Available on Demand | June 27, July 10, July 29, 2025 | 3 Hours | 3 CPE
Today’s phishing attacks target much more than email; they exploit every mobile channel — SMS, Signal, social platforms and QR codes to reach your users. Mobile phishing (“smishing”) and QR based attacks (“quishing”) are engineered to bypass traditional endpoint defenses to exploit human behavior.
As mobile becomes mission-critical in federal agencies — replacing laptops and extending the workspace far beyond office boundaries — cybersecurity has failed to keep pace. Many of these mobile endpoints are employee-owned devices (BYOD), further complicating visibility, control, and enforcement.
Recent attacks underscore the growing risk. For instance, the FBI and the Cybersecurity and Infrastructure Security Agency (CISA) released a joint statement in November 2024 that their ongoing investigation into the People’s Republic of China (PRC) targeting of commercial telecommunications infrastructure revealed a broad and significant cyber espionage campaign.
In three webinars, thought leaders from government and industry will explore how nation-states and advanced threat actors are exploiting the mobile vector as a target of choice – what traditional EDR platforms miss, and how agencies can close the human-layer gap by extending Zero Trust principles to mobile.
We’ll Discuss:
Accreditation:
Participants can earn 3 CPE credits in Business Management & Organization.*
* To receive CPE credit you must arrive on time and participate in the surveys throughout the webinar. Certificates will be e-mailed to registrants. In accordance with the standards of the National Registry of CPE Sponsors, 50 minutes equals 1 CPE. By providing your contact information to us, you agree: (i) to receive promotional and/or news alerts from Federal News Network and our third party partners, (ii) that we may share your information with our third party partners who provide products and services that may be of interest to you and (iii) that you are not located within the European Economic Area.
What is CART?
CART (communication access realtime translation) provides instant accessibility for all participants by delivering the spoken word as a realtime stream of text.
CART Captioner Professional Certifications
Our CART services are provided by Home Team Captions. All of our CART captioners hold, at minimum, the CCP (Certified CART Provider) certification, or higher, from NCRA (National Court Reporters Association.)
To view the CART feed for this webinar: Register for this webinar, login from the link provided, and click on the CART Tab and click the link to begin using CART.
Hosted & Moderated By:
June 27: Mobile Security: The Human Layer is the New Attack Surface
Phishing today isn’t just email. Adversaries are now exploiting SMS, Signal, LinkedIn, QR codes, and more to directly target your people—on the devices they rely on most. These mobile-specific tactics—like smishing and quishing—are designed to exploit human trust, not technical flaws. And they’re working.
Protecting users from falling for such schemes is difficult. Threat researchers have seen malicious smishing campaigns deploy zero-click malware that can hijack verification codes and one time passwords (OTPs), replicating screen interfaces, and stealing application credentials. One report identified why mobile users are more at risk, including:
Join us as thought leaders from government and industry discuss the ways that security professionals can empower users to recognize and protect themselves from social engineering tactics on mobile, and how agencies can close the visibility and control gaps left open by traditional EDR tools.
Learning Objectives:
July 10: The Modern Endpoint – It’s Personal
Today’s workforce isn’t tethered to laptops – it’s powered by mobile. It’s often a primary way many employees connect to email and other mission-critical resources but not treated that way from a security standpoint.
Traditional Mobile Device Management (MDM) solutions weren’t built to detect advanced threats or align with Zero Trust principles. They offer basic control, but not the telemetry, risk context, or threat detection required by today’s federal cybersecurity standards. Meanwhile, the modern kill chain pathway begins with reconnaissance – attackers learn all they can about the target agency and its employees, primarily via social media, including whether they use a single sign-on page. These malicious actors capitalize on the commoditization of advanced malware and ready availability of Malware-as-a-Service kits that make creating these codes an easy task for attackers. One company reported that 60% of mobile devices run on vulnerable operating systems.
In this session, government and industry leaders will explore why legacy mobile management tools are no longer enough – and how agencies can meet federal requirements by extending modern security to the mobile endpoint.
Learning Objectives:

Group Leader, Cyber Resilience Foundations Group, Senior Cyber Security Engineer & Researcher, Pacific Northwest National Laboratory
July 29: Mobile Threat Intelligence: Rethinking What Your Traditional EDR is Missing
There have been several cyber attacks recently that were launched through users’ mobile devices, often targeting high-profile government officials. For instance, the FBI and the Cybersecurity and Infrastructure Security Agency (CISA) released a joint statement in November 2024 that their ongoing investigation into the People’s Republic of China (PRC) targeting of commercial telecommunications infrastructure revealed a broad and significant cyber espionage campaign.
These kinds of incursions by bad actors on the part of hostile nation-states led to CISA’s release of a Mobile Communications Best Practices Guide. But the attacks also highlight the need for agencies to treat mobile as a frontline asset in their threat intelligence operations.
Join us as thought leaders from government and industry discuss the current state of the mobile threat horizon, emerging threats and how modern threat intelligence practices can adapt to defend against adversaries who increasingly exploit mobile to bypass traditional controls.
Learning Objectives:






