishing email](https://www.cyberawake.co.uk/2022/11/17/dont-be-tempted-to-open-that-zip-file-a-story-of-a-phishing-email/) - We must not get complacent as even the most obvious traps in phishing emails still catch the unwary or untrained. - [More on MFA and your risks when using it](https://www.cyberawake.co.uk/2022/11/15/more-on-mfa-and-your-risks-when-using-it/) - Multi-factor authentication (MFA) is a must-have cybersecurity defence, it has its problems which you need to address including user resistance and carelessness - [Something you know, something you have or something you are.](https://www.cyberawake.co.uk/2022/11/03/something-you-know-something-you-have-or-something-you-are/) - Multi-factor authentication (MFA) is a must-have cybersecurity defence. t has its problems which you need to address including user resistance and carelessness - [The Insider Threat – History is a Circle!](https://www.cyberawake.co.uk/2022/10/25/the-insider-threat-history-is-a-circle/) - Sometimes change causes discontent, tempting staff to take data and property if they leave. Improve morale with weekly get-togethers, but also monitor activity. - [Why I do not like “Meet the Team” web pages](https://www.cyberawake.co.uk/2022/10/18/why-i-do-not-like-meet-the-team-web-pages/) - Email addresses and positions of staff are often found on websites this is useful OSINT to a threat actor and can be used in a business email compromise attack. - [Back again, because that insider threat has not gone away…](https://www.cyberawake.co.uk/2022/10/13/back-again-because-that-insider-threat-has-not-gone-away/) - Whilst you hope your team members share your dedication to the organisation, proactive defence of your information against insider threat is well advised. - [The Insider Threat – the threat landscape and the first steps…](https://www.cyberawake.co.uk/2022/10/11/the-insider-threat-the-threat-landscape-and-the-first-steps/) - Business cannot operate without trusting people but the risk must be recognised and data shared on a need to know basis called the Principle of Least Privilege. - [Why you should care about the TLA AAA!](https://www.cyberawake.co.uk/2022/09/06/why-you-should-care-about-the-tla-aaa/) - Let’s start this post by outlining what I mean by AAA: Authentication – Authorisation - Accountability Authentication. For even the most basic cyber security you must authenticate every user who has access to your information. This should include making the use of multi-factor authentication (MFA) compulsory and, if possible, doing away with passwords altogether. Multi-factor - [You Still Need Great Cyber Security Even When You Are Working Anywhere](https://www.cyberawake.co.uk/2022/09/01/you-still-need-great-cyber-security-even-when-you-are-working-anywhere/) - Following my blog on Tuesday about VPNs and security when “working anywhere”, including on holiday, here is a revised version of an article I wrote during Pandemic Lockdown #1. These were tips for organisations moving their operations to employee homes for the first time, but these can easily be adapted for the ongoing hybrid work - [When technical cyber security fails you…](https://www.cyberawake.co.uk/2022/07/28/when-technical-cyber-security-fails-you/) - It is not unreasonable to say that ransomware is at epidemic levels, report after report says that malware, ransomware and cyber extortion is on the rise (Beaman, Barkworth, Akande, Hakak and Khan. 2021 and Oz, Aris, Levi and Uluagac. 2021), so we all take precautions to protect our organisations. Many of those cyber security defences ## Pages - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Home](https://www.cyberawake.co.uk/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [Cyber Awareness Training](https://www.cyberawake.co.uk/cyber-awareness-training/) - Bringing Cyber Awareness to Employees is the number one protection you can get for your organisation. Unaware employees trigger 90% of Cyber attacks. - [Home OLD](https://www.cyberawake.co.uk/home-old/) - Expert Cyber Security Services in Lincoln and Nottingham. Professional Services including Testing, Remediation, Response, Policies and Cyber Security Awareness. - [School Risk Protection