Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

System acquisition and development in NIS2: Suggested best practices

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Continuity management in NIS2: Benchmark measures for business continuity and backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

North Korean Missile Program Funded Through Stolen Crypto

In 1,5 years, hackers have stolen 50M$ of crypto from exchanges in US, EUR and Asia. Some sources say amount can be 400M$. This money is a "key revenue source" to fund Pyongyang's nuclear missile programme, says UN report. #cybersecurity

Go to article at
11.2.2022

CISA, FBI, NSA Issue Advisory on Severe Increase in Ransomware Attacks

⚠️ #Cybersecurity authorities from AUS, UK and US warn of increase in sophisticated ransomware targeting critical infra. Top 3 infection vectors are: 🎣 Spear-phishing 🔓 Stolen or brute-forced credentials 🤖 Exploits of software flaws

Go to article at
11.2.2022

Unpatched Security Bugs in Medical Wearables Allow Patient Tracking, Data Theft

🏥 Telehealth care is on the rise, but rush has unleashed many wearables that are vulnerable to attacks. Kaspersky found 33 vulnerabilities in MQTT data transfer protocol, putting patient data at risk to MitM attacks. #cybersecurity

Go to article at
4.2.2022

Actor’s verified Twitter profile hijacked to spam NFT giveaways

Previously Twitter account hijack scams often led to switch profile pic Elon Musk and spamming crypto links. Currently hot scam is hijacking verified profile and promoting and selling NFTs. Examples in article >> #cybersecurity

Go to article at
4.2.2022

How to tell if your phone has been hacked

Signs of a compromised phone: 🔋 battery drain 📈 data usage spikes 🔘 GPS or Wi-Fi On/Off by itself 🛑 random ad pop-ups 📱 unknown apps installed 💬 strange call / sms history Tips for keeping safe in the article. #cybersecurity

Go to article at
4.2.2022

A cyber attack severely impacted the operations of German petrol distributor Oiltanking GmbH

BfV recently warned about cyber attacks by China-linked APT27 group. Now Oiltanking GmbH was hit, details of attack unclear. Petrol distribution is critical infra and attacks like this could impact overall fuel supply. #cybersecurity

Go to article at
4.2.2022

Scary Fraud Ensues When ID Theft & Usury Collide

⚠️ A data breach related nightmare where identity thieves were able to take a 546 percent interest payday loan in "Jim's" name. Luckily he learned about it before collection agents came, but it could have been different. #cybersecurity

Go to article at
4.2.2022

US Says National Water Supply 'Absolutely' Vulnerable to Hackers

In 2021 ransomware crippled a US oil pipeline. This sped up gov's will to address infra #cybersecurity. ⚠️ Now officials call drinking water supply defenses "absolutely inadequate". Attack there could e.g. cause unsafe water production.

Go to article at
28.1.2022

Phishing Simulation Study Shows Why These Attacks Remain Pervasive

F-Secure investigated #phishing response of 82,000 employees. ⚠️ 12% click, many within first 5 minutes ⚠️ The personality of the message affects rates heavily ⚠️ IT staff clicked as often as others and reported worse than average

Go to article at
28.1.2022