<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Email Security on S3H.com</title>
    <link>https://s3h.com/tags/email-security/</link>
    <description>Recent content in Email Security on S3H.com</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 19 Nov 2025 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://s3h.com/tags/email-security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Phishing Remains the Most Effective Attack Vector and Training Is Not Fixing It</title>
      <link>https://s3h.com/2025/11/19/phishing-remains-the-most-effective-attack-vector-and-training-is-not-fixing-it/</link>
      <pubDate>Wed, 19 Nov 2025 00:00:00 +0000</pubDate>
      <guid>https://s3h.com/2025/11/19/phishing-remains-the-most-effective-attack-vector-and-training-is-not-fixing-it/</guid>
      <description>&lt;p&gt;Phishing has been the leading initial access vector for enterprise breaches for over a decade. Security awareness training — the annual compliance exercise that organizations deploy to satisfy auditors and reduce cyber insurance premiums — has been the dominant organizational response for the same period. The training has not significantly reduced phishing click rates in most organizations. The reasons are structural, not motivational, and the solutions require technical controls rather than behavioral ones.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
