Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

NIS2 national legistation, ransomware and a new development forum: Cyberday product and news round-up 9/2024 🛡️

This is the September news and product review from Cyberday. Read news about ransomware, new phishing techniques and local NIS2-legistations.

article

20.9.2024

IT and OT Cyber Security: Different Environments, Different Priorities

This blog post outlines the key differences between IT and OT cyber security, focusing on their distinct areas, objectives, environments, threat landscapes, and compliance requirements.

article

4.9.2024

Cyber Security in Supply Chain Risk Management

Businesses should prioritize supply chain security by adopting best cyber security practices, fostering resilience, and promoting collaboration to protect against evolving cyber threats. Learn more about this topic in this blog post.

article

22.8.2024

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

ISO 27001 and ISO 9001: Differences, how they work together and benefits of combining

Learn about the synergy between ISO 27001 and ISO 9001. Learn how integrating these standards enhances information security, quality management, and overall operational efficiency, using case examples and actionable insights.

article

6.6.2024

NIS2 Compliance: Top 5 Reasons for the Manufacturing Sector

The article highlights the critical importance for manufacturers to comply with NIS2 regulations to safeguard their operations and infrastructure from cyber threats.

article

31.5.2024

Token tactics: How to prevent, detect, and respond to cloud token theft

⚠️ When we increase MFA coverage, threat actors need more sophisticated techniques to compromise resources. Recently there's been a significant increase in token theft. Read Microsoft's DART team's report on the #cybersecurity threat >>

Go to article at
18.11.2022

Google to Pay $391 Million Privacy Fine for Secretly Tracking Users' Location

391M$ fine: Google's #privacy actions deemed deceptive. ⚠️ "misled users to think they turned off location tracking, but continued to collecting data" Location is combined with behavioral data to create user profiles eg for ad targeting.

Go to article at
18.11.2022

Instagram Impersonators Target Thousands, Slipping by Microsoft's Cybersecurity

⚠️ #Phishing attack targets 22k students in the US with a "unusual login on Instagram" scam. To note: attack used a valid 41-month old domain with a good reputation, and was able to pass e.g. MS 365 and Exchange email protections.

Go to article at
18.11.2022

It’s time. Delete your Twitter DMs

Twitter is in quite a chaos. Security people are advising to e.g. delete DMs 💬 and stop using Twitter SSO 🔐. Recently quitted Twitter employees include: - CISO - Head of Trust & Safety - CPO (privacy) - CCO (compliance) #cybersecurity

Go to article at
18.11.2022

The Biggest Phishing Breaches of 2022 and How to Avoid them for 2023

#Phishing attacks were once primitive and full of typos, but nowadays even experts have trouble identifying them. Top types in 2022: 🅰️ Typosquatting 🌐 Lookalike domains 👔 Executive impersonation 🧑‍💼 High-level employee targeting

Go to article at
11.11.2022

Mastodon: What you need to know for your security and privacy

After Elon Musk's acquisition of Twitter, Mastodon is becoming hot. Mastodon is a free, ad-free, decentralised, open-source social media, created by a German non-profit organization. If you're interested, check also these related #cybersecurity tips >>

Go to article at
11.11.2022

Australian real estate agency Harcourts suffers a data breach

Harcourts suffered a #cyberattack last month. Rental database incl. lots of sensitive data (photo IDs, signature copies, etc.). ⚡ Harcourts smoothly blames partner: "Breach occurred due to Stafflink employee using own device for work..."

Go to article at
11.11.2022

Having refused to pay ransom, health insurer Medibank sees customer data posted online by hackers

Australia's largest health insurer Medibank announced they won't pay to #ransomware gang. ⚠️ Crooks started releasing client data online, dividing insured customers to "good" & "naughty" depending on e.g. substance abuse or medical issues.

Go to article at
11.11.2022

Parcel delivery scams are on the rise: Do you know what to watch out for?

Parcel delivery scams spoof e.g. DHL / other delivery services, sending #phishing emails / SMS telling something's wrong with delivery to get users to click. 📈 Amounts are soaring as e-commerce has grown and holiday's are coming up.

Go to article at
28.10.2022