Arrangement (RPA) - Cyber Cover Conditions](https://www.cyberawake.co.uk/school-risk-protection-arrangement-rpa-cyber-cover-conditions/) - Schools that do not follow Cyber Security best practices are often refused their School Risk Protection Arrangement (RPA), 5 Steps that you need to consider - [School NCSC Training for Staff Online](https://www.cyberawake.co.uk/school-ncsc-training-for-staff-online/) - Bringing Cyber Awareness to Employees is the number one protection you can get for your organisation. Unaware employees trigger 90% of Cyber attacks. - [Contact](https://www.cyberawake.co.uk/contact/) - Contact 01522 508089 hello@cyberwake.co.uk Lincoln, UK Name Business Name Phone Email Message Send - [Cyber Security Services Lincoln Lincolnshire](https://www.cyberawake.co.uk/cyber-security-services-lincoln-lincolnshire/) - Cyber Security Services And Cyber Awareness in Lincoln The No1 protection from cyber attacks is to train your team to protect your business. 90% of attacks are triggered by your employees. Our E-Learning Courses If employees can’t recognise threats… How can they protect your business? Why Us? You're in Safe Hands Our large multi-disciplined team - [Profile](https://www.cyberawake.co.uk/profile/) - settings [profile-first-name] [profile-last-name] [profile-bio] person About create Posts comment Comments Username[profile-username]Email Address[profile-email]First Name[profile-first-name]Last Name[profile-last-name]Websitehttp://[profile-website]Bio[profile-bio] - [Partner With Us](https://www.cyberawake.co.uk/partner-with-us/) - We are proactively looking for trusted entities with their customers; to work in partnership to offer all or part of our services. We also work with several IT companies offering expert consultancy and incident response. If you are interested in partnering with us, please get in touch with us today via the form below. Name - [Order Failed](https://www.cyberawake.co.uk/order-failed-2/) - Your transaction failed, please try again or contact support. - [Checkout](https://www.cyberawake.co.uk/checkout-2/) - Your basket is currently empty. Click here to get started. - [Order Confirmation](https://www.cyberawake.co.uk/order-confirmation/) - Thank you for your order! Invalid order - [Order Failed](https://www.cyberawake.co.uk/order-failed/) - Your transaction failed, please try again or contact support. - [Checkout](https://www.cyberawake.co.uk/checkout-3/) - Your basket is currently empty. Click here to get started. - [Order Confirmation](https://www.cyberawake.co.uk/order-confirmation-2/) - Thank you for your order! Invalid order - [Clive Catton MSc (Cybersecurity)](https://www.cyberawake.co.uk/clive-catton-msc-cybersecurity/) - Clive is the cyber security consultant for CyberAwake. He recently graduated from Edinburgh Napier University with an MSc in Advanced Computer Security and Digital Forensics - this course is certified by the Nation Cyber Security Centre. His dissertation was on data privacy and classification in small businesses using Microsoft 365 for Business. The degree is - [Courses](https://www.cyberawake.co.uk/courses/) - This is CyberAwake’s basic unit on cyber security, introducing key ideas that everyone needs to master to make themselves secure in the modern connected world. - [About Us](https://www.cyberawake.co.uk/about-us/) - Our founding principles are that Cyber Security should be appropriate to your business and focused initially on the most significant risks. - [Small Print](https://www.cyberawake.co.uk/small-print/) - Website usage terms and conditions Welcome to our website. If you continue to browse and use this website, you are agreeing to comply with and be bound by the following terms and conditions of use, which together with our privacy policy govern CyberAwake’s relationship with you in relation to this website. If you disagree with - [Cyber security news](https://www.cyberawake.co.uk/cyber-security-news/) - [Login/Register](https://www.cyberawake.co.uk/login/) - Student Details Account Details Login - [People](https://www.cyberawake.co.uk/people/) - Cyber Awake Employees = Cyber Secure Business Your staff are unwitting targets by cybercriminals. They will use your employee's