Latest articles
Two sessions: security awareness for phishing and social engineering, and data protection for handling personal data. With Riccardo Conti.
Spotting AI-generated phishing at work
Spotting AI-generated phishing: what changed with fluent scams, the SUPER 2026 campaign, and checks that still work in Swiss SMEs.
How to spot phishing emails at work
How to spot phishing emails: Swiss-style parcel, tax, bank, and Microsoft 365 traps, plus what to check before you click. For SMEs without a security team.
Invoice fraud with a changed IBAN: approval steps that protect finance
Invoice fraud with a changed IBAN often follows a hacked supplier email. How to verify bank details, pause payment, and fix the approval process.
CEO fraud in Switzerland: how it works and how finance can stop it
CEO fraud in Switzerland tricks finance into urgent payments. How the scam runs, the warning signs, and what to check before money leaves the account.
Is security awareness training mandatory in Switzerland?
Swiss law does not name security awareness training, but the FADP requires appropriate measures. Insurers, customers and ISO audits often ask for proof.
Security awareness training topics for Swiss SMEs
Which security awareness training topics belong in a session for Swiss SMEs: phishing, payments, passwords, reporting and role-specific risks.
Are phishing simulations allowed in Switzerland?
Phishing simulations are allowed in Switzerland if staff are told first and clicks are not used to judge a person. Swiss labour law, not German rules.
Clicked a phishing link at work: what now
Clicked a phishing link at work: disconnect, tell IT, and let them reset the mailbox. First hour for a Swiss team, not a private inbox.