Vulnerabilities are now being exploited within hours of disclosure. Phishing kits are built to get past MFA. Social engineers are targeting service desks directly. Meanwhile, public sector IT teams are telling us that they don’t have the in-house cyber skills to manage this.
Most security events tell you what could go wrong. This one shows you how it happens, then shows you what stopping it looks like. You’ll leave knowing where you could get exposed and how to action it.
- See the attack live. From MFA tricks and spoofed phone numbers to deepfake video calls, watch the techniques attackers are using against organisations like yours right now.
- See what the SOC sees. Our analysts show what those same attacks look like in the logs. How often they’re hitting the UK public sector, and how quickly they escalate.
- Leave with the next steps. Hear guidance built for small teams and tight budgets. Including how to get 24/7 cover without building your own security operations centre.
Join from anywhere and put your questions to Tobias and our SOC team live.
- Welcome: an introduction from Phoenix and Tobias.
- Keynote: Tobias Schroedel. Live hacking demos showing how attackers get in.
- Q&A with Tobias.
- What we saw in Q1: findings from the Phoenix Threat Report.
- Inside the SOC, anatomy of a real attack: Tobias showed you the first few minutes of an attack. Here’s what the next few hours looked like in a real incident our SOC handled this year.
- What does 24/7 threat detection and response look like?
- Audience Q&A with the SOC team
Get a head start
The Phoenix Threat Report 2026
The biggest theme of the year so far is speed, with vulnerabilities being exploited within hours of disclosure. Read the report before the webinar and bring your questions to our SOC team.
Your speakers
Tobias Schroedel
Live Comedy Hacker and Cybersecurity Expert
Fred Astfeldt
Head of Managed Security Solutions, Phoenix
Ryan Groom
SOC Development Manager, Phoenix

