Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Encryption, RaaS, supply chain attacks: Monthly Cyberday product and news roundup 12/2023 🛡️

In December's summary, development themes include UI updates and information security statements. On the news side talk about encryption, RaaS and supply chain attacks.

article

15.12.2023

How do you benefit from ISO 27001 certification?

Why do organizations choose to go for ISO 27001 certification? In this blog article, we will give you our top 5 reasons to get certified. Certification will certainly benefit your security directly, but there are other kind of benefits available too.

article

25.10.2023

Working towards NIS2 compliance with Cyberday

✈️ You want to lift your cyber security management to a new level & get NIS2 compliant with a smart tool like Cyberday? In this post you'll learn how your organization can achieve NIS2 compliance in a smart way by building an own agile ISMS.

article

23.8.2023

Who does NIS2 apply to? Scope and required security measures explained.

In this post you'll learn about what industries are affected by NIS2, security requirements the directive sets, and the available enforcement methods if an organization is not compliant.

article

23.8.2023

What is NIS2 directive? Know EU's new cyber security legislation

Learn about the background and reasons behind the EU's new Network and Information Security 2 (NIS2) Directive. How does it affect your company and how should you react to be compliant?

article

1.8.2023

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

'Millions' of Dell PCs will grant malware, rogue users admin-level access if asked nicely

The update driver in hundreds of millions of Dell devices had a bunch of vulnerabilities for years (CVE-2021-21551), which could be utilized to bypass #cybersecurity features and take control of device. Link to patch on the article.

Go to article at
5.5.2021

Deepfake Attacks Are About To Surge, Experts Warn

Report finds a drastic increase in deepfake technology and offered services across the Dark Web. In the future, more and more cybercriminals will certainly incorporate these elements into their scams. #cybersecurity

Go to article at
5.5.2021

U.S. Agency for Global Media data breach caused by a phishing attack

US government agency suffered a breach that started from an employee falling for phishing. MFA deployment on 365-accounts and phishing-related guidelines jumped on top of the development queue after the incident. #cybersecurity

Go to article at
5.5.2021

61% of cybersecurity teams are understaffed

Recent survey highlights some longstanding #cybersecurity skills gap related issues: ⚠️ 61% of cybersec teams are understaffed ⚠️ 55% say they have unfilled positions ⚠️ 50% say cybersec applicants are not well qualified

Go to article at
5.5.2021

Yritykselle seuraamusmaksu tietosuojarikkomuksista pysäköinninvalvontamaksujen yhteydessä

Finnish parking control company gets 75 000 € #GDPR fine: ⚠️ Too broad data collection for data subject identification (e.g. ID number) ⚠️ Too long data retention ⚠️ Failure to exercise the data subject 's rights #cybersecurity

Go to article at
30.4.2021

Five Questions to Ask Your SOCaaS Provider

A large organization can build an own SOC, i.e. 24/7 security operations center, or get it from a partner. This article has some relevant questions to ask, so you can understand in more detail what you're actually acquiring. #cybersecurity

Go to article at
30.4.2021

Only 8% of businesses that paid a ransom got all of their data back

#Ransomware is brutal. Survey findings from Sophos: 📈 avg cost of recovery +143% (0.76M$ (2020) -> 1.85M$ (2021)) 💰 avg ransom paid 170k$ 🦹 8% of got all their data back after paying a ransom #cybersecurity

Go to article at
29.4.2021

Cybercriminals Widely Abusing Excel 4.0 Macro to Distribute Malware

Cyber criminals taking advantage of an age-old feature. Excel 4.0 macros (XLM) were published in v4.0 back in 1992. These are hard to detect for security solutions. Use is e.g. download and execute ZLoader or Quakbot malware. #cybersecurity

Go to article at
29.4.2021

Five steps to get employees invested in security awareness training

Staff engagement in #cybersecurity training: ✅ Examples - What can happen, if an employee doesn't follow guidelines ✅ Focus on the biggest risks for your organisation or each unit ✅ Clarity - Keep materials short and unambiguous

Go to article at
23.4.2021