personal information from social media to lure them into performing actions to bypass your existing security, to blackmail, steal data or money from your organisation. How many of your employees use the same password for Facebook - [All Courses](https://www.cyberawake.co.uk/course-list/) - 49.99 Cyber Security Essentials Enroll Now - [Group Registration](https://www.cyberawake.co.uk/group-registration/) - First Name Last Name Username User Email User Password Confirm Password Group Code By using this form you agree with the storage and handling of your data by this website in accordance with our Privacy Policy Cancel Submit Please wait... - [Groups Dashboard](https://www.cyberawake.co.uk/groups-dashboard/) - [Recommended Products](https://www.cyberawake.co.uk/recommended-products/) - [Groups](https://www.cyberawake.co.uk/groups/) - [Members](https://www.cyberawake.co.uk/members/) ## Products - [Cyber Security Essentials - Online Course - Individual](https://www.cyberawake.co.uk/product/cyber-essentials-bronze/) - Cyber Security Essentials – Basic training for one person... - [Cyber Security Essentials – Online Course - Business](https://www.cyberawake.co.uk/product/cyber-essentials-silver/) - Cybercriminals are consistently using more elaborate methods to trick your staff; Keep your employees up-to-date, with course updates on the latest security threats and trends. Wake Up Your Team to Cyber Security with our Cyber Security Essentials Course. This course covers all the essential information every employee should know to protect your organisation from typical cybercrime. Access anywhere and at any time our Online – Cyber Security Essential Course. Non-technical video content, delivered in bite-sized elements, covering the core elements to help your employee protect your organisation. Content Re-enforcement Quiz, after every chapter. Exam with Certification on completion. Keep your team updated – new content covering the latest security threats and trends to maximise their situation awareness. Everything you need to know: Password Management Email Security Phishing & Spear Phishing Safe Remote Working Being Secure Online Social Engineering Safe Fund Transfers Reused Passwords It is delivered in a non-technical way by genuine industry experts. ## Courses - [Cyber Security Essentials](https://www.cyberawake.co.uk/courses/cyber-security-essentials/) - What every employee must know. This is CyberAwake’s basic unit on cyber security, introducing key ideas that everyone needs to master to make themselves secure in the modern connected world. ## Lessons - [Email Security Consequences, Impact, and Mitigation](https://www.cyberawake.co.uk/lessons/email-security-consequences-impact-and-mitigation/) - [Email Security](https://www.cyberawake.co.uk/lessons/email-security/) - [Social Engineering](https://www.cyberawake.co.uk/lessons/social-engineering/) - [Passwords](https://www.cyberawake.co.uk/lessons/passwords-2/) ## Topics - [Passwords Parts 1 & 2](https://www.cyberawake.co.uk/topic/passwords-parts-1-2/) - [Passwords Part 1](https://www.cyberawake.co.uk/topic/passwords-part-1/) - [Passwords Part 3](https://www.cyberawake.co.uk/topic/passwords-part-3/) - [MFA Part 1](https://www.cyberawake.co.uk/topic/mfa-part-1/) - [Keeping Passwords Secret Part 1](https://www.cyberawake.co.uk/topic/keeping-passwords-secret-part-1/) - [MFA Part 2](https://www.cyberawake.co.uk/topic/mfa-part-2/) - [Keeping Passwords Secret Part 2](https://www.cyberawake.co.uk/topic/keeping-passwords-secret-part-2/) - [Keeping Passwords Secret Part 3](https://www.cyberawake.co.uk/topic/keeping-passwords-secret-part-3/) - [Social Engineering Part 1](https://www.cyberawake.co.uk/topic/social-engineering-part-1/) - [Social Engineering Part 2](https://www.cyberawake.co.uk/topic/social-engineering-part-2/) - [Security, Phishing and Spam Part 1](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-1/) - [Security, Phishing and Spam Part 3](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-3/) - [Security, Phishing and Spam Part 4](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-4/) - [Security, Phishing and Spam Part 5](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-5/) - [Impact