Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

Incident reporting in NIS2: Requirements and related ISO 27001 best practices

Understand NIS2 incident reporting requirements and how ISO 27001 best practices can help ensure compliance and enhance your organization's security posture.

article

8.3.2024

Top 7 information security standards, frameworks and laws explained

Many information security frameworks are available to help organizations build their own security plans. This article provides key information about some of the most popular information security frameworks.

article

4.3.2024

ISO 27001 and NIS2: Understanding their Connection

Learn how ISO 27001 and NIS2 relate, how they differ, and why organizations often address them together for stronger cybersecurity and compliance.

article

1.3.2024

Mapping your supply chain

🌐 Supply chain mapping creates an up-to-date view of your supplier network. It will help to e.g.: - improve contractual #cybersecurity measures - identify suppliers needed to restore from incidents - improve compliance More tips >>

Go to article at
17.2.2023

Data Breach on Instant Checkmate and Truthfinder Background Check Services Leaked 20 Million Records

PeopleConnect scrapes personal data from e.g. court records, marriage/criminal registries and social media. On Jan 21, a hacker published a treasure trove reportedly obtained from them - 2.9 GB CSV with 20M+ records. #privacy

Go to article at
17.2.2023

Patch Now: Apple's iOS, iPadOS, macOS, and Safari Under Attack with New Zero-Day Flaw

Apple on Mon rolled out security updates for iOS, iPadOS, macOS, and Safari to addressing a WebKit zero-day flaw that it said has been actively exploited in the wild. Users advised to update to iOS 16.3.1 / Safari 16.3.1. #cybersecurity

Go to article at
17.2.2023

Hackers leak passwords for 500,000 Fortinet VPN accounts

❗ 498,908 Fortinet VPN stolen user credentials being shared on dark web forums. Incident is serious - leaked creds can be used to infiltrate the network of a company using the service to steal data or distribute malware. #cybersecurity

Go to article at
15.2.2023

Google's Bard AI Bot Mistake Wipes $100 Billion Off Shares

Google joined AI chatbot race with its ChatGPT rival Bard. In a related Twitter ad, Bard answered incorrectly to a question about James Webb Space Telescope. That day Alphabet shares sank >7% knocking $100bn off its value. #cybersecurity

Go to article at
10.2.2023

HTML smuggling campaigns impersonate well-known brands to deliver malware

HTML files in unexpected emails are as great a risk as any other malicious attachment. HTML smuggling is not a new #cyberattack method, but it's growing on polularity since Microsoft started blocking macros in documents by default.

Go to article at
10.2.2023

Critical Infrastructure at Risk from New Vulnerabilities Found in Wireless IIoT Devices

38 #cybersecurity vulnerabilities found in IIoT devices that allow infiltrating networks and risking critical infra. Findings show how OT networks can be at risk by IIoT devices accessible to internet, creating a "single point of failure".

Go to article at
10.2.2023

Malware Delivered through Google Search

Numerous #malware that used to rely on #phishing and Word macros for delivery, now prefer G Ads impersonating brands like Adobe or Microsoft. Google develops filtering malicious ads, but criminals seem to always find ways to counter.

Go to article at
10.2.2023

Are Your Employees Thinking Critically About Their Online Behaviors?

👨‍💻 Each employee is an endpoint capable of inviting risk, but that also acting as a safeguard against threats. This article has good examples of panic-inducing scenarios and advice to avoid employee breakdowns. #cybersecurity

Go to article at
3.2.2023