Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

What is a vCISO? Understanding the role of virtual CISO

What is a vCISO, what they do, and why the virtual CISO model is growing fast among companies and cybersecurity consultants.

article

12.6.2025

What is a modular cyber security framework and why they are essential for consultants

Modular cyber security frameworks make compliance management easier, and helps consultants scale faster, win more deals, and build recurring revenue.

article

12.6.2025

Cyberday app outage on Tuesday 10/6/2025: Explanation and follow-up

This message goes through the details of the recent incident that produced downtime in Cyberday during 10.6.2025, and related early mitigation.

article

11.6.2025

Kicking Off a Summer of Innovation at Cyberday

This summer, Cyberday is proud to launch an ambitious and inspiring project centered on deep regulatory research and international collaboration. We’ve welcomed 12 talented information security students, who will work together to simplify compliance.

article

10.6.2025

What is CRA? Introduction to Cyber Resilience Act requirements

What is CRA (Cyber Resilience Act)? Learn CRA requirements, who it applies to, and how to prepare for CRA compliance with this complete, practical guide.

article

2.6.2025

NIS2 delays, healthcare breaches & improved Trust Center: Cyberday product and news summary 5/2025 🛡️

This is the May news and product review from Cyberday and also a summary of the latest admin webinar. Read about NIS2 delays, recent cyberattacks as well as recent and future development on Cyberday.

article

30.5.2025

End of hourly billing: why value-based pricing works for compliance consultants

Hourly billing is fading fast in compliance consulting. Learn why value-based pricing better aligns incentives, boosts earnings, and how compliance consultants can transition effectively.

article

26.5.2025

What is an ISMS? A guide to information security management systems

Learn what ISMS is, why it matters, and how to implement an ISMS step-by-step. See how ISO 27001 and NIS2 fit into your information security management system.

article

14.5.2025

Hackers Use Google reCAPTCHA To Hide Phishing URLs and Defeat Email Security Scanners To Steal User Credentials

Websites use Google's reCAPTCHA to ensure they interact with humans, not bots. 🎣 Criminals use it to hide #phishing URLs. You get an email with an attachment taking you to reCAPTCHA. Only after the puzzle, you get to e.g. fake MS login.

Go to article at
1.4.2022

CISA warns of attacks targeting Internet-connected UPS devices

UPS devices are used as power backups in critical environments. ⚠️ They connect to internet to allow e.g. power monitoring and maintenance. CISA warns of attacks! Disconnect, use VPN & MFA / strong passwords for better #cybersecurity.

Go to article at
1.4.2022

Ukraine dismantles 5 disinformation bot farms, seizes 10,000 SIM cards

Ukrainian Security Service (SSU) raided locations used to host bot farms. 🤖 These fueled 100,000 fake social media accounts spreading false information with the goal of discouraging Ukrainian citizens and instill panic. #cybersecurity

Go to article at
1.4.2022

RCE Bug in Spring Cloud Could Be the Next Log4Shell, Researchers Warn

Spring Cloud is an open-source microservices framework used by millions of developers. An "easy to exploit" #vulnerability found, requiring attacker to only send a malicious string to Java app’s HTTP service. Best defence is a quick patch

Go to article at
1.4.2022

"It's coming": President Biden warns of "evolving" Russian cyber threat to U.S.

🔐 "Lock your digital doors" U.S. officials have spotted 'preparatory work' for Russian #cybercrime, to retaliate against sanctions. They warn of increasing vulnerability hunting especially towards companies in critical infrastructure.

Go to article at
25.3.2022

Anonymous hacks unsecured printers to send anti-war messages across Russia

🖨️ Anonymous hacked 160 misconfigured printers and printed out 40000+ copies of anti-war messages for Russian people. Copies also explained how users can bypass censorship w/ Tor browser (as many media sites are blocked). #cybersecurity

Go to article at
25.3.2022

Ransomware Attack Led Bridgestone to Halt US Tire Production for a Week

⚠️ Bridgestone Americas suffered a #ransomware attack on Feb. 27. This lead the company to shut down its internal network and production in its manufacturing facilities in North and Middle America for 7 days.

Go to article at
25.3.2022

Browser-in-the-Browser Attack Makes Phishing Nearly Invisible

BitB is a novel method that uses third-party SSO options (FB, Google, etc.) on websites for #phishing purposes. These fake login popups can appear very realistic, although they're not. Enabling MFA everywhere is a must to keeping safe.

Go to article at
25.3.2022

Serious Security: DEADBOLT – the ransomware that goes straight for your backups

This novel #ransomware's "niche" are serious home users who take backups. By exploiting a vulnerability in QNAP products, it doesn't need a foothold on your device to to directly encrypt your backup files - asking $1250 to get them back.

Go to article at
25.3.2022