and Mitigation Part 2](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-7/) - [Impact and Mitigation Part 3](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-8/) - [Impact and Mitigation Part 4](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-9/) - [More Mitigation](https://www.cyberawake.co.uk/topic/more-mitigation/) - [Impact and Mitigation Part 1](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-6/) - [Security, Phishing and Spam Part 2](https://www.cyberawake.co.uk/topic/security-phishing-and-spam-part-2/) - [Consequences, Impact, and Mitigation Supporting Documentation](https://www.cyberawake.co.uk/topic/consequences-impact-and-mitigation-supporting-documentation/) - [Email Security Supporting Documentation](https://www.cyberawake.co.uk/topic/email-security-supporting-documentation/) - [Topic](https://www.cyberawake.co.uk/topic/topic-2/) - [Passwords Supporting Documentation](https://www.cyberawake.co.uk/topic/passwords-supporting-documentation/) - [Topic](https://www.cyberawake.co.uk/topic/topic/) - [Passwords](https://www.cyberawake.co.uk/topic/passwords/) ## Quizzes - [Social Engineering Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/social-engineering-lesson-exam-bank/) - [Email Security Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/email-security-lesson-exam-bank/) - [Password Section Exam](https://www.cyberawake.co.uk/quizzes/password-section-exam/) - An exam covering what you have leant so far about passwords, MFA and keeping passwords secret. An 80% or higher score will gain a certificate of completion. - [Security, Phishing and Spam Learning Reinforcement](https://www.cyberawake.co.uk/quizzes/security-phishing-and-spam-learning-reinforcement/) - [MFA Quick Test](https://www.cyberawake.co.uk/quizzes/mfa-quick-test/) - [Spoofing & Ransomware Quiz](https://www.cyberawake.co.uk/quizzes/spoofing-ransomware-quiz/) - Born in the trenches of low and no-budget filmmaking by an active indie filmmaker, this course won’t waste your time with irrelevant and outdated theory – you learn what you really need to know to get your story idea out of your head and on the written page in a format that can be shot - [Basic Health Check Quiz](https://www.cyberawake.co.uk/quizzes/basic-health-check-quiz/) - [Core Business Security Quiz](https://www.cyberawake.co.uk/quizzes/core-business-security-quiz/) - Applied physics motion and force multiple choice questions (MCQs), applied physics motion and force quiz answers, applied physics test prep 1 to learn online physics courses for online classes. Velocity time graph MCQs, applied physics motion and force quiz questions and answers for admission and merit scholarships test. MCQs on Applied Physics Motion & - [Passwords Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/passwords-lesson-exam-bank/) - [MFA Lessons Exam Bank](https://www.cyberawake.co.uk/quizzes/mfa-lessons-exam-bank/) - [Impact Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/impact-lesson-exam-bank/) - [Mitigation Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/mitigation-exam-bank/) - [Passwords Quick Test](https://www.cyberawake.co.uk/quizzes/passwords-quick-test/) - [Keeping Passwords Secret Quick Test](https://www.cyberawake.co.uk/quizzes/keeping-passwords-secret-quick-test/) - [Keeping Passwords Secret Lesson Exam Bank](https://www.cyberawake.co.uk/quizzes/keeping-passwords-secret-lesson-exam-bank/) - [Cyber Security Quiz](https://www.cyberawake.co.uk/quizzes/cyber-security-quiz/) ## Certificates - [Certficate of Completion](https://www.cyberawake.co.uk/certificates/13964/) - CERTIFICATE OFCOMPLETION This award is presented to For - [Demo Certificate](https://www.cyberawake.co.uk/certificates/demo-certificate-2/) - This is a test certificate - [Demo Certificate](https://www.cyberawake.co.uk/certificates/demo-certificate/) - This is a test certificate ## Categories - [Latest](https://www.cyberawake.co.uk/category/latest/) - [Training](https://www.cyberawake.co.uk/category/training/) - [Cyber Security](https://www.cyberawake.co.uk/category/cyber-security/) - [General](https://www.cyberawake.co.uk/category/general/) - [Privacy](https://www.cyberawake.co.uk/category/privacy/) - [Website