What’s new
- E-vite phishing — A new briefing on how attackers use fake digital invitations from services like E-vite, Paperless Post, and Punchbowl to route employees to credential-stealing login pages or silent malware downloads.
- Working from home (2026) — A refreshed briefing on securing home workspaces, covering router hardening, Wi-Fi password hygiene, device separation, and account boundaries when working remotely.
Why it matters
E-vite phishing works because it exploits a category of email employees rarely scrutinize. A party invitation from a coworker feels benign, far more so than the generic account alert or shipping notice, and attackers know it. Users click faster on social lures than on transactional ones, and the credential harvest that follows is indistinguishable from any other phishing kit. This briefing gives employees the pattern to catch: unexpected invitations that push them to log in, create an account, or download a file just to view the invite.
Remote work remains a persistent coverage gap. Employees using home routers with default credentials, sharing Wi-Fi with roommates, and blending personal and work use on the same device are operating outside every corporate control the security team relies on. This refresh addresses the specific setup choices that matter most such as router credentials, Wi-Fi passwords, device separation, and account boundaries at home — turning “work from anywhere” into a defensible posture rather than a hidden coverage gap.
How to access it: These briefings are available in the Fable content catalog. Navigate to the Catalog in the Fable platform to find and deploy them.