Phishing and Social Engineering

Cybersecurity
The topic combines phishing with follow-on fraud, account abuse, and weaknesses in organizational defenses. The emphasis is on practical attacker techniques and on what determines successful detection and response.

Key questions and insights

What techniques do attackers use in phishing and follow-on fraud?

Phishing often relies on prior target reconnaissance and the abuse of publicly available information.

Why does MFA and other control elements sometimes fail to stop an attack?

Attackers commonly chain phishing with abuse of existing accounts and poorly protected systems.

How quickly should an organization respond so the attack does not escalate?

MFA alone may not be enough if the user approves a fraudulent prompt or if it is missing across all systems.

What signals and logs help detect phishing and related incidents?

Fast response and strong incident response significantly reduce the impact of an attack.

How should security be set up to withstand a combination of old and new attack methods?

Anomaly detection and centralized log management improve visibility into attacks and shorten investigations.

How do fraudulent calls complement phishing via spoofing and deepfake voices?

Fraudulent calls can complement phishing using spoofing and deepfake voice.

Explore Blue Events Insights

Explore more themes and insights that connect conference know-how with practical business impact.

View all themes