Security](https://www.cyberawake.co.uk/category/website-security/) - [Email](https://www.cyberawake.co.uk/category/email/) - [Devices](https://www.cyberawake.co.uk/category/devices/) - [Governance](https://www.cyberawake.co.uk/category/governance/) ## Tags - [email](https://www.cyberawake.co.uk/tag/email/) - [email threat](https://www.cyberawake.co.uk/tag/email-threat/) - [phishing](https://www.cyberawake.co.uk/tag/phishing/) - [social engineering](https://www.cyberawake.co.uk/tag/social-engineering/) - [authentication](https://www.cyberawake.co.uk/tag/authentication/) - [authorisation](https://www.cyberawake.co.uk/tag/authorisation/) - [accountability](https://www.cyberawake.co.uk/tag/accountability/) - [training](https://www.cyberawake.co.uk/tag/training/) - [cyber security](https://www.cyberawake.co.uk/tag/cyber-security/) - [cybersecurity](https://www.cyberawake.co.uk/tag/cybersecurity/) - [threat landscape](https://www.cyberawake.co.uk/tag/threat-landscape/) - [ransomware](https://www.cyberawake.co.uk/tag/ransomware/) - [data breach](https://www.cyberawake.co.uk/tag/data-breach/) - [spyware](https://www.cyberawake.co.uk/tag/spyware/) - [malware](https://www.cyberawake.co.uk/tag/malware/) - [anti-virus](https://www.cyberawake.co.uk/tag/anti-virus/) - [USB memory stick](https://www.cyberawake.co.uk/tag/usb-memory-stick/) - [policies and procedures](https://www.cyberawake.co.uk/tag/policies-and-procedures/) - [academic paper](https://www.cyberawake.co.uk/tag/academic-paper/) - [research](https://www.cyberawake.co.uk/tag/research/) - [UK Government](https://www.cyberawake.co.uk/tag/uk-government/) - [Octagon Technology](https://www.cyberawake.co.uk/tag/octagon-technology/) - [Cyber-Attack](https://www.cyberawake.co.uk/tag/cyber-attack/) - [Word](https://www.cyberawake.co.uk/tag/word/) - [The National Cyber Security Centre](https://www.cyberawake.co.uk/tag/the-national-cyber-security-centre/) - [National Cyber Security Centre](https://www.cyberawake.co.uk/tag/national-cyber-security-centre/) - [ICO](https://www.cyberawake.co.uk/tag/ico/) - [NCSC](https://www.cyberawake.co.uk/tag/ncsc/) - [Microsoft Office](https://www.cyberawake.co.uk/tag/microsoft-office/) - [Microsoft 365](https://www.cyberawake.co.uk/tag/microsoft-365/) - [Microsoft Exchange](https://www.cyberawake.co.uk/tag/microsoft-exchange/) - [Out of Office notification](https://www.cyberawake.co.uk/tag/out-of-office-notification/) - [business email compromise](https://www.cyberawake.co.uk/tag/business-email-compromise/) - [BEC](https://www.cyberawake.co.uk/tag/bec/) - [Microsoft](https://www.cyberawake.co.uk/tag/microsoft/) - [Microsoft Office macros](https://www.cyberawake.co.uk/tag/microsoft-office-macros/) - [VBA macros](https://www.cyberawake.co.uk/tag/vba-macros/) - [internet](https://www.cyberawake.co.uk/tag/internet/) - [Office apps](https://www.cyberawake.co.uk/tag/office-apps/) - [Melissa virus](https://www.cyberawake.co.uk/tag/melissa-virus/) - [Follina](https://www.cyberawake.co.uk/tag/follina/) - [VPN](https://www.cyberawake.co.uk/tag/vpn/) - [Virtual Private Network](https://www.cyberawake.co.uk/tag/virtual-private-network/) - [AAA](https://www.cyberawake.co.uk/tag/aaa/) - [travel](https://www.cyberawake.co.uk/tag/travel/) - [working from anywhere](https://www.cyberawake.co.uk/tag/working-from-anywhere/) - [COVID-19](https://www.cyberawake.co.uk/tag/covid-19/) - [London](https://www.cyberawake.co.uk/tag/london/) - [routers](https://www.cyberawake.co.uk/tag/routers/) - [information security](https://www.cyberawake.co.uk/tag/information-security/) - [Simone Jeurissen MSc](https://www.cyberawake.co.uk/tag/simone-jeurissen-msc/) - [2FA](https://www.cyberawake.co.uk/tag/2fa/) - [DFA](https://www.cyberawake.co.uk/tag/dfa/) - [Dual Factor Authentication](https://www.cyberawake.co.uk/tag/dual-factor-authentication/) - [MFA](https://www.cyberawake.co.uk/tag/mfa/) - [Two Factor Authentication](https://www.cyberawake.co.uk/tag/two-factor-authentication/) - [Multi-Factor Authentication](https://www.cyberawake.co.uk/tag/multi-factor-authentication/) - [cyber security investigation](https://www.cyberawake.co.uk/tag/cyber-security-investigation/) - [USB portable