Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Cannes Hospital data breach, the impact of AI and NIS2 evolution: the Cyberday product and news round-up 5/2024 🛡️

May's Product and News Update presents the new monthly ISMS reports as well as the Metrics page. Other topics include Cyberday's new framework DORA and recent news around the world.

article

17.5.2024

6 ways to assess security work effectiveness

Evaluating the effectiveness of your cybersecurity involves examining the adequacy of your existing security measures. This process helps you identify your current security status and determine the necessary actions to enhance and fortify.

article

3.5.2024

System acquisition and development in NIS2: Suggested best practices

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Continuity management in NIS2: Benchmark measures for business continuity and backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

HR security in NIS2: Best practices for compliance

Learn how HR drives ISO 27001 and NIS2 compliance through security training, roles, and policies essential for building a strong information security culture.

article

5.4.2024

Access control & MFA in NIS2: Build a solid foundation with ISO 27001 controls

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Information Security Risk Management: A Step-by-step Guide to a Clear Process

Get a step-by-step guide on managing information security risks, from asset identification to monitoring, essential for navigating growing cybersecurity threats.

article

21.3.2024

Online ticketing company “See” pwned for 2.5 years by attackers

See Tickets is a major global player in the online event ticketing. ⚠️ They suffered a #cybersecurity breach that lasted 2,5 years before spotted, only when an external person notified See Tickets about it. Breach timeline and details >>

Go to article at
28.10.2022

GitLab Adds Governance, Software Supply Chain Enhancements

🛡️ GitLab announced new #cybersecurity and compliance features. "New app security scanners incl. e.g. static application security testing, secret detection, container scanning and dependency scanning..."

Go to article at
28.10.2022

Clearview AI image-scraping face recognition service hit with €20m fine in France

Clearview AI matches faces to a database of 20 billion images. Following an earlier (unaddressed) formal notice, CNIL fined Clearview AI 20 M€ and ordered to stop processing data on individuals in France without a legal basis. #privacy

Go to article at
28.10.2022

Apple Releases Patch For iPhone And iPad Zero Day

On Monday Apple put out a patch for 8th zero-day this year. ⚠️ This high-severity #vulnerability lets attackers remotely execute malicious code that runs with the highest privileges inside the OS kernel of up-to-date iPhones and iPads.

Go to article at
28.10.2022

Gen Z, Millennial Workers Are Bigger Cybersecurity Risks Than Older Employees

"Vast majority of incidents trace back to a single person" EY's Human risk in #cybersecurity survey: ⚠️ 48% protect personal devices better than work devices ☣️ younger workers more likely to re-use passwords / disregard security updates

Go to article at
21.10.2022

European Police Arrest a Gang That Hacked Wireless Key Fobs to Steal Cars

🗞️ French police (in collab w/ Spain, Latvia) catch a #cybercrime ring of 31 suspects from 22 locations in 3 nations. Members incl. software devs, resellers, and the actual car thieves who used developed tools to break into vehicles.

Go to article at
21.10.2022

Warning: "FaceStealer" iOS and Android apps steal your Facebook login

⚠️ Facestealer #malware spreading through dodgy apps Researchers found 400 iOS/Android apps steal FB creds. They're fun-looking apps (e.g. photo editors, VPNs, games) with good reviews, but demand FB login and send details to fraudsters.

Go to article at
21.10.2022

Qatar Spyware

Visiting Qatar for the World Cup? Get ready to install #spyware. Etheraz, a covid-19 app everyone over 18 must have, needs access to eg: 📍 exact location 🔓 screen lock ❌ read, delete or change all content 💤 prevent sleep mode

Go to article at
21.10.2022

Consumers want more transparency on how companies manage their data

Cisco consumer #privacy survey results: ⚠️ 76% wouldn't buy from a company who they don't want to trust with their data 🏢 37% had indeed switched providers due to poor data privacy practices More findings in the article >>

Go to article at
14.10.2022