Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Comparing EU cybersecurity frameworks: NIS2, GDPR, DORA and more

A comparison of key cybersecurity frameworks in the EU, including NIS2, GDPR, DORA, CRA, and ISO 27001. Learn who they apply to and what they require.

article

10.4.2025

ISO 27001 compliance vs. certification: differences, benefits & which path to choose

Understanding when to pursue ISO 27001 compliance rather than going for certification—or vice versa—hinges on your organizational priorities, resources, and long-term security strategies. Check the differences and learn which path to choose.

article

1.4.2025

Framework recap, US security & and role management: Cyberday product and news summary 3/2025 🛡️

The March product and news update presents updates to role management and the new Trust Center, a review of the key frameworks for 2025 and US security.

article

28.3.2025

Understanding DORA compliance: Key steps to prepare your organization

Understand DORA compliance and get a clear DORA requirements summary with key compliance areas, practical steps, and essential guidelines to strengthen your organization's digital resilience.

article

18.3.2025

ISMS implementation: comparison of documents, wikis, ISMS tools and GRC

There are a few different approaches to building an ISMS. In this post, we’ll compare these different methods, helping you understand which might be the best fit for your organization’s security management needs.

article

6.3.2025

What is Statement of Applicability (SoA) in ISO 27001?

In this blog, we'll cover the main purpose and benefits of a well-working Statement of Applicability document. We'll also explain why SoA is important, and 4 key roles it can play in information security work.

article

4.3.2025

Why is ISO 27001 compliance now more important than ever?

Year after year, ISO 27001 standard has remained one of the gold standards for information security. The global standard has remained relevant, but where did ISO 27001 originate? And why is it's popularity just going up?

article

27.2.2025

10 most common non-conformities in ISO 27001 audits

Audits and non-conformities drive organizations toward continuous improvement. But before your first ISO 27001 certification, it's good to be aware of some most common non-conformities, so you can avoid these in your certification audit.

article

18.2.2025

How to work from home securely, the NSA way

NSA's top tips for remove work #cybersecurity: ⚠️ Keep your software and router updated 🔑 Use a password manager and 2FA 🧑‍💻 Separate work and life activities 🔗 Connect to office with a VPN

Go to article at
3.3.2023

US cybersecurity chief: Software makers shouldn't lawyer their way out of security responsibilities

⚠️ "Unsafe software / tech products more dangerous than Chinese spy balloons." CISA director says: "Tech providers must prioritize security over e.g. cost, features, and speed to market" #cybersecurity

Go to article at
3.3.2023

LastPass Says Employee's Home Computer Was Hacked And Corporate Vault Stolen

Another LastPass breach: “.. targeted engineer's home PC and exploited vulnerable 3rd party software, which enabled RCE capability and implanting keylogger #malware” ☢️ Hacked DevOps engineer 1 of 4 employees w/ access to corporate vault

Go to article at
3.3.2023

Cyberattack on Dole Temporarily Shuts Down Production in North America

Company memo says a #cyberattack forced Dole to shut down production plants in US and halt food shipments to grocery stores. 🥫 This continues growing list of high-profile attacks on food and agriculture sector (e.g. JBS, Llobet).

Go to article at
24.2.2023

LVHN Reports Cyberattack by Russian Ransomware Gang

The #ransomware group behind the attack, called "Black cat", is an example of a gang that advertises their RaaS services on dark web and takes a cut of the final attack profits. ⚠️ Ransomware-as-a-service is becoming more and more common.

Go to article at
24.2.2023

Will ChatGPT start writing killer malware?

ChatGPT is good enough to produce homework answers, legal responses and medical diagnoses that pass the “smell test”. Even now it can e.g. make #phishing more convincing and automate ransomware negotiations. What's next? See article >>

Go to article at
24.2.2023

Phishing Fears Ramp Up on Email, Collaboration Platforms

State of Email Security report: 🎣 97% of companies saw a #phishing attack 💰 66% acknowledged a successful ransomware attack 🏭 Energy (83%) & healthcare (80%) among most breached industries 💬 Slack and Teams growing exploit channels

Go to article at
24.2.2023

Spam and phishing in 2022

📨 2022 #phishing themes: - 49% of emails were spam, 30% of spam originated from Russia - Global events (e.g. World Cup, Ukraine crisis) and bonuses/compensations big scam themes - Scammers’ crypto interest growing

Go to article at
17.2.2023

Camera the Size of a Grain of Salt

📸 Micro-sized cameras have great potential to e.g. identify health risks. New breakthroughs enable tiny cameras w/ crisp images on par with 500,000x larger camera lens. This can also change the nature of surveillance. #cybersecurity

Go to article at
17.2.2023