Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

System acquisition and development in NIS2: Suggested best practices

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Continuity management in NIS2: Benchmark measures for business continuity and backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

25 Major Car Brands Get Failing Marks From Mozilla for Security and Privacy 

⚠️ All analyzed 25 car brands got an F for #privacy! Policies included "WTF-level" personal data harvesting and features ripe for abuse. Researchers want quick actions, stating "cars are privacy-wise the worst category we ever reviewed".

Go to article at
8.9.2023

Parcel Delivery Smishing Campaign Targets iPhone Users

⚠️ Hacker group specializes in imitating postal agencies and in developing fake but convincing parcel tracking websites. They then use smishing (SMS phishing) techniques to trick victims into disclosing e.g. payment data. #cybersecurity

Go to article at
8.9.2023

Password-stealing Chrome extension smuggled on to Web Store

📱 Researchers have shown that a browser extension can steal passwords from text input fields, even if it's compliant with Google's latest security and #privacy standard Manifest V3. Details in article >>

Go to article at
8.9.2023

6 free resources for getting started in cybersecurity

#Cybersecurity field sounds daunting, but really has multiple entry points and plenty of free, good information resources available. ➡️ This article lists 6, incl. Hacksplaining, which is a great site explaining different exploits.

Go to article at
8.9.2023

World’s Largest Cryptocurrency Casino Stake Hacked for $41 Million

⚠️ 'Stake.com Hacker' stole 41 M$ from the cryptocurrency casino. Casino then suspended all deposits/withdrawals, so people can't now access their funds. In 2022, 3700M$ worth of crypto was lost in exploits and hacks. #cybercrime

Go to article at
8.9.2023

Thinking about the security of AI systems

🤖 AI systems have a huge potential, but also some specific #cybersecurity vulnerabilities. Learn from this UK's NCSC article about 'prompt injection' and 'training data manipulation'.

Go to article at
1.9.2023

When Apps Go Rogue

📱 "Sometimes apps are sold. Sometimes they’re orphaned, and then taken over by someone else." A formerly good app can turn malicious. an example story in the article. >> #cybersecurity

Go to article at
1.9.2023

Windows 11 browser change: Europe applauds, outrage everywhere else

Microsoft will soon allow users in EU to open all links in Windows w/ default web browser (instead of Edge). ⁉️ Frustrared users in other countries are asking "how to make Windows think I'm in EU?" #cybersecurity

Go to article at
1.9.2023

Tesla’s Data Breach That Exposed Over 75,000 Employees Was an Inside Job

⚠️ Tesla's recent data breach, involving customer personal data and complaints, was a result of two employees leaking confidential data. Leaked data also exposed technological problems. #cybersecurity

Go to article at
1.9.2023