CyberHoot’s Cybersecurity Newsletter: July 2026

21st July 2026 | Newsletters CyberHoot’s Cybersecurity Newsletter: July 2026

Welcome to CyberHoot’s July Newsletter!

Cybersecurity never rests, and this month is proof. While AI continues to reshape how we all work, it’s also reshaping how attackers operate. At the same time, major sporting events are once again giving cybercriminals irresistible opportunities to exploit excitement and emotion. The good news? Defenders have powerful new tools available as well, and one of the biggest improvements is finally leaving passwords behind.

Our lead story examines a real attack against a CPA firm that almost succeeded; not because of sophisticated malware, but because the attacker patiently built trust over weeks before using urgency and authority to convince an employee to click a malicious meeting link. It’s a reminder that today’s most successful attacks often target human psychology before they target technology.

From there, we explore a fascinating and concerning development in artificial intelligence. Researchers recently discovered ransomware functionality that an AI model effectively assembled without being explicitly taught how to create ransomware. It’s another example of how rapidly AI capabilities are evolving, and why organizations must assume attackers will continue gaining access to increasingly capable tools.

There is good news this month, too. CyberHoot has officially gone passwordless for administrators with native passkey support. Passwords remain one of the weakest links in cybersecurity, and passkeys eliminate many of the risks associated with stolen credentials, password reuse, and phishing. It’s one more step toward making strong security easier instead of harder.

Finally, with the FIFA World Cup captivating millions around the globe, scammers are already taking advantage of the excitement. Fake ticket sales, fraudulent streaming sites, travel scams, and phishing campaigns all surge during major international events. Whether you’re attending matches or simply watching from home, knowing what to look for can save you from becoming the next victim.

This month, we encourage you to:

  • Train employees to recognize urgency, authority, and emotional manipulation, not just suspicious links.
  • Continue strengthening defenses against AI-assisted attacks by reducing unnecessary risk and keeping systems current.
  • Enable passkeys wherever possible and begin moving away from passwords for critical accounts.
  • Stay alert for World Cup-themed scams targeting fans, travelers, and businesses alike.

Laugh. Learn. Hoot Up!

Craig CEO,
Co-Founder, CyberHoot


Urgency, Emotion, Authority: How One Scammer Almost Got Inside a CPA Firm


The Ransomware an AI Model Built Without Trying


CyberHoot Goes Fully Passwordless: Native Passkey Support Arrives for Administrators


Don’t Score an Own Goal: Outsmart World Cup 2026 Scams


CyberHoot has officially achieved a long-standing goal of being featured on the legendary “Security Now!” podcast with Leo Laporte and Steve Gibson. To be 100% clear, this is a paid sponsorship of the podcast.

In addition to that, Leo Laporte personally endorsed CyberHoot:

“When we got phished [before CyberHoot] it became pretty clear we needed to do more to protect our company. The same old training just wasn’t working. CyberHoot came to the rescue. It’s fun, our team loves it, and best of all, it’s helping to keep us safe. Hoot on!” — Leo Laporte

Please watch this quick 3-minute feature as Leo Laporte shares his experience with HootPhish and explains why CyberHoot’s positive reinforcement approach to phishing education caught his attention.


Liking CyberHoot? We need your help. Please leave us your review at G2.com!


Mary M. Project Manager – G2

For more information on how to leave a CyberHoot review, please watch the brief video overview below.  Note: to avoid fraudulent reviews, each review website will require to you to create and validate your identity through an email account registration process.



Passkey

passkey is a modern replacement for passwords. Instead of typing a password, users authenticate using something they already have (their phone, computer, or hardware security key) plus a biometric (fingerprint or Face ID) or device PIN. Behind the scenes, passkeys use public-key cryptography, making them resistant to phishing and credential theft.

Here’s how it works:

  • When you create a passkey, your device generates two cryptographic keys:
    • public key, which is stored by the website or application.
    • private key, which never leaves your device.
  • When you log in, the website sends a challenge that only your private key can sign.
  • Your fingerprint, face scan, or PIN simply unlocks the private key—it is not sent to the website.

Unlike passwords, there is nothing for an attacker to steal from the website’s database that can be reused elsewhere.

Click here to read more!



Please note: CyberHoot is upgrading all Power Users to Autopilot for free. Contact support@cyberhoot.com to schedule your free upgrade. Power platform will be retired later this year Sept. 2026.

Power Platform Release Notes

  • Updated AttackPhish ‘You’ve been phished’ page to use reseller/tenant logo.
  • Added IP Forwarding to get source IP of users.
  • Added IP Exclusions for AttackPhish Processing.
  • Added AttackPhish IP Exclusion List.
  • Standardize compliance % to (completed + non-overdue outstanding) / total.
  • Update dark web scan to skip emails that don’t contain the customers domain.
  • Updated dark web email alerts to only send to users in the system.
  • Update privacy policy and terms of service.
  • Reactivate existing manager instead of creating a duplicate on re-add.
  • Auto-submit My Assignments verify form when an email is passed in the URL.
  • Updated Cybersecurity Summary reports with design updates and condensed the outstanding and completed assignment tables.
  • Performance improvements.
  • Improved database performance for training assignment processing.
  • My Assignments design updates, HootPhish Challenge design updates, and Email templates design updates.
  • HootPhish Challenge Design Updates.
  • Redesign training results score display and quiz progress bar.
  • Use contrast-safe brand color for Cybersecurity Summary report section titles.
  • Add ability to view AttackPhish phishing emails by category.
  • Include tenant admins as recipients on automated AttackPhish results emails.
  • Update API docs: power-up customer_type enforcement, Videos/Dark Web/HootPhish sections, Custom Messaging section, doc-path fixes.
  • Show site log and tenant log times in the partner’s set timezone.

