Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Encryption, RaaS, supply chain attacks: Monthly Cyberday product and news roundup 12/2023 🛡️

In December's summary, development themes include UI updates and information security statements. On the news side talk about encryption, RaaS and supply chain attacks.

article

15.12.2023

How do you benefit from ISO 27001 certification?

Why do organizations choose to go for ISO 27001 certification? In this blog article, we will give you our top 5 reasons to get certified. Certification will certainly benefit your security directly, but there are other kind of benefits available too.

article

25.10.2023

Working towards NIS2 compliance with Cyberday

✈️ You want to lift your cyber security management to a new level & get NIS2 compliant with a smart tool like Cyberday? In this post you'll learn how your organization can achieve NIS2 compliance in a smart way by building an own agile ISMS.

article

23.8.2023

Who does NIS2 apply to? Scope and required security measures explained.

In this post you'll learn about what industries are affected by NIS2, security requirements the directive sets, and the available enforcement methods if an organization is not compliant.

article

23.8.2023

What is NIS2 directive? Know EU's new cyber security legislation

Learn what is the new EU NIS2 directive, why the original NIS was not enough and how it affects your company's compliance requirements.

article

1.8.2023

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

Cybersecurity awareness training: What is it and what works best?

82% of breaches in 2021 involved a “human element.” Bad actors exploit credulous or careless employees. Trends that grow the need for employee #cybersecurity skills: 🔓 Poor password practices 🦹 Cybercrime growth 📲 Hybrid work

Go to article at
10.6.2022

Know your enemy! Learn how cybercrime adversaries get in…

Researchers dug into reports of 144 real-life #cyberattack's. ⚠️ Unpatched vulnerabilties entry point for 50% of attacks ⌛ Attackers around for more than a month on avg 🖥️ RDP abused to spread the attack by more than 80% of attackers

Go to article at
10.6.2022

Apple's New Feature Will Install Security Updates Automatically Without Full OS Update

Apple: "macOS security gets even stronger with new tools that make the Mac more resistant to attack, including Rapid Security Response that works in between normal updates to easily keep security up to date without a reboot" #cybersecurity

Go to article at
10.6.2022

Costa Rica May Be Pawn in Conti Ransomware Group’s Bid to Rebrand, Evade Sanctions

Costa Rican terveysministeriössä tulostimet menivät sekaisin tänä aamuna Hive #ransomware'ryhmän hyökkäyksen jälkeen. Kaikki järjestelmät ovat toistaiseksi alhaalla. HIVE ei ole julkaissut lunnasvaatimusta. Hyökkäykset voivat jatkua.

Go to article at
3.6.2022

Costa Rica May Be Pawn in Conti Ransomware Group’s Bid to Rebrand, Evade Sanctions

Printers at the Costa Rican government health ministry went crazy this morning after the Hive #ransomware group attacked. All systems went down until further notice. HIVE has not released their ransom fee. Attacks are expected to follow.

Go to article at
3.6.2022

$150 Million Fine to Twitter Over Privacy Violations; Email and Phone for “Account Security” Used in Targeted Advertising Without User Knowledge

FTC is actively regulating privacy in the US. FTC can penalize for e.g. when a social network misleads its users about how personal data will be used or protected. This is what now happened to Twitter, resulting in a 150M$ #privacy fine.

Go to article at
3.6.2022

How to support women in cybersecurity

There are millions of unfilled #cybersecurity job openings around the globe. In the industry women make up roughly 24% of jobs, according to (ISC)². Untapped talent could mean e.g. less innovation. Reasoned thougths on women in cyber >>

Go to article at
3.6.2022

FBI seizes domains used to sell stolen data, DDoS services

FBI seizes harmful domains ⚠️ WeLeakInfo.to sold subscriptions for searching data from 10k data breaches, eg emails, phones, and passwords for online accounts. ⛔ ipstress.in and ovh-booter.com used for DDoS ordering #cybersecurity

Go to article at
3.6.2022

New Microsoft Zero-Day Attack Underway

MS Support Diagnostic Tool has a #vulnerability, that enables running commands remotely via using malicious MS Word documents. No patch available yet, limit by: ☑️ Turning off MSDT URL protocol ☑️ Disabling preview feature in IE

Go to article at
3.6.2022