Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

ISO 27001 and ISO 9001: Differences, how they work together and benefits of combining

Learn about the synergy between ISO 27001 and ISO 9001. Learn how integrating these standards enhances information security, quality management, and overall operational efficiency, using case examples and actionable insights.

article

6.6.2024

NIS2 Compliance: Top 5 Reasons for the Manufacturing Sector

The article highlights the critical importance for manufacturers to comply with NIS2 regulations to safeguard their operations and infrastructure from cyber threats.

article

31.5.2024

Cannes Hospital data breach, the impact of AI and NIS2 evolution: the Cyberday product and news round-up 5/2024 🛡️

May's Product and News Update presents the new monthly ISMS reports as well as the Metrics page. Other topics include Cyberday's new framework DORA and recent news around the world.

article

17.5.2024

6 ways to assess security work effectiveness

Evaluating the effectiveness of your cybersecurity involves examining the adequacy of your existing security measures. This process helps you identify your current security status and determine the necessary actions to enhance and fortify.

article

3.5.2024

Best Practices from ISO 27001 for Secure System Acquisition and Development: Create your NIS2 measures

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Avoid this "lost injured dog" Facebook hoax

Compromised or new accounts sending hoax posts to e.g. local community groups. Now with "Lost injured dog" approach. This is common - used to great effect in the “dead daughter / free PS5” scam last year. Avoiding hoaxes >> #cybercrime

Go to article at
21.4.2023

FBI and FCC warn about “Juicejacking” – but just how useful is their advice?

Phones charge over USB cables, which carry both power and data. 🪫 When you plug into a USB outlet at an airport, how do you know you're only getting power, not a secret data connection? More info about #juicejacking >> #cybersecurity

Go to article at
21.4.2023

Fake Chrome updates spread malware

⚠️ Campaign (since Nov-22) uses vulnerable, hacked sites to push fake browser updates. Malicious JS shows an update msg and automatically downloads a zip when landing on the page. Opening the file will execute a cryptominer #malware.

Go to article at
21.4.2023

Discarded, not destroyed: Old routers reveal corporate secrets

🗑️ The fate of a discarded routers? ESET purchased a few used ones to investigate. In many cases, previous configurations weren't wiped and data could be used to identify the prior owners and network details. #cybersecurity

Go to article at
21.4.2023

AI chatbots making it harder to spot phishing emails, say experts

⚠️ Europol issues a warning about criminal use of ChatGPT "AI allows crafting very believable ‘spear-phishing’ emails and other written communication with very little effort, especially compared to what you have to do before." #phishing

Go to article at
31.3.2023

Pig butchering scams: The anatomy of a fast‑growing threat

💬 Hyper-connectedness cuts both ways. Scammers also can reach you anytime, any channel. And their techniques are developing. "Pig butchering scams" start with weeks long cold msg chains, to trick people later. Examples >> #cybercrime

Go to article at
31.3.2023

Microsoft Security Copilot is a new GPT-4 AI assistant for cybersecurity

🤖 Microsoft is developing an AI-powered #cybersecurity assistant to help identify breaches and derive smart signals from data. Security Copilot has a chatbot interface like new Bing, and is the latest example of MS's big push with AI.

Go to article at
31.3.2023

New Wi-Fi Protocol Security Flaw Affecting Linux, Android and iOS Devices

⚠️ Researchers uncovered a #vulnerability in IEEE 802.11 Wi-Fi protocol standard: "Attacker can disconnect a victim and connect under his MAC address (using the credentials of the adversary) to steal the data still underway to them."

Go to article at
31.3.2023

Just 1% of Nonprofit Domains Have Basic DMARC Email Security Protections

⚠️ Only 1.2% of nearly 10M verified .org domains analyzed are using proper DMARC rules. DMARC is used to automatically flag emails that are suspected to be sent from an impersonated domain. It's an important tool for battling #phishing.

Go to article at
24.3.2023