Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

ISO 27001 and ISO 9001: Differences, how they work together and benefits of combining

Learn about the synergy between ISO 27001 and ISO 9001. Learn how integrating these standards enhances information security, quality management, and overall operational efficiency, using case examples and actionable insights.

article

6.6.2024

NIS2 Compliance: Top 5 Reasons for the Manufacturing Sector

The article highlights the critical importance for manufacturers to comply with NIS2 regulations to safeguard their operations and infrastructure from cyber threats.

article

31.5.2024

Cannes Hospital data breach, the impact of AI and NIS2 evolution: the Cyberday product and news round-up 5/2024 🛡️

May's Product and News Update presents the new monthly ISMS reports as well as the Metrics page. Other topics include Cyberday's new framework DORA and recent news around the world.

article

17.5.2024

6 ways to assess security work effectiveness

Evaluating the effectiveness of your cybersecurity involves examining the adequacy of your existing security measures. This process helps you identify your current security status and determine the necessary actions to enhance and fortify.

article

3.5.2024

Best Practices from ISO 27001 for Secure System Acquisition and Development: Create your NIS2 measures

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

IT admin admits sabotaging ex-employer’s network in bid for higher salary

⚠️ In a bid to get re-hired w/ a larger salary, ex IT employee admitted to sabotage. Mr Umetsu used his old (!) creds to edit DNS records to misdirect web and email traffic. Now he faces upto 10y in prison. #cybersecurity

Go to article at
30.9.2022

Capital One Phish Showcases Growing Bank-Brand Targeting Trend

Phishers watch the news. 📨 6000 #phishing emails going out daily in a scam targeting identities. Campaign exploits Capital One's new partnership with Authentify, tricking bank's customers into uploading images of ID cards.

Go to article at
30.9.2022

Critical WhatsApp Bugs Could Have Let Attackers Hack Devices Remotely

💊 WhatsApp patches two severe flaws that could lead to RCE attacks. One of them (CVE-2022-36934, CVSS score: 9.8) is an integer overflow #vulnerability that can be exploited through establishing a video call.

Go to article at
30.9.2022

Can your iPhone be hacked? What to know about iOS security

Device's #cybersecurity largely depends on your usage. Examples of things that can compromise an iPhone: 💣 sideloaded apps 📱 malicious apps from App Store 📅 calendar invite scams 🛠️ configuration profiles installed through phishing

Go to article at
23.9.2022

Spell-Checking in Google Chrome, Microsoft Edge Browsers Leaks Passwords

Researchers found an "unintended interaction" with #cybersecurity worries: 🔓 When Chrome's Enhanced Spellcheck or Edge's MS Editor is enabled on your browser, the passwords you type on websites leak to Google and Microsoft.

Go to article at
23.9.2022

$35 Million Fine For Morgan Stanley After Unencrypted, Unwiped Harddrives Are Auctioned

💸 $35 million penalty for Morgan Stanley SEC’s enforcement division: "Improper disposal of thousands of hard drives since 2016 was an 'extensive failure' to safeguard customers’ data (as required by federal regulations)". #cybersecurity

Go to article at
23.9.2022

Malwarebytes blocks Google, YouTube as malware

An amusing #malware protection blunder: 📣 "Malwarebytes is aware of a temporary issue with the web filtering component of our product that may be blocking certain domains, including google.com"

Go to article at
23.9.2022

US government software suppliers must attest their solutions are secure

US gov agencies need to start gathering more evidence from software suppliers: ✅ self-attestation needed from suppliers before using the software ❌ if NIST requirements not followed, more explanation / assessments needed #cybersecurity

Go to article at
16.9.2022

To Ease the Cybersecurity Worker Shortage, Broaden the Candidate Pipeline

"With enough passion, raw intelligence, and hard work, anyone can be a successful #cybersecurity professional." ℹ️ Article has tips from an experienced CISO for battling the cyber security talent shortage.

Go to article at
16.9.2022