OSINT & Social Engineering · 14 Apr 2026 · 5 min read
Executive Digital Footprint: What Attackers Can Find
Your executives' digital footprint fuels spear phishing, fraud and physical risk. What's publicly discoverable and how an exposure assessment works.
OSINT & Social Engineering · 3 Mar 2026 · 5 min read
Shadow IT Discovery: Finding the Systems Nobody Approved
Shadow IT, the SaaS, cloud and dev environments nobody approved, is a common source of breaches. Here's why it accumulates and how to find yours.
OSINT & Social Engineering · 17 Feb 2026 · 5 min read
Vishing and Smishing: Phone and SMS Attacks Explained
Vishing and smishing attacks target your help desk and MFA. How phone and SMS pretexts, MFA-reset abuse and MFA fatigue work, and how to harden your processes.
OSINT & Social Engineering · 25 Nov 2025 · 5 min read
Leaked Credentials: How to Check Exposure and Respond
Leaked credentials turn up in breaches, stealer logs, pastes and public repos. Here's how to check whether yours are exposed and what to do about it.
OSINT & Social Engineering · 12 Aug 2025 · 5 min read
External Attack Surface Management: A Practical Guide
External attack surface management explained: why organisations lose track of what they expose online, and how continuous discovery closes the gap.
OSINT & Social Engineering · 10 Jun 2025 · 5 min read
How to Run a Phishing Simulation That Actually Teaches
Learn how to run a phishing simulation that builds real resilience, goals, targeting, ethical lure design, metrics that matter, and how to debrief well.
OSINT & Social Engineering · 29 Apr 2025 · 5 min read
What Is OSINT? How Attackers Use Open-Source Intelligence
OSINT is intelligence gathered from public sources. Learn what is OSINT in practice, how attackers use it against your organisation, and how to defend.
Put this into practice
A senior Ironbark Cyber consultant will scope your engagement on a free 30-minute call and give you a fixed quote within one business day.