Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

AI Act, cyber risks and breaches: Cyberday product and news roundup 1/2024 🛡️

In January's summary, development themes include reporting updates, improved report sharing and upgraded Academy. On the news side talk about AI Act, cyber risks and breaches.

article

30.1.2024

10 most important tasks for a CISO and tips for being successful

This article provides an insight into the main responsibilities of a CISO, from implementing security principles to fostering collaboration. It also presents valuable tips for successful performance, emphasizing constant learning as a key ingredient.

article

24.1.2024

The Human Firewall Effect: Tips for Securing Your Organization from Within

This blog post emphasizes the critical role employees play in bolstering an organization's cyber security. It discusses developing clear guidelines, employee training, and monitoring progress to create a strong human firewall.

article

19.1.2024

Encryption, RaaS, supply chain attacks: Monthly Cyberday product and news roundup 12/2023 🛡️

In December's summary, development themes include UI updates and information security statements. On the news side talk about encryption, RaaS and supply chain attacks.

article

15.12.2023

NIS2: Working towards compliance with Cyberday (3/3)

✈️ You want to lift your cyber security management to a new level & get NIS2 compliant with a smart tool like Cyberday? In this post you'll learn how your organization can achieve NIS2 compliance in a smart way by building an own agile ISMS.

article

23.8.2023

NIS2: Who's in the scope and what security measures are required? (part 2/3)

In this post you'll learn about what industries are affected by NIS2, security requirements the directive sets, and the available enforcement methods if an organization is not compliant.

article

23.8.2023

NIS2: Get familiar with the EU's new cyber security directive (part 1/3)

Learn about the background and reasons behind the EU's new Network and Information Security 2 (NIS2) Directive. How does it affect your company and how should you react to be compliant?

article

1.8.2023

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Facebook phishers threaten users with Page Recovery Help Support

Bogus recovery service activity on FB, trying to scare users into #phishing traps to takeover accounts and steal more FB pages for this use. ➡️ Stay aware and use MFA and good password practices to protect your account. Learn more >>

Go to article at
29.4.2022

Microsoft Discloses Onslaught of Russian Cyberattacks on Ukraine

Between 23/2-08/4, MS observed 37 destructive RUS #cyberattack's in Ukraine. ⚠️ This suggests cyber playing a bigger role in the war than previously known. Example timelines of linked cyber&military operations in the article >>

Go to article at
29.4.2022

Ransomware Attacks Affected 649 Critical Infrastructure Organizations in 2021, FBI Cyber Crime Report Says

🗞️ FBI's IC3 released 2021 its cyber crime report. 👤 847,376 complaints 💸 $6.9 billion in total losses #Ransomware attacks pose the biggest risk to critical infrastructure, with 649 organizations affected in 14/16 sectors in 2021.

Go to article at
8.4.2022

The Original APT: Advanced Persistent Teenagers

⚠️ LAPSUS$ has breached top companies. MS warns they use old-fashioned techniques, that are hard to block with tech: 👤 target staff at personal addresses 💰 offer $20,000 a week to buy remote access creds 🎣 #phishing to help desk

Go to article at
8.4.2022

Android apps with 45 million installs used data harvesting SDK

Warning about Play apps stealing data with an SDK by a shady Panama-based firm. ⚠️ Apps were collecting data with significant #privacy risks, e.g. any clipboard content, GPS data, emails and phone numbers. List of apps in the article >

Go to article at
8.4.2022

Germany Shuts Down Russian Hydra Darknet Market; Seizes $25 Million in Bitcoin

🚨 Takedown of Hydra, a Russian-language darkweb market of 17M users and active since 2015, was announced on Tuesday. It was used to sell e.g.: 💊 illegal narcotics 🆔 forged documents / IDs 💳 stolen credit / sim cards #cybersecurity

Go to article at
8.4.2022

Lapsus$ And SolarWinds Hackers Both Use The Same Old Trick To Bypass MFA

MFA is one of most important safeguards in #cybersecurity. ⚠️ But hackers have ways to clear weaker forms of MFA. A technique called MFA prompt-bombing has been used in multiple high-profile company hacks lately. Learn more here >>

Go to article at
8.4.2022

A Detailed Look at the Conti Ransomware Gang

Ukrainian researcher leaked 60,000 messages from inside Conti - a #ransomware gang that extorted 180M$ just last year. ☢️ Msgs reveal e.g. a business-like hierarchy, ways to dodge law enforcement and negotiation tactics. Learn more >>

Go to article at
1.4.2022

Hackers Use Google reCAPTCHA To Hide Phishing URLs and Defeat Email Security Scanners To Steal User Credentials

Websites use Google's reCAPTCHA to ensure they interact with humans, not bots. 🎣 Criminals use it to hide #phishing URLs. You get an email with an attachment taking you to reCAPTCHA. Only after the puzzle, you get to e.g. fake MS login.

Go to article at
1.4.2022