Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Top 7 information security standards, frameworks and laws explained

Many information security frameworks are available to help organizations build their own security plans. This article provides key information about some of the most popular information security frameworks.

article

4.3.2024

ISO 27001 and NIS2: Understanding their Connection

Learn how the ISO 27001 and the NIS2 are "connected" and why they are brought up together pretty often. Understand their differences and synergy with the help of this blog post.

article

1.3.2024

Guide to Incident Detection and Reporting: Prepared for the Worst

In this guide you'll learn to navigate the incident detection and reporting process, explore various mechanisms, understand reporting, documentation, and derive crucial lessons. We also glance at other ingredients for successful incident management.

article

22.2.2024

NIS2 Overview: History, key contents and significance for top management

Get an overview of NIS2's main contents and understand how it makes top management clearly responsible for organization's information security efforts.

article

16.2.2024

Best Practices and Common Challenges of ISMS Implementation

No matter if you are an IT professional, a cyber security expert, or in a management role, this post will provide you with valuable insights into the best practices for a successful ISMS implementation and how to navigate common challenges.

article

14.2.2024

ISMS Guide: Top 10 ISMS Implementation Benefits

What is an ISMS and why does your organization benefit from its implementation in the long run? This blog post will give you a short guide about all the basics you need to know about an ISMS and its top 10 benefits.

article

9.2.2024

Intro to Incident Management: Definitions, benefits and best practices

Learn how an incident management process improves communication, documentation, and continuous improvement for IT organisations.

article

6.2.2024

5 Efficient Ways for Involving People in Your Security Work

Discover how teamwork, education, reporting, and risk assessments empower ISMS. Explore 5 ways to engage people for a secure, collaborative digital space.

article

1.2.2024

FBI seizes domains used to sell stolen data, DDoS services

FBI seizes harmful domains ⚠️ WeLeakInfo.to sold subscriptions for searching data from 10k data breaches, eg emails, phones, and passwords for online accounts. ⛔ ipstress.in and ovh-booter.com used for DDoS ordering #cybersecurity

Go to article at
3.6.2022

New Microsoft Zero-Day Attack Underway

MS Support Diagnostic Tool has a #vulnerability, that enables running commands remotely via using malicious MS Word documents. No patch available yet, limit by: ☑️ Turning off MSDT URL protocol ☑️ Disabling preview feature in IE

Go to article at
3.6.2022

How Dangerous Is the Cyber Attack Risk to Transportation?

⚠️ +186% increase between 6/2020 - 6/2021 in #ransomware attacks at transportation industry. 🚆 Cyber attacks targeting transport authorities e.g. managing train or subway routes could be terrible. Article lists needed best practices >>

Go to article at
20.5.2022

Over 200 Apps on Play Store Caught Spying on Android Users Using Facestealer

⚠️ Potentially harmful apps persist on Google Play for avg. 77 days Now researchers found 200 Android apps distributing #malware called Facestealer. These apps masquerade as VPNs, fitness, photo editing, and puzzle apps.

Go to article at
20.5.2022

Hackers can steal your Tesla Model 3, Y using new Bluetooth attack

Researchers developed a tool for Bluetooth Low Energy relay attacks. Tesla Model 3 & Y use a BLE-based entry system, so attack could unlock and start the cars. More security? At least there's ‘PIN to Drive’ feature. 🚘 #cybersecurity

Go to article at
20.5.2022

When Your Smart ID Card Reader Comes With Malware

A common security control is using smart ID cards for allowing physical access to buildings or systems. ⚠️ But employers don't always issue approved card readers, so people turn to low-cost online options. Case example >> #cybersecurity

Go to article at
20.5.2022

Some top 100,000 websites collect everything you type—before you hit submit

📨 Subscribing for newsletter, 🏨 booking a hotel, 💸 buying stuff online? New study shows some top websites collect some or all of this data before you hit 'Submit'. This behavior is similar to #malware called keyloggers. #privacy

Go to article at
20.5.2022

Colonial Pipeline facing $1,000,000 fine for poor recovery plans

Many remember Colonial Pipeline #ransomware attack from last year. They paid attackers 4.4 M$ in bitcoin, but were unable to recover much of data. ⚠️ Now Colonial is also fined 1M$ for poor continuity planning. Read for more RaaS info >>

Go to article at
13.5.2022

Phishing Scam Nets $23.5 Million From DoD, California Man Arrested Siphoning Money From Contractors

🦹 Mies hyökkäsi DoD:hen #phishing'huijauksella ja varasti 23 M$. Toimittajan työntekijänä hän tunsi maksujärjestelmän. Väärennettyjen sähköpostien ja lookalike URLien avulla hän varasti kirjautumistunnuksia ja ohjasi maksuja 💸 itselleen.

Go to article at
13.5.2022