storage](https://www.cyberawake.co.uk/tag/usb-portable-storage/) - [insider threat](https://www.cyberawake.co.uk/tag/insider-threat/) - [remote monitoring and management](https://www.cyberawake.co.uk/tag/remote-monitoring-and-management/) - [SanDisk](https://www.cyberawake.co.uk/tag/sandisk/) - [encryption](https://www.cyberawake.co.uk/tag/encryption/) - [BBC](https://www.cyberawake.co.uk/tag/bbc/) - [Bleeping Computers](https://www.cyberawake.co.uk/tag/bleeping-computers/) - [Western Digital](https://www.cyberawake.co.uk/tag/western-digital/) - [trust](https://www.cyberawake.co.uk/tag/trust/) - [data leak](https://www.cyberawake.co.uk/tag/data-leak/) - [data theft](https://www.cyberawake.co.uk/tag/data-theft/) - [OneNOte](https://www.cyberawake.co.uk/tag/onenote/) - [paper](https://www.cyberawake.co.uk/tag/paper/) - [CCTV](https://www.cyberawake.co.uk/tag/cctv/) - [The Guardian](https://www.cyberawake.co.uk/tag/the-guardian/) - [website security](https://www.cyberawake.co.uk/tag/website-security/) - [WordPress](https://www.cyberawake.co.uk/tag/wordpress/) - [web developers](https://www.cyberawake.co.uk/tag/web-developers/) - [reputation](https://www.cyberawake.co.uk/tag/reputation/) - [personally identifiable information](https://www.cyberawake.co.uk/tag/personally-identifiable-information/) - [PII](https://www.cyberawake.co.uk/tag/pii/) - [ecommerce](https://www.cyberawake.co.uk/tag/ecommerce/) - [UKGDPR](https://www.cyberawake.co.uk/tag/ukgdpr/) - [Data Protection Act](https://www.cyberawake.co.uk/tag/data-protection-act/) - [Open Office format](https://www.cyberawake.co.uk/tag/open-office-format/) - [OOXML](https://www.cyberawake.co.uk/tag/ooxml/) - [BYOD](https://www.cyberawake.co.uk/tag/byod/) - [Bring Your Own Device](https://www.cyberawake.co.uk/tag/bring-your-own-device/) - [Pinciple of Least Privilege](https://www.cyberawake.co.uk/tag/pinciple-of-least-privilege/) - [Wired UK](https://www.cyberawake.co.uk/tag/wired-uk/) - [Smart Thinking Solutions](https://www.cyberawake.co.uk/tag/smart-thinking-solutions/) - [holidays](https://www.cyberawake.co.uk/tag/holidays/) - [coffee shops](https://www.cyberawake.co.uk/tag/coffee-shops/) - [Apple](https://www.cyberawake.co.uk/tag/apple/) - [smartphones](https://www.cyberawake.co.uk/tag/smartphones/) - [iOS VPN](https://www.cyberawake.co.uk/tag/ios-vpn/) - [iOS](https://www.cyberawake.co.uk/tag/ios/) - [information segregation](https://www.cyberawake.co.uk/tag/information-segregation/) - [role based access control](https://www.cyberawake.co.uk/tag/role-based-access-control/) - [Information Management](https://www.cyberawake.co.uk/tag/information-management/) - [CEO](https://www.cyberawake.co.uk/tag/ceo/) - [OSINT](https://www.cyberawake.co.uk/tag/osint/) - [open source intelligence](https://www.cyberawake.co.uk/tag/open-source-intelligence/) - [USB storage devices](https://www.cyberawake.co.uk/tag/usb-storage-devices/) - [Zoom](https://www.cyberawake.co.uk/tag/zoom/) - [logs](https://www.cyberawake.co.uk/tag/logs/) - [RMM](https://www.cyberawake.co.uk/tag/rmm/) - [Teams](https://www.cyberawake.co.uk/tag/teams/) - [CISA](https://www.cyberawake.co.uk/tag/cisa/) - [Cybersecurity and Infrastructure Security Agency](https://www.cyberawake.co.uk/tag/cybersecurity-and-infrastructure-security-agency/) - [authenticator apps](https://www.cyberawake.co.uk/tag/authenticator-apps/) - [text messaging](https://www.cyberawake.co.uk/tag/text-messaging/) - [cyber security fatigue](https://www.cyberawake.co.uk/tag/cyber-security-fatigue/) - [Due Diligence](https://www.cyberawake.co.uk/tag/due-diligence/) - [software](https://www.cyberawake.co.uk/tag/software/) - [zero-day](https://www.cyberawake.co.uk/tag/zero-day/) - [governance](https://www.cyberawake.co.uk/tag/governance/) - [Plugins](https://www.cyberawake.co.uk/tag/plugins/) - [cloud outsourcing](https://www.cyberawake.co.uk/tag/cloud-outsourcing/) - [scams](https://www.cyberawake.co.uk/tag/scams/) - [gift cards](https://www.cyberawake.co.uk/tag/gift-cards/) - [phone calls](https://www.cyberawake.co.uk/tag/phone-calls/) - [Christmas](https://www.cyberawake.co.uk/tag/christmas/) - [back-up](https://www.cyberawake.co.uk/tag/back-up/) - [business