{
  "id": 2354068,
  "title": "Name It, Frame It, Check It: A 3-Step Fix for Phishing",
  "url": "https://urgent.news/2026/08/21/name-it-frame-it-check-it-a-3-step-fix-for-phishing",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-21T06:10:41.000Z",
  "source": {
    "name": "HackerNoon",
    "slug": "hackernoon",
    "url": "https://hackernoon.com/name-it-frame-it-check-it-a-3-step-fix-for-phishing?source=rss"
  },
  "original_language": "en",
  "account": "A cognitive security researcher conducted an experiment to discover if focusing on neutral facts rather than emotions could help reduce phishing attempts. The researcher surveyed corporate workers and found that most executives considered superficial compliance as the most challenging problem. However, employees who are most familiar with security rules are sometimes still duped. The researcher then trained 24 participants from Reddit, half on common social engineering tactics and half on those tactics plus a method for analyzing emails objectively. The objective method involved finding the command, summarizing the email in third-person language, and checking with IT/Security if uncertain. After 14 days, the researcher sent all participants a surprise phishing test email. Six people from the control group fell for the test, while only one person from the experimental group responded. The researcher concluded that by focusing on looking for the command, summarizing the email message in third-person language, and checking with IT/Security if unsure, employees were more likely to make the right decision and avoid phishing attempts.",
  "summary": "Why do employees still fall for phishing after security training? A cognitive security experiment explores how objective thinking may reduce risk.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}