Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Encryption, RaaS, supply chain attacks: Monthly Cyberday product and news roundup 12/2023 🛡️

In December's summary, development themes include UI updates and information security statements. On the news side talk about encryption, RaaS and supply chain attacks.

article

15.12.2023

NIS2: Who's in the scope and what security measures are required? (part 2/3)

In this post you'll learn about what industries are affected by NIS2, security requirements the directive sets, and the available enforcement methods if an organization is not compliant.

article

23.8.2023

NIS2: Working towards compliance with Cyberday (3/3)

✈️ You want to lift your cyber security management to a new level & get NIS2 compliant with a smart tool like Cyberday? In this post you'll learn how your organization can achieve NIS2 compliance in a smart way by building an own agile ISMS.

article

23.8.2023

NIS2: Get familiar with the EU's new cyber security directive (part 1/3)

Learn about the background and reasons behind the EU's new Network and Information Security 2 (NIS2) Directive. How does it affect your company and how should you react to be compliant?

article

1.8.2023

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

Become a Cyberday partner: Features, benefits and best practices

A good and efficient tool such as Cyberday is a great way to work on the organization's cyber secuirty. However, for some organizations that is not enough and the expertise and support of a consultant is needed. Our partner program offers both!

article

6.6.2023

Privacy predictions 2022

What to expect in 2022 in relation to #privacy: ☑️ Even more user settings, but still no "privacy by default"? ☑️ People and legislators demanding more transparency from algorithms ☑️ Remote work increases employees' privacy skills

Go to article at
25.11.2021

Biometric auth bypassed using fingerprint photo, printer, and glue

"A printer and some glue". Team cloned fingerprints and passed biometric auth (e.g. on MacBook Pro) for $5 cost and w/o high-end tools. Fingerprints are convenient, but with critical data should be used w/ strong password. #cybersecurity

Go to article at
25.11.2021

Arrest in ‘Ransom Your Employer’ Email Scheme

In August scammers were spotted "recruiting" people to unleash #ransomware in their company in exchange for % of the profits. 🚨 Now authorities in Nigeria arrested a man seemingly responsible of this targeting of disgruntled employees.

Go to article at
25.11.2021

What to do if you receive a data breach notice

GDPR demands reporting personal data breaches. Good practices for responding: ☑️ Read notice calmly and ensure legitimacy ☑️ Update compromised passwords ☑️ Expect related scam attempts ☑️ Track activity on your online accounts #privacy

Go to article at
25.11.2021

GoDaddy admits to password breach: check your Managed WordPress site!

GoDaddy #cybersecurity breach: ⚠️ 1,2M managed WP sites affected ⚠️ Crooks in its network for 6 weeks ⚠️ sFTP and database passwords leaked (no encryption reported!) ⚠️ SSL/TLS private keys leaked What-to-do's on the article >>

Go to article at
23.11.2021

Emotet malware is back and rebuilding its botnet via TrickBot

In early 2021 Europol and Eurojust took over the Emotet infrastructure and arrested two individuals. ⚠️ Now researchers see signs of Emotet activity increasing. Takedown hasn't prevented the adversaries from bringing the #malware back.

Go to article at
19.11.2021

FBI's Email System Hacked to Send Out Fake Cyber Security Alert to Thousands

⚠️ FBI server was hijacked and 100,000 people were alerted of a fake cyber attack. An embarrassing case that could have been a lot worse if, instead of "trolling", the threat actor would have been #phishing or distributing malware.

Go to article at
19.11.2021

SharkBot — A New Android Trojan Stealing Banking and Cryptocurrency Accounts

🕵️ Researchers on Monday reported a new Android trojan called SharkBot. #Malware masquarades as media player and uses accessibility features (intended to assist people with disabilities) to e.g. steal banking and crypto app credentials.

Go to article at
19.11.2021

'PerSwaysion' Phishing Campaign Still Ongoing, and Pervasive

The PerSwaysion #phishing kit has been used in thousands of attacks around the world - and is still active. The scams utilize Microsoft's file-sharing services (e.g. SharePoint) to trick people into credential-stealing sites.

Go to article at
19.11.2021