Blog

Read the latest on social engineering attacks, product launches, and company news.

They Didn't Hack Axios. They Hacked the Axios Maintainer.
April 6, 2026

They Didn't Hack Axios. They Hacked the Axios Maintainer.

One of the most significant JavaScript supply chain compromises of 2026 started with a Slack invite, not a vulnerability. Here's the full kill chain and what it means for how you prepare your people.

Ross Lazerowitz
Ross Lazerowitz
Co-Founder and CEO
Introducing Our Ethical Simulation Standards

Introducing Our Ethical Simulation Standards

Today we're publicly releasing the Mirage Ethical Simulation Standards - a set of commitments that define how we simulate, the lines we won't cross, and the principles behind every test we run.

February 27, 2026
Your Human Risk Program Has a Blind Spot: Recruiting

Your Human Risk Program Has a Blind Spot: Recruiting

North Korean IT workers are getting hired through your careers page. Learn how DPRK operatives use stolen identities, laptop farms, and social engineering to infiltrate companies, and what human risk teams can do to detect and prevent hiring fraud.

February 10, 2026
AI Social Engineering Strategy Guide

AI Social Engineering Strategy Guide

Learn how to run ethical AI social engineering simulations that build trust, not fear. This guide helps security, HR, and executive teams safely expose modern threats like deepfake calls and AI phishing without compromising employee wellbeing. Download the full PDF.

June 1, 2025