Information security training on a shoestring | Kaspersky official blog

Information security training on a shoestring | Kaspersky official blog

Disclaimer. This is the April Fools’ Day blog post. The methods of “cybersecurity trainings” described in it are not entirely ethical, and are not universally considered acceptable. We recommend that you think twice before using them in real life and ideally obtain the consent of the team for such actions beforehand.


When it comes to information security, the weakest link is — and always has been — humans. That’s why our blogposts often advise companies to provide cybersecurity trainings for employees. Unfortunately, not all companies can afford to allocate the necessary funds for this. Another problem is that not all employees take such lessons seriously, so the knowledge they acquire often remains purely theoretical.


The good news is that this problem can be solved without spending huge sums of money. Below are a few fun and effective ways to demonstrate to your dear colleagues the importance of information security.


Passwords on sticky notes and printouts


One of the most dangerous habits that, sadly, many office employees are still guilty of is noting down passwords on scraps of paper and leaving them in public view. Even thousands of memes down the years of passwords stuck on monitors have failed to curb this practice.


The threat here is obvious: anyone visiting the office can take out their phone and discreetly snap all sticky notes with account credentials that catch their eye. Sometimes notes with passwords accidentally go public. For example, it’s not uncommon for a password to get leaked during a workplace interview or through some office photo posted o ..

Support the originator by clicking the read the rest link below.