Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

What is a vCISO? Understanding the role of virtual CISO

What is a vCISO, what they do, and why the virtual CISO model is growing fast among companies and cybersecurity consultants.

article

12.6.2025

What is a modular cyber security framework and why they are essential for consultants

Modular cyber security frameworks make compliance management easier, and helps consultants scale faster, win more deals, and build recurring revenue.

article

12.6.2025

Cyberday app outage on Tuesday 10/6/2025: Explanation and follow-up

This message goes through the details of the recent incident that produced downtime in Cyberday during 10.6.2025, and related early mitigation.

article

11.6.2025

Kicking Off a Summer of Innovation at Cyberday

This summer, Cyberday is proud to launch an ambitious and inspiring project centered on deep regulatory research and international collaboration. We’ve welcomed 12 talented information security students, who will work together to simplify compliance.

article

10.6.2025

What is CRA? Introduction to Cyber Resilience Act requirements

What is CRA (Cyber Resilience Act)? Learn CRA requirements, who it applies to, and how to prepare for CRA compliance with this complete, practical guide.

article

2.6.2025

NIS2 delays, healthcare breaches & improved Trust Center: Cyberday product and news summary 5/2025 🛡️

This is the May news and product review from Cyberday and also a summary of the latest admin webinar. Read about NIS2 delays, recent cyberattacks as well as recent and future development on Cyberday.

article

30.5.2025

End of hourly billing: why value-based pricing works for compliance consultants

Hourly billing is fading fast in compliance consulting. Learn why value-based pricing better aligns incentives, boosts earnings, and how compliance consultants can transition effectively.

article

26.5.2025

What is an ISMS? A guide to information security management systems

Learn what ISMS is, why it matters, and how to implement an ISMS step-by-step. See how ISO 27001 and NIS2 fit into your information security management system.

article

14.5.2025

Exposed Password Gave Hackers Access to 150,000 Cameras

Hacktivists reportedly found logins for a privileged account exposed on the internet and thus gained access to 150 000 Verkada security cameras - on Tesla warehouses, hospitals, jails and more. #cybersecurity

Go to article at
10.3.2021

Phishing campaigns, from first to last victim, take 21h on average

Most phishing victims experience a fraudulent transaction around 5 days after getting phished, new research shows.

Go to article at
9.3.2021
Business-Email-Compromise

PhotoSquared app leaks photos & home addresses of 100,000s of users

By Waqas Another day, another data breach putting user data at risk - This time, PhotoSquared. This is a post from HackRead.com Read the original post: PhotoSquared app leaks photos & home addresses of 100,000s of users

Go to article at
15.5.2020
Illegal Personal Data Processing

COVID-19 Scam Roundup – April 20, 2020

Scams leveraging coronavirus 2019 (COVID-19) as a lure have stolen tens of millions of dollars from their victims. As of April 16, 2020, the Federal Trade Commission (FTC) had received 20,334 consumer reports of fraud attempts pertaining to the coronavirus since the beginning of the year. Those attacks that proved successful had caused their victims […]… Read More The post COVID-19 Scam Roundup – April 20, 2020 appeared first on The State of Security. The post COVID-19 Scam Roundup – April 20, 2020 appeared first on Security Boulevard.

Go to article at
15.5.2020
Phishing

Why ransomware continues to knock on healthcare’s door, enter, and create havoc

My name is Adam, and I’ve worked in the healthcare industry for over 15 years. In my current line of work, I assist healthcare facilities across the U.S. with their overall cybersecurity posture, ranging from physical and technical security controls to security incident response in conjunction with disaster recovery and business continuity planning. My scope of work is quite broad, however, I’m here today to address the state of healthcare relative to ransomware. In many … More → The post Why ransomware continues to knock on healthcare’s door, enter, and create havoc appeared first on Help Net Security.

Go to article at
15.5.2020
Ransomware

Microsoft spots malicious npm package stealing data from UNIX systems

The security team at npm (Node Package Manager), the de-facto package manager for the JavaScript ecosystem, has taken down today a malicious package that was caught stealing sensitive information from UNIX systems. The malicious package is named 1337qq-js and was uploaded on the npm repository on December 30, 2019. According to an analysis by the npm security team, the package exfiltrates sensitive information through install scripts and targets UNIX systems only. The npm team recommends that all developers who downloaded or used this JavaScript package in their projects remove the package from their systems and rotate any compromised credentials. This marks the sixth incident of a malicious package making it on the npm repository index, although, this is the least severe, primarily because Microsoft security analysts caught the library two weeks after it was published and before it gained a serious following. Previous incidents of malicious npm packages making it on npm include:

Go to article at
15.5.2020
Malware

Names & Phone numbers of 267 million Facebook users exposed

By WaqasAnother day, another data breach putting the privacy of hundreds of millions of Facebook users at risk.This is a post from HackRead.com Read the original post: Names & Phone numbers of 267 million Facebook users exposed

Go to article at
15.5.2020
Illegal Personal Data Processing

FBI Warns of Human Traffickers Luring Victims on Social Networks

FBI's Internet Crime Complaint Center (IC3) today issued a public service announcement on human traffickers' continued usage of online platforms like dating sites and social networks to lure victims. [...]

Go to article at
15.5.2020
Phishing

Strong passwords: 9 rules to make, remember and manage your login credentials

The security of your bank account, Netflix account and email inbox depends on how well you safeguard your passwords.

Go to article at
15.5.2020
Password Attacks