Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

Incident reporting in NIS2: Requirements and related ISO 27001 best practices

Understand NIS2 incident reporting requirements and how ISO 27001 best practices can help ensure compliance and enhance your organization's security posture.

article

8.3.2024

Top 7 information security standards, frameworks and laws explained

Many information security frameworks are available to help organizations build their own security plans. This article provides key information about some of the most popular information security frameworks.

article

4.3.2024

AI chatbots making it harder to spot phishing emails, say experts

⚠️ Europol issues a warning about criminal use of ChatGPT "AI allows crafting very believable ‘spear-phishing’ emails and other written communication with very little effort, especially compared to what you have to do before." #phishing

Go to article at
31.3.2023

Pig butchering scams: The anatomy of a fast‑growing threat

💬 Hyper-connectedness cuts both ways. Scammers also can reach you anytime, any channel. And their techniques are developing. "Pig butchering scams" start with weeks long cold msg chains, to trick people later. Examples >> #cybercrime

Go to article at
31.3.2023

Microsoft Security Copilot is a new GPT-4 AI assistant for cybersecurity

🤖 Microsoft is developing an AI-powered #cybersecurity assistant to help identify breaches and derive smart signals from data. Security Copilot has a chatbot interface like new Bing, and is the latest example of MS's big push with AI.

Go to article at
31.3.2023

New Wi-Fi Protocol Security Flaw Affecting Linux, Android and iOS Devices

⚠️ Researchers uncovered a #vulnerability in IEEE 802.11 Wi-Fi protocol standard: "Attacker can disconnect a victim and connect under his MAC address (using the credentials of the adversary) to steal the data still underway to them."

Go to article at
31.3.2023

Just 1% of Nonprofit Domains Have Basic DMARC Email Security Protections

⚠️ Only 1.2% of nearly 10M verified .org domains analyzed are using proper DMARC rules. DMARC is used to automatically flag emails that are suspected to be sent from an impersonated domain. It's an important tool for battling #phishing.

Go to article at
24.3.2023

Fake ChatGPT Chrome Browser Extension Caught Hijacking Facebook Accounts

⚠️ "ChatGPT For Google", #malware version of real browser add-on, got 9k installations in 30 days. Extension harvested FB session cookies to hijack accounts. After this? Password change > Name / pic change > Extremist propaganda sharing

Go to article at
24.3.2023

Hackers Drain Bitcoin ATMs Of $1.5 Million By Exploiting 0-Day Bug

Bitcoin ATMs allow people exchange bitcoin for other currencies. A threat actor exploited a #vulnerability to use the interface to upload and execute a malicious Java app and drain 56 BTC from accounts - roughly worth $1.5 million.

Go to article at
24.3.2023

Employees Are Entering Sensitive Business Data Into ChatGPT

Content input to ChatGPT is used by OpenAI to train the AI. ⛔ Data shows 4.9% of users have at least once pasted company data into ChatGPT. Firms like JP Morgan and Verizon have blocked access to ChatGPT over such concerns. #privacy

Go to article at
17.3.2023

Business on the dark web: deals and regulatory mechanisms

🦹 Hundreds of deals get made on the dark web daily: selling data, dealing illegal services, hiring crooks - with big money on the table.  Article gives insight into dark web transactions and escrow services >> #cybersecurity

Go to article at
17.3.2023