Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

Become a Cyberday partner: Features, benefits and best practices

A good and efficient tool such as Cyberday is a great way to work on the organization's cyber secuirty. However, for some organizations that is not enough and the expertise and support of a consultant is needed. Our partner program offers both!

article

6.6.2023

Cyberday Community has been launched!

We just launched a new Community section inside Cyberday. Our goal is to make collaboration with your peers and with us easier and thus help you improve your information security even further!

article

24.3.2023

ISO 27001 standard updated to 2022 version - what changed?

What has changed when comparing 2013 vs. 2022 versions of ISO 27001 and how are these updates visible on Cyberday?‍

article

18.11.2022

Efficient cyber risk management with new autopilot mode

We're constatly searching for ways to automate and create efficient cyber risk management. Our newest additions is risk autopilot mode. It's concept is described on this post.

article

1.6.2022

Infographic: Why is cyber security getting more and more important?

Here's a visual summary of some of the drivers that continue to make cyber security more and more important for all organizations.

article

11.2.2022

With Crime-as-a-Service, anyone can be an attacker

CaaS = experienced cybercriminals sell access to the tools and information needed for scams. Its generalization is largely the reason why attacks are getting better and more targeted at small businesses as well. #cybersecurity

Go to article at
4.8.2021

This new phishing attack is 'sneakier than usual', Microsoft warns

MS warns 365 users of crafty #phishing messages that mimic a shared OneDrive file. Scams develop at a rapid pace. Comprehensive guidance / training for employees and extensive use of MFA as countermeasures. #cybersecurity

Go to article at
4.8.2021

Ransom demands reaching $1.2M, smaller companies increasingly targeted

#Ransomware a growing #cybersecurity threat for everyone: 🏢 Smaller companies increasingly targeted ⚠️ Avg. ransom demand 1,01M€ (+290% vs. 2020) ⚠️ New variants continuously (e.g. Mount Locker, HelloKitty, Conti)

Go to article at
4.8.2021

On course for a good hacking

The simplicity of hacking somewhere can be eye-openingly impressive. Spoiler: no master tech skills required. Read about how easily hackers could penetrate a premier golf club. #cybersecurity

Go to article at
4.8.2021

Nuisance call-blocking firm fined £170,000 for making almost 200,000 nuisance calls

ICO, the UK's data protection authority, fined a company for unsolicited direct marketing calls. What makes the case ironic is that the company itself sells call-blocking systems. Direct marketing can nowadays backfire. #cybersecurity

Go to article at
4.8.2021

Google shuts down malicious ad posing as Brave browser but delivering malware

Scam targeting Brawe browser downloaders: ⚡ Download page a copy at bravė.com (looks identical on address bar) 💸 Ads directing to malicious site 🦠 A stealer malware distributed along the browser #cybersecurity

Go to article at
4.8.2021

Vishing: What is it and how do I avoid getting scammed?

#Vishing is phishing via phone. Tactics used: 📲 Caller ID spoofing (e.g. location hiding, numeron varastaminen) 📧 Multi-channel scams, SMS / email before the call 👤 Scraping details from social media profiles #cybersecurity

Go to article at
18.6.2021

What is the real cost of ransomware?

Worrying #ransomware statistics: ☠️ 80% of those who paid the ransom were soon the target of another attack 📉 66% reported a clear drop in sales after the attack 🙅 29% of incidents led to employee layoffs #cybersecurity

Go to article at
18.6.2021

Microsoft: Scammers bypass Office 365 MFA in BEC attacks

📧 BEC attack phases: 1. Trick user to fill password in a login form mimicking the real one 2. Circumvent MFA utilizing legacy auth protocols (IMAP/POP3) 3. Use forwarding rules to get important emails to the attacker #cybersecurity

Go to article at
18.6.2021