Autopilot Platform Release Notes

  • Updated tenant settings to allow for website to be changed.
  • Added category tags functionality to HootPhish.
  • Updated Next Action menu to dropdown button option.
  • Updated AttackPhish ‘You’ve been phished’ page to use reseller/tenant logo.
  • Added IP Forwarding to get source IP of users.
  • Added IP Exclusions for AttackPhish Processing.
  • Added AttackPhish IP Exclusion List.
  • Standardize compliance % to (completed + non-overdue outstanding) / total.
  • Show a prominent Entra ID/Google sync-failure banner on the Autopilot tenant dashboard when sync fails.
  • Update dark web scan to skip emails that don’t contain the customers domain.
  • Updated dark web email alerts to only send to users in the system.
  • Update privacy policy and terms of service.
  • Reactivate existing manager instead of creating a duplicate on re-add.
  • Auto-submit My Assignments verify form when an email is passed in the URL.
  • Updated Cybersecurity Summary reports with design updates and condensed the outstanding and completed assignment tables.
  • Performance improvements.
  • Improved database performance for training assignment processing.
  • My Assignments design updates, HootPhish Challenge design updates, and Email templates design updates.
  • Speed improvements for the Users table and training response queries.
  • Improved users table load times for tenants with large numbers of users.
  • Allow tenant admins to add CustomHoot quiz questions, scoped to their own tenant.
  • Add Landing Page URL field to CustomHoots manual AttackPhish.
  • Add per-campaign Landing Page URL to CustomHoots manual AttackPhish.
  • HootPhish Challenge Design Updates.
  • CustomHoots Custom Library & Navigation Updates.
  • Redesign training results score display and quiz progress bar.
  • Use contrast-safe brand color for Cybersecurity Summary report section titles.
  • Add ability to view AttackPhish phishing emails by category.
  • Include tenant admins as recipients on automated AttackPhish results emails.
  • Update API docs: power-up customer_type enforcement, Videos/Dark Web/HootPhish sections, Custom Messaging section, doc-path fixes.
  • Show site log and tenant log times in the partner’s set timezone.

We’re excited to introduce Custom AttackPhish, a new feature within CyberHoot’s Autopilot platform that gives administrators greater flexibility when running phishing simulations. With Custom AttackPhish, (located in our CustomHoots Power-Up) admins can create and launch customized phishing campaigns that better reflect the real-world threats their users may encounter.

This helps organizations deliver more relevant security awareness training while improving users’ ability to recognize and respond to phishing attempts.

If you need additional help, you can always reach our support team at support@cyberhoot.com.


Enroll in CyberHoot’s Referral Program today and start earning a 20% share of all revenue generated for one year by those who register through your exclusive referral link. As a referral partner, not only will you receive financial rewards, but you’ll also experience the satisfaction of aiding others in becoming more security-conscious, safeguarding them against cyber threats. Don’t hesitate, sign up now at https://cyberhoot.com/referral-program/.

Referral through Autopilot’s Dashboard:

Join CyberHoot in our mission to create a more aware and better secured world! Recommend CyberHoot Autopilot to a friend, and they will enjoy a complimentary first month. For every new sign up who uses your referral link, you will receive a free month added to your account. This offer is exclusively for first-time CyberHoot registrants.


Know someone who had a close call recently with a cyber attack, phishing email, or social engineering phone call?  Recommend CyberHoot’s free cybersecurity training.  They’ll receive six (6) videos (each video is 3-4min.) and one of our positive reinforcement, hyper-realistic, phishing simulations. All for free.

Registration: https://cyberhoot.com/individuals


Looking for additional resources?

CyberHoot Case-Studies

CyberHoot White Paper Download – How HootPhish Improves upon AttackPhish

All New: 2025 Infographics on Cybersecurity Statistics


Secure your business with CyberHoot Today!!!

Latest Blogs

Stay sharp with the latest security insights

Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.

Your Team Is Already Talking to AI. Here’s How to Keep IT Safe.

Your Team Is Already Talking to AI. Here’s How to Keep IT Safe.

AI tools moved into our everyday work-life incredibly fast! Someone on your team writes an email with ChatGPT....

Read more
What Flock Cameras Teach Every Business About Data and Trust

What Flock Cameras Teach Every Business About Data and Trust

You have seen them before. A small black camera on a pole near an intersection, a solar panel on top, quietly...

Read more
Urgency, Emotion, Authority: How One Scammer Almost Got Inside a CPA Firm

Urgency, Emotion, Authority: How One Scammer Almost Got Inside a CPA Firm

Tax season keeps accountants busy, and it keeps scammers busy too. Early this summer, a CPA firm became the...

Read more