Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

System acquisition and development in NIS2: Suggested best practices

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Continuity management in NIS2: Benchmark measures for business continuity and backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Ransomware, AI Act 101, NIST CSF 2.0: Cyberday product and news round up 3/2024 🛡️

In the March digest, development themes include new frameworks, risk management improvements and a new visual view for documentation cards. The news features Information Security Trailblazers, data breaches and AI Act 101.

article

21.3.2024

Empowering Employees: The Keystone in Incident Detection and Reporting

Employees are vital for detecting and reporting cyber threats and bolstering security. Proper training fosters a resilient culture, ensuring timely responses and safeguarding against breaches.

article

15.3.2024

LVHN Reports Cyberattack by Russian Ransomware Gang

The #ransomware group behind the attack, called "Black cat", is an example of a gang that advertises their RaaS services on dark web and takes a cut of the final attack profits. ⚠️ Ransomware-as-a-service is becoming more and more common.

Go to article at
24.2.2023

Will ChatGPT start writing killer malware?

ChatGPT is good enough to produce homework answers, legal responses and medical diagnoses that pass the “smell test”. Even now it can e.g. make #phishing more convincing and automate ransomware negotiations. What's next? See article >>

Go to article at
24.2.2023

Phishing Fears Ramp Up on Email, Collaboration Platforms

State of Email Security report: 🎣 97% of companies saw a #phishing attack 💰 66% acknowledged a successful ransomware attack 🏭 Energy (83%) & healthcare (80%) among most breached industries 💬 Slack and Teams growing exploit channels

Go to article at
24.2.2023

Spam and phishing in 2022

📨 2022 #phishing themes: - 49% of emails were spam, 30% of spam originated from Russia - Global events (e.g. World Cup, Ukraine crisis) and bonuses/compensations big scam themes - Scammers’ crypto interest growing

Go to article at
17.2.2023

Camera the Size of a Grain of Salt

📸 Micro-sized cameras have great potential to e.g. identify health risks. New breakthroughs enable tiny cameras w/ crisp images on par with 500,000x larger camera lens. This can also change the nature of surveillance. #cybersecurity

Go to article at
17.2.2023

Mapping your supply chain

🌐 Supply chain mapping creates an up-to-date view of your supplier network. It will help to e.g.: - improve contractual #cybersecurity measures - identify suppliers needed to restore from incidents - improve compliance More tips >>

Go to article at
17.2.2023

Data Breach on Instant Checkmate and Truthfinder Background Check Services Leaked 20 Million Records

PeopleConnect scrapes personal data from e.g. court records, marriage/criminal registries and social media. On Jan 21, a hacker published a treasure trove reportedly obtained from them - 2.9 GB CSV with 20M+ records. #privacy

Go to article at
17.2.2023

Patch Now: Apple's iOS, iPadOS, macOS, and Safari Under Attack with New Zero-Day Flaw

Apple on Mon rolled out security updates for iOS, iPadOS, macOS, and Safari to addressing a WebKit zero-day flaw that it said has been actively exploited in the wild. Users advised to update to iOS 16.3.1 / Safari 16.3.1. #cybersecurity

Go to article at
17.2.2023

Hackers leak passwords for 500,000 Fortinet VPN accounts

❗ 498,908 Fortinet VPN stolen user credentials being shared on dark web forums. Incident is serious - leaked creds can be used to infiltrate the network of a company using the service to steal data or distribute malware. #cybersecurity

Go to article at
15.2.2023