Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

ISMS implementation: comparison of documents, wikis, ISMS tools and GRC

There are a few different approaches to building an ISMS. In this post, we’ll compare these different methods, helping you understand which might be the best fit for your organization’s security management needs.

article

6.3.2025

What is Statement of Applicability (SoA) in ISO 27001?

In this blog, we'll cover the main purpose and benefits of a well-working Statement of Applicability document. We'll also explain why SoA is important, and 4 key roles it can play in information security work.

article

4.3.2025

Why is ISO 27001 compliance now more important than ever?

Year after year, ISO 27001 standard has remained one of the gold standards for information security. The global standard has remained relevant, but where did ISO 27001 originate? And why is it's popularity just going up?

article

27.2.2025

10 most common non-conformities in ISO 27001 audits

Audits and non-conformities drive organizations toward continuous improvement. But before your first ISO 27001 certification, it's good to be aware of some most common non-conformities, so you can avoid these in your certification audit.

article

18.2.2025

Got an ISO 27001 audit interview request - what should I expect?

In this blog, we will talk about the importance of employee participation in the audit interview process, why auditors value employee insights, and look into possible questions asked in an ISO 27001 interview.

article

13.2.2025

ISO 27001 compliance and certification checklist

Looking to ensure you fill ISO 27001 requirements? This checklist will present clearly ordered key steps that guide your organization in building an ISMS and getting compliant with the ISO 27001 standard.

article

6.2.2025

Most important documents in ISO 27001 certification audit

The ISO 27001 standard does specifically define some key documents, which need to be gathered together and be easily shareable e.g. for the auditor. In this blog, we'll present these most important documents for an ISO 27001 certification audit.

article

30.1.2025

NIS2 & national implementation: which local NIS2 laws are available in Cyberday?

EU Member States are required to adopt NIS2 into national law. Key national decisions include defining local authorities, monitoring mechanisms, and tailoring regulations to meet specific needs.

article

23.1.2025

LVHN Reports Cyberattack by Russian Ransomware Gang

The #ransomware group behind the attack, called "Black cat", is an example of a gang that advertises their RaaS services on dark web and takes a cut of the final attack profits. ⚠️ Ransomware-as-a-service is becoming more and more common.

Go to article at
24.2.2023

Will ChatGPT start writing killer malware?

ChatGPT is good enough to produce homework answers, legal responses and medical diagnoses that pass the “smell test”. Even now it can e.g. make #phishing more convincing and automate ransomware negotiations. What's next? See article >>

Go to article at
24.2.2023

Phishing Fears Ramp Up on Email, Collaboration Platforms

State of Email Security report: 🎣 97% of companies saw a #phishing attack 💰 66% acknowledged a successful ransomware attack 🏭 Energy (83%) & healthcare (80%) among most breached industries 💬 Slack and Teams growing exploit channels

Go to article at
24.2.2023

Spam and phishing in 2022

📨 2022 #phishing themes: - 49% of emails were spam, 30% of spam originated from Russia - Global events (e.g. World Cup, Ukraine crisis) and bonuses/compensations big scam themes - Scammers’ crypto interest growing

Go to article at
17.2.2023

Camera the Size of a Grain of Salt

📸 Micro-sized cameras have great potential to e.g. identify health risks. New breakthroughs enable tiny cameras w/ crisp images on par with 500,000x larger camera lens. This can also change the nature of surveillance. #cybersecurity

Go to article at
17.2.2023

Mapping your supply chain

🌐 Supply chain mapping creates an up-to-date view of your supplier network. It will help to e.g.: - improve contractual #cybersecurity measures - identify suppliers needed to restore from incidents - improve compliance More tips >>

Go to article at
17.2.2023

Data Breach on Instant Checkmate and Truthfinder Background Check Services Leaked 20 Million Records

PeopleConnect scrapes personal data from e.g. court records, marriage/criminal registries and social media. On Jan 21, a hacker published a treasure trove reportedly obtained from them - 2.9 GB CSV with 20M+ records. #privacy

Go to article at
17.2.2023

Patch Now: Apple's iOS, iPadOS, macOS, and Safari Under Attack with New Zero-Day Flaw

Apple on Mon rolled out security updates for iOS, iPadOS, macOS, and Safari to addressing a WebKit zero-day flaw that it said has been actively exploited in the wild. Users advised to update to iOS 16.3.1 / Safari 16.3.1. #cybersecurity

Go to article at
17.2.2023

Hackers leak passwords for 500,000 Fortinet VPN accounts

❗ 498,908 Fortinet VPN stolen user credentials being shared on dark web forums. Incident is serious - leaked creds can be used to infiltrate the network of a company using the service to steal data or distribute malware. #cybersecurity

Go to article at
15.2.2023