Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

Become a