eMoney Logo
Mobile Menu Icon Close Mobile Menu Icon

Cybersecurity Awareness Month 2025

Information & Security October 1, 2025 enovak@emoneyadvisor.com

To celebrate Cybersecurity Awareness Month in October, the Information Security team will be sharing information and educational resources each week focused on defending human-centric threats. As the digital workspace expands, human-centric security challenges grow. This month, we will focus on best practices for identifying threats that target users across email and other digital channels. We will also review other tactics such as impersonation and supply chain fraud. Read on below for your weekly tips!


NEW! Virtual Cybersecurity Escape Room

New this year, we’re excited to announce a fun and engaging way to boost our cybersecurity awareness – a Virtual Cybersecurity Escape Room! This interactive challenge will test your cyber-smarts as you solve puzzles and uncover clues to “escape” while learning about key cybersecurity concepts. Available throughout the month, this 30-minute escape room features 3 levels with 4 challenges each. Solve challenges to earn points and progress to the next level. At the end of the month, we will be awarding eMpower points to participants with the top 3 point totals! Click here to read the FAQ.

  • 1st place: 150 points 
  • 2nd place: 75 points 
  • 3rd place: 25 points 

Ready to test your knowledge?  Click here to access the escape room. 


Week 1: Phishing in Messaging Apps

Cybercriminals are expanding their attacks beyond email, targeting platforms like Microsoft Teams, Slack and even LinkedIn. Cybercriminals typically pretend to be reputable companies, friends, or acquaintances in a fake message, which contains a link to a phishing website. Watch this short video to help you recognize these threats and make informed decisions to protect yourself and our organization from evolving risks. 


Week 2: Time to Think About…The Supply Chain

You may hear about supply chain attacks in the news, but what are they really?  A supply chain attack is a cyberattack that targets an organization by exploiting vulnerabilities in its supply chain, often through third-party vendors, suppliers, or software providers. Attackers infiltrate less-secure elements of the supply chain to compromise trusted software, hardware, or services, which are then used to gain unauthorized access to the target organization’s systems. Supply chain attacks are particularly dangerous due to their potential for widespread impact, as they leverage trusted connections to propagate malware or gain access to sensitive data. Watch this short video to learn more about supply chain attacks. 


Week 3: What is Spoofing?

Spoofing is a cyberattack technique where an attacker impersonates a trusted entity or source to deceive individuals, systems, or networks into providing sensitive information or granting unauthorized access. By falsifying data, such as email addresses, phone numbers, IP addresses, or website URLs, attackers create a false sense of legitimacy. Spoofing exploits trust in communication systems and is often a precursor to further attacks, such as phishing, malware distribution, or data theft.  Click here to learn more. 


Week 4: Business Email Compromise (BEC)

Business Email Compromise (BEC) is a sophisticated cyberattack targeting organizations by exploiting email systems to deceive employees, customers, or partners into performing unauthorized actions, typically financial transactions or data disclosures. In a BEC attack, cybercriminals often use social engineering, phishing, or email spoofing to impersonate trusted individuals, such as executives, vendors, or colleagues, to manipulate victims into transferring funds, sharing sensitive information, or approving fraudulent requests.  Click here to learn more on BEC attacks and how to identify them


Week 5: Very Attacked Person: Protecting Accounts

To conclude Cybersecurity Awareness Month, we want to highlight Very Attacked Persons (VAPs).  In this video, you can learn how and why attackers target certain individuals because of their status in the company or their access to privileged data and/or networks.  You will also learn how to recognize and understand the risks associated with account compromise. 

We hope you have enjoyed the cybersecurity awareness materials this month. Stay tuned for the winners of the Cybersecurity Escape Room! 

Leave a Reply

Your email address will not be published. Required fields are marked *