continuity](https://www.cyberawake.co.uk/tag/business-continuity/) - [resilience](https://www.cyberawake.co.uk/tag/resilience/) - [double-extortion](https://www.cyberawake.co.uk/tag/double-extortion/) - [redacting](https://www.cyberawake.co.uk/tag/redacting/) - [pdf](https://www.cyberawake.co.uk/tag/pdf/) - [hybrid working](https://www.cyberawake.co.uk/tag/hybrid-working/) - [patches](https://www.cyberawake.co.uk/tag/patches/) - [updates](https://www.cyberawake.co.uk/tag/updates/) - [planning](https://www.cyberawake.co.uk/tag/planning/) - [State Sponsored Cyber Attacks](https://www.cyberawake.co.uk/tag/state-sponsored-cyber-attacks/) - [credentials](https://www.cyberawake.co.uk/tag/credentials/) - [blame](https://www.cyberawake.co.uk/tag/blame/) - [Renaud](https://www.cyberawake.co.uk/tag/renaud/) - [Musarurwa](https://www.cyberawake.co.uk/tag/musarurwa/) - [Zimmermann](https://www.cyberawake.co.uk/tag/zimmermann/) - [Liquor Control Board of Ontario](https://www.cyberawake.co.uk/tag/liquor-control-board-of-ontario/) - [Canada](https://www.cyberawake.co.uk/tag/canada/) - [LCBO](https://www.cyberawake.co.uk/tag/lcbo/) - [web skimming](https://www.cyberawake.co.uk/tag/web-skimming/) - [credit cards](https://www.cyberawake.co.uk/tag/credit-cards/) - [Credential Stuffing](https://www.cyberawake.co.uk/tag/credential-stuffing/) - [FIDO](https://www.cyberawake.co.uk/tag/fido/) - [passwords](https://www.cyberawake.co.uk/tag/passwords/) - [passwordlessness](https://www.cyberawake.co.uk/tag/passwordlessness/) - [passwordless authentication](https://www.cyberawake.co.uk/tag/passwordless-authentication/) - [Fast Identity Online](https://www.cyberawake.co.uk/tag/fast-identity-online/) - [credential sharing](https://www.cyberawake.co.uk/tag/credential-sharing/) - [planning and preparation](https://www.cyberawake.co.uk/tag/planning-and-preparation/) - [incident response](https://www.cyberawake.co.uk/tag/incident-response/) - [OneDrive](https://www.cyberawake.co.uk/tag/onedrive/) - [SharePoint](https://www.cyberawake.co.uk/tag/sharepoint/) - [Cyber Security Master Document](https://www.cyberawake.co.uk/tag/cyber-security-master-document/) - [CyberAwake](https://www.cyberawake.co.uk/tag/cyberawake/) - [Longer Reads](https://www.cyberawake.co.uk/tag/longer-reads/) - [Incident Response Plan](https://www.cyberawake.co.uk/tag/incident-response-plan/) - [extortion ransomware](https://www.cyberawake.co.uk/tag/extortion-ransomware/) - [encryption ransomware](https://www.cyberawake.co.uk/tag/encryption-ransomware/) - [Incident Response Training](https://www.cyberawake.co.uk/tag/incident-response-training/) - [incident response communications](https://www.cyberawake.co.uk/tag/incident-response-communications/) - [cyber security culture](https://www.cyberawake.co.uk/tag/cyber-security-culture/) - [defence in depth](https://www.cyberawake.co.uk/tag/defence-in-depth/) - [Security Operations Centre](https://www.cyberawake.co.uk/tag/security-operations-centre/) - [firewalls](https://www.cyberawake.co.uk/tag/firewalls/) - [network](https://www.cyberawake.co.uk/tag/network/) - [code](https://www.cyberawake.co.uk/tag/code/) - [risk](https://www.cyberawake.co.uk/tag/risk/) - [Smart Thinking](https://www.cyberawake.co.uk/tag/smart-thinking/) - [biometrics](https://www.cyberawake.co.uk/tag/biometrics/) - [Identity](https://www.cyberawake.co.uk/tag/identity/) - [Passwordless](https://www.cyberawake.co.uk/tag/passwordless/) - [The Wednesday Bit](https://www.cyberawake.co.uk/tag/the-wednesday-bit/) - [information segmentation](https://www.cyberawake.co.uk/tag/information-segmentation/) - [RBAC](https://www.cyberawake.co.uk/tag/rbac/) - [ABAC](https://www.cyberawake.co.uk/tag/abac/) - [Attribute Based Access Control](https://www.cyberawake.co.uk/tag/attribute-based-access-control/) - [The Register](https://www.cyberawake.co.uk/tag/the-register/) - [risk assessment](https://www.cyberawake.co.uk/tag/risk-assessment/) - [Swansea University](https://www.cyberawake.co.uk/tag/swansea-university/) - [Ukraine](https://www.cyberawake.co.uk/tag/ukraine/) - [keyboard walk](https://www.cyberawake.co.uk/tag/keyboard-walk/) - [Password Mini-Series](https://www.cyberawake.co.uk/tag/password-mini-series/) - [security