Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Corporate Security Alert: Identifying Dangerous Apps on Employee Phones

This article uncovers hidden security risks of popular apps on work devices, covering social media, messaging, cloud storage, gaming, utility, health, VPN, and shopping apps, with recommendations to safeguard corporate data.

article

20.9.2024

NIS2 national legistation, ransomware and a new development forum: Cyberday product and news round-up 9/2024 🛡️

This is the September news and product review from Cyberday. Read news about ransomware, new phishing techniques and local NIS2-legistations.

article

20.9.2024

IT and OT Cyber Security: Different Environments, Different Priorities

This blog post outlines the key differences between IT and OT cyber security, focusing on their distinct areas, objectives, environments, threat landscapes, and compliance requirements.

article

4.9.2024

Cyber Security in Supply Chain Risk Management

Businesses should prioritize supply chain security by adopting best cyber security practices, fostering resilience, and promoting collaboration to protect against evolving cyber threats. Learn more about this topic in this blog post.

article

22.8.2024

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

ISO 27001 and ISO 9001: Differences, how they work together and benefits of combining

Learn about the synergy between ISO 27001 and ISO 9001. Learn how integrating these standards enhances information security, quality management, and overall operational efficiency, using case examples and actionable insights.

article

6.6.2024

Beware: Walmart phishing attack says your package was not delivered

Phishing victims are urged to send their mailing address to the attacker impersonating Walmart. Goal is likely to use address info to conduct a more malicious activities, sending you further, more customized scam emails. #cybersecurity

Go to article at
3.6.2021

Euroopan tietosuojaneuvostolta lausunnot ensimmäisistä ylikansallisista käytännesäännöistä ja suosituksia luottokorttitietojen tallentamisen oikeusperusteesta

🚀 EDPB approved first codes of conduct. E.g. CLOUD CoC gives guidance and specific requirements cloud providers can comply to demonstrate that they act in accordance with the requirements of GDPR. #cybersecurity

Go to article at
3.6.2021

Google Play Store to Add Privacy Labels to Android Apps by 2022

Following Apple’s similar initiative, Google announced privacy labels arriving to Play Store. The purpose is to give user a brief summary to apps #cybersecurity, related assurance, and personal data processing practices.

Go to article at
28.5.2021

Cybersecurity leaders lacking basic cyber hygiene

74% of cybersec leaders targeted in phishing attack in last 90 days. Still basic security hygiene is partly lacking: ⚠️ 45% connect to public Wi-Fi without a VPN ⚠️ 24% use the same passwords for work and personal use #cybersecurity

Go to article at
28.5.2021

DHS to issue first cybersecurity regulations for pipelines after Colonial hack

The recent Colonial Pipeline attack has mobilized authorities in the United States. For the first time, cyber security in the pipeline industry is being regulated in attempt to avoid similar situations in the future. #cybersecurity

Go to article at
28.5.2021

Päivitä heti: VMware varoittaa kriittisestä haavoittuvuudesta

VMware prompts vCenter users to patch vCenter Server versions 6.5, 6.7, and 7.0 immediately. Upon gaining access to port 443, an attacker may choose to run any code of his choice on the host. #cybersecurity

Go to article at
28.5.2021

Should Paying Hacker Ransoms Be Illegal?

#Ransomware gangs make money. Colonial Pipeline just paid 4,5 M$ ransom - small part of one group's earnings. No-one wants payments for crooks, but ban has its difficulties too, especially if organisation is poorly prepared. #cybersecurity

Go to article at
21.5.2021

Cobalt Strike Becomes a Preferred Hacking Tool by Cybercrime, APT Groups

Data from Sophos shows that Cobalt Strike, a threat emulation software, is one of the top tools used in cyber attacks. Cyber criminals use it to e.g. drop malware and employ PowerShell commands to camouflage their activity. #cybersecurity

Go to article at
21.5.2021

The basics of security code review

Article gives ideas for improving code security: ✅ determine common vulnerabilities for the type of app you’re working with ✅ dedicate enough time for reviewing code / fixing bugs ✅ use automated SCA & SAST tools #cybersecurity

Go to article at
19.5.2021