Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

HTML smuggling campaigns impersonate well-known brands to deliver malware

HTML files in unexpected emails are as great a risk as any other malicious attachment. HTML smuggling is not a new #cyberattack method, but it's growing on polularity since Microsoft started blocking macros in documents by default.

Go to article at
10.2.2023

Critical Infrastructure at Risk from New Vulnerabilities Found in Wireless IIoT Devices

38 #cybersecurity vulnerabilities found in IIoT devices that allow infiltrating networks and risking critical infra. Findings show how OT networks can be at risk by IIoT devices accessible to internet, creating a "single point of failure".

Go to article at
10.2.2023

Malware Delivered through Google Search

Numerous #malware that used to rely on #phishing and Word macros for delivery, now prefer G Ads impersonating brands like Adobe or Microsoft. Google develops filtering malicious ads, but criminals seem to always find ways to counter.

Go to article at
10.2.2023

Are Your Employees Thinking Critically About Their Online Behaviors?

👨‍💻 Each employee is an endpoint capable of inviting risk, but that also acting as a safeguard against threats. This article has good examples of panic-inducing scenarios and advice to avoid employee breakdowns. #cybersecurity

Go to article at
3.2.2023

Riot Games refuses to pay ransom to avoid League of Legends leak

⚠️ Riot Games was breached by a social engineering #cyberattack and now demanded 10M$ to stop leaking source code. They didn't pay and are now working to restore operations. This continues recent game company breaches (e.g. 2K, Rockstar).

Go to article at
3.2.2023

Researchers Uncover Packer Used by Several Malware to Evade Detection for 6 Years

☢️ A shellcode-based packer dubbed TrickGate has been successfully operating for over six years evading detection, while enabling threat actors to deliver a wide range of malware such as TrickBot and Emotet. #cybersecurity

Go to article at
3.2.2023

JD Sports Says 10 Million Customers Hit By Cyber Attack

JD Sports had a breach relating to online orders Nov/18-Oct/20. ⚠️ Affected customers advised to stay vigilant towards scam e-mails, calls and texts. Retailers are common targets for #cyberattack's due to vast customer data they hold.

Go to article at
3.2.2023

Near-Record Year for US Data Breaches in 2022

Takeways on ITRC's US data breaches in 2022 report: ⚠️ Only 34% of breach notices incl victim and attack details. Hard for people to estimate their risk. Other info: 👥 422 million affected 🎣 Phishing and #ransomware popular vectors

Go to article at
27.1.2023

Hunting Insider Threats on the Dark Web

💣 Malicious employees cause 20% of incidents. Insider attacks are on avg. 10x larger. Companies can spot threats by spotting crooks after insider knowledge or disgruntled employees' unsavory comments - also on dark web. #cybersecurity

Go to article at
27.1.2023