Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

System acquisition and development in NIS2: Suggested best practices

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Continuity management in NIS2: Benchmark measures for business continuity and backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

Ransomware review: March 2023

Recent #ransomware numbers: ☢️ LockBit alone leaked data of 126 victim organizations on its leak site during February 2023 🏭 Services, logistics and tech top industries 🦹 Medusa a new active gang

Go to article at
10.3.2023

Fifth of Government Workers Don't Care if Employer is Hacked

Survey 800 public sector workers found "not my job” -attitude exposing governments to risk 👤 34% of workers recognize their actions impact organization’s security ⚠️ 21% said they don’t care if organization is hacked #cybersecurity

Go to article at
10.3.2023

GitHub begins 2FA rollout for code contributors

Developer accounts are popular targets for #phishing and account takeover. Protecting them is a critical step toward securing the software supply chain. 🔑 GitHub developers and admings now have 45 days to configure 2FA on their accounts.

Go to article at
10.3.2023

The Pain of Double Extortion Ransomware

⚠️ Double extortion #ransomware means stealing & encrypting victim's data, enabling demanding two (or more) separate ransom payments. 71% say double extortion tactics have increased 65% agree these make tougher to refuse ransom demands

Go to article at
10.3.2023

Record Number of Mobile Phishing Attacks in 2022

🎣 50% of mobile phone owners worldwide exposed to a #phishing attack every quarter 📈 Mobile phishing encounters have increased every quarter since Q2 2020 ⚖️ Insurance, legal, healthcare among most heavily targeted

Go to article at
3.3.2023

How to work from home securely, the NSA way

NSA's top tips for remove work #cybersecurity: ⚠️ Keep your software and router updated 🔑 Use a password manager and 2FA 🧑‍💻 Separate work and life activities 🔗 Connect to office with a VPN

Go to article at
3.3.2023

US cybersecurity chief: Software makers shouldn't lawyer their way out of security responsibilities

⚠️ "Unsafe software / tech products more dangerous than Chinese spy balloons." CISA director says: "Tech providers must prioritize security over e.g. cost, features, and speed to market" #cybersecurity

Go to article at
3.3.2023

LastPass Says Employee's Home Computer Was Hacked And Corporate Vault Stolen

Another LastPass breach: “.. targeted engineer's home PC and exploited vulnerable 3rd party software, which enabled RCE capability and implanting keylogger #malware” ☢️ Hacked DevOps engineer 1 of 4 employees w/ access to corporate vault

Go to article at
3.3.2023

Cyberattack on Dole Temporarily Shuts Down Production in North America

Company memo says a #cyberattack forced Dole to shut down production plants in US and halt food shipments to grocery stores. 🥫 This continues growing list of high-profile attacks on food and agriculture sector (e.g. JBS, Llobet).

Go to article at
24.2.2023