Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Encryption, RaaS, supply chain attacks: Monthly Cyberday product and news roundup 12/2023 🛡️

In December's summary, development themes include UI updates and information security statements. On the news side talk about encryption, RaaS and supply chain attacks.

article

15.12.2023

How do you benefit from ISO 27001 certification?

Why do organizations choose to go for ISO 27001 certification? In this blog article, we will give you our top 5 reasons to get certified. Certification will certainly benefit your security directly, but there are other kind of benefits available too.

article

25.10.2023

Working towards NIS2 compliance with Cyberday

✈️ You want to lift your cyber security management to a new level & get NIS2 compliant with a smart tool like Cyberday? In this post you'll learn how your organization can achieve NIS2 compliance in a smart way by building an own agile ISMS.

article

23.8.2023

Who does NIS2 apply to? Scope and required security measures explained.

In this post you'll learn about what industries are affected by NIS2, security requirements the directive sets, and the available enforcement methods if an organization is not compliant.

article

23.8.2023

What is NIS2 directive? Know EU's new cyber security legislation

Learn what is the new EU NIS2 directive, why the original NIS was not enough and how it affects your company's compliance requirements.

article

1.8.2023

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

How Dangerous Is the Cyber Attack Risk to Transportation?

⚠️ +186% increase between 6/2020 - 6/2021 in #ransomware attacks at transportation industry. 🚆 Cyber attacks targeting transport authorities e.g. managing train or subway routes could be terrible. Article lists needed best practices >>

Go to article at
20.5.2022

Over 200 Apps on Play Store Caught Spying on Android Users Using Facestealer

⚠️ Potentially harmful apps persist on Google Play for avg. 77 days Now researchers found 200 Android apps distributing #malware called Facestealer. These apps masquerade as VPNs, fitness, photo editing, and puzzle apps.

Go to article at
20.5.2022

Hackers can steal your Tesla Model 3, Y using new Bluetooth attack

Researchers developed a tool for Bluetooth Low Energy relay attacks. Tesla Model 3 & Y use a BLE-based entry system, so attack could unlock and start the cars. More security? At least there's ‘PIN to Drive’ feature. 🚘 #cybersecurity

Go to article at
20.5.2022

When Your Smart ID Card Reader Comes With Malware

A common security control is using smart ID cards for allowing physical access to buildings or systems. ⚠️ But employers don't always issue approved card readers, so people turn to low-cost online options. Case example >> #cybersecurity

Go to article at
20.5.2022

Some top 100,000 websites collect everything you type—before you hit submit

📨 Subscribing for newsletter, 🏨 booking a hotel, 💸 buying stuff online? New study shows some top websites collect some or all of this data before you hit 'Submit'. This behavior is similar to #malware called keyloggers. #privacy

Go to article at
20.5.2022

Colonial Pipeline facing $1,000,000 fine for poor recovery plans

Many remember Colonial Pipeline #ransomware attack from last year. They paid attackers 4.4 M$ in bitcoin, but were unable to recover much of data. ⚠️ Now Colonial is also fined 1M$ for poor continuity planning. Read for more RaaS info >>

Go to article at
13.5.2022

Phishing Scam Nets $23.5 Million From DoD, California Man Arrested Siphoning Money From Contractors

🦹 Mies hyökkäsi DoD:hen #phishing'huijauksella ja varasti 23 M$. Toimittajan työntekijänä hän tunsi maksujärjestelmän. Väärennettyjen sähköpostien ja lookalike URLien avulla hän varasti kirjautumistunnuksia ja ohjasi maksuja 💸 itselleen.

Go to article at
13.5.2022

Phishing Scam Nets $23.5 Million From DoD, California Man Arrested Siphoning Money From Contractors

🦹 Man hit DoD with #phishing, stealing 23 M$ before caught. As jet fuel supplier employee, he knew the vendor payment system. Using fake GSA-emails and lookalike URLs, he stole vendor login creds and routed payments 💸 to shell company.

Go to article at
13.5.2022

Password reuse is rampant among Fortune 1000 employees

Study of key sector employee cyber hygiene: 🔓 64% password reuse 📈 Spike in #malware infected devices 🙅 Extensive easy-to-guess pw's These are risks for employers and consumers, who rely on these businesses to safeguard their data.

Go to article at
13.5.2022