Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Understanding Physical Security in Cybersecurity: Insights from ISO 27001 and Best Practices

Physical security controls are essential, but often undervalued, in safeguarding information systems from unauthorized access, which might otherwise lead to data breaches or business disruptions.

article

22.11.2024

DORA essentials: Introduction, Scope and key requirements

In this blog, we’ll get an comprehensive introduction what DORA is, what it entails, who the requirements framework applies to, and how DORA is implemented within Cyberday. DORA framework is available in Cyberday!

article

14.11.2024

Cyberday goes Cyber Security Nordic 2024!

Our Cyberday team attended the Cyber Security Nordic 2024 event 29th-30th October. Read about the event, keynote and our insights. This post offers insight into topical themes, also for those who were unable to attend.

article

31.10.2024

From Compliance to Collaboration: How NIS2 Encourages Stronger Supply Chain Security Collaboration

Discover how NIS2 shifts focus from simple compliance to creating collaborative security partnerships, enhancing supply chain resilience and trust. 

article

25.10.2024

Agendium Ltd is now Cyberday Inc.!

We are thrilled to announce that our company is entering an exciting new chapter with an updated brand, from Agendium Ltd to Cyberday Inc, our new name better reflects our entity, and the direction we are heading.

article

24.10.2024

10 compliance traps & how to avoid them

Explore crucial cyber security compliance pitfalls for SMEs, from outdated policies to insider threats, and learn effective strategies to mitigate risks and enhance security measures.

article

18.10.2024

ISO 9001 standard: A peek inside the Quality framework

This blog post explores ISO 9001, the globally recognized standard for quality management systems (QMS), benefits for utilizing the standard and its significance in today’s competitive business environment.

article

8.10.2024

Navigating the Cybersecurity Maze: Master NIS2 with the help of ISO 27001

Learn how to master NIS2 with ISO 27001 and grab our free NIS2 e-book! This blog post was originally written for the Cyber Security Nordic 2024 event where Cyderday is presented as Strategic partner.

article

3.10.2024

Fake Flipper Zero sellers are after your money

Flipper Zero is a portable multi-tool for pentesters and hardware geeks - often out of stock due to its popularity. ⚠️ Bad actors are noticing this and creating bogus sites claiming to sell Flipper Zero. Case example >> #cybersecurity

Go to article at
28.4.2023

How we fought bad apps and bad actors in 2022

Google's 2022 #cybersecurity numbers - 1.43M policy-violating apps blocked from Google Play - 173K bad accounts banned - $2000M in fraudulent transactions prevented - 500K apps stopped from unnecessarily accessing sensitive permissions

Go to article at
28.4.2023

Google leaking 2FA secrets – researchers advise against new “account sync” feature for now

G Authenticator launched an “account sync” so users can backup 2FA data to cloud and later restore to a new device. ⛔ Researchers though have found some #cybersecurity worries in the feature (especially with encryption). Details >>

Go to article at
28.4.2023

Microsoft: Windows 10 22H2 is the final version of Windows 10

⚠️ The current version (22H2) will be the final version of Windows 10 - work versions supported until May 2025. MS encourages transitioning to Windows 11. 22H2 won't get any Windows 10 feature updates, but #cybersecurity updates continue.

Go to article at
28.4.2023

Popular Fitness Apps Leak Location Data Even When Users Set Privacy Zones

🚩 Students discovered: when a user starts fitness activity from home, an attacker can use app's API metadata to pinpoint their home location, even if they've set up an "endpoint privacy zone" (EPZ) for that area. #privacy

Go to article at
21.4.2023

Avoid this "lost injured dog" Facebook hoax

Compromised or new accounts sending hoax posts to e.g. local community groups. Now with "Lost injured dog" approach. This is common - used to great effect in the “dead daughter / free PS5” scam last year. Avoiding hoaxes >> #cybercrime

Go to article at
21.4.2023

FBI and FCC warn about “Juicejacking” – but just how useful is their advice?

Phones charge over USB cables, which carry both power and data. 🪫 When you plug into a USB outlet at an airport, how do you know you're only getting power, not a secret data connection? More info about #juicejacking >> #cybersecurity

Go to article at
21.4.2023

Fake Chrome updates spread malware

⚠️ Campaign (since Nov-22) uses vulnerable, hacked sites to push fake browser updates. Malicious JS shows an update msg and automatically downloads a zip when landing on the page. Opening the file will execute a cryptominer #malware.

Go to article at
21.4.2023

Discarded, not destroyed: Old routers reveal corporate secrets

🗑️ The fate of a discarded routers? ESET purchased a few used ones to investigate. In many cases, previous configurations weren't wiped and data could be used to identify the prior owners and network details. #cybersecurity

Go to article at
21.4.2023