theatre](https://www.cyberawake.co.uk/tag/security-theatre/) - [password fatigue](https://www.cyberawake.co.uk/tag/password-fatigue/) - [LinkedIn](https://www.cyberawake.co.uk/tag/linkedin/) - [Travelling](https://www.cyberawake.co.uk/tag/travelling/) - [Work Anywhere](https://www.cyberawake.co.uk/tag/work-anywhere/) - [bank](https://www.cyberawake.co.uk/tag/bank/) - [Google](https://www.cyberawake.co.uk/tag/google/) - [Bill Toulas](https://www.cyberawake.co.uk/tag/bill-toulas/) - [BleepingComputer](https://www.cyberawake.co.uk/tag/bleepingcomputer/) - [presentations](https://www.cyberawake.co.uk/tag/presentations/) - [Whale Phishing](https://www.cyberawake.co.uk/tag/whale-phishing/) - [device security](https://www.cyberawake.co.uk/tag/device-security/) - [hardware](https://www.cyberawake.co.uk/tag/hardware/) - [app store](https://www.cyberawake.co.uk/tag/app-store/) - [Android](https://www.cyberawake.co.uk/tag/android/) - [Compliance](https://www.cyberawake.co.uk/tag/compliance/) - [Monitoring](https://www.cyberawake.co.uk/tag/monitoring/) - [PoLP](https://www.cyberawake.co.uk/tag/polp/) - [Principle Of Least Privilege](https://www.cyberawake.co.uk/tag/principle-of-least-privilege/) - [Security Operations Centre As A Service](https://www.cyberawake.co.uk/tag/security-operations-centre-as-a-service/) - [SOC](https://www.cyberawake.co.uk/tag/soc/) - [Online Services](https://www.cyberawake.co.uk/tag/online-services/) - [Secrecy](https://www.cyberawake.co.uk/tag/secrecy/) - [Privacy](https://www.cyberawake.co.uk/tag/privacy/) - [Microsoft OneNote](https://www.cyberawake.co.uk/tag/microsoft-onenote/) - [BitLocker](https://www.cyberawake.co.uk/tag/bitlocker/) - [Windows](https://www.cyberawake.co.uk/tag/windows/) - [end-of-life](https://www.cyberawake.co.uk/tag/end-of-life/) - [EOL](https://www.cyberawake.co.uk/tag/eol/) - [social media](https://www.cyberawake.co.uk/tag/social-media/) - [QR Codes](https://www.cyberawake.co.uk/tag/qr-codes/) - [End To End Encryption](https://www.cyberawake.co.uk/tag/end-to-end-encryption/) - [infrastructure](https://www.cyberawake.co.uk/tag/infrastructure/) - [work from anywhere](https://www.cyberawake.co.uk/tag/work-from-anywhere/) - [information catagorisation](https://www.cyberawake.co.uk/tag/information-catagorisation/) - [Ada Lovelace](https://www.cyberawake.co.uk/tag/ada-lovelace/) - [John Oliver](https://www.cyberawake.co.uk/tag/john-oliver/) - [HBO](https://www.cyberawake.co.uk/tag/hbo/) - [YouTube](https://www.cyberawake.co.uk/tag/youtube/) - [Meta](https://www.cyberawake.co.uk/tag/meta/) - [TikTok](https://www.cyberawake.co.uk/tag/tiktok/) - [web browsers](https://www.cyberawake.co.uk/tag/web-browsers/) - [Bruce Schneier](https://www.cyberawake.co.uk/tag/bruce-schneier/) - [technology](https://www.cyberawake.co.uk/tag/technology/) - [credential theft](https://www.cyberawake.co.uk/tag/credential-theft/) - [identity theft](https://www.cyberawake.co.uk/tag/identity-theft/) - [Push Security](https://www.cyberawake.co.uk/tag/push-security/) - [Ravie Lakshmanan](https://www.cyberawake.co.uk/tag/ravie-lakshmanan/) - [Snowflake](https://www.cyberawake.co.uk/tag/snowflake/) - [The Hacker News](https://www.cyberawake.co.uk/tag/the-hacker-news/) - [back-ups](https://www.cyberawake.co.uk/tag/back-ups/) - [coffee](https://www.cyberawake.co.uk/tag/coffee/) - [new articles](https://www.cyberawake.co.uk/tag/new-articles/) - [cyber war](https://www.cyberawake.co.uk/tag/cyber-war/) - [espionage](https://www.cyberawake.co.uk/tag/espionage/) - [Edinburgh Napier University](https://www.cyberawake.co.uk/tag/edinburgh-napier-university/) - [open-source intelligence](https://www.cyberawake.co.uk/tag/open-source-intelligence-2/) - [Russia](https://www.cyberawake.co.uk/tag/russia/) - [CIA](https://www.cyberawake.co.uk/tag/cia/) - [confidentiality](https://www.cyberawake.co.uk/tag/confidentiality/) - [availability](https://www.cyberawake.co.uk/tag/availability/) - [integrity](https://www.cyberawake.co.uk/tag/integrity/) - [webinar](https://www.cyberawake.co.uk/tag/webinar/) ## Product categories - [Get Accredited](https://www.cyberawake.co.uk/product-category/get-accredited/) - [Training](https://www.cyberawake.co.uk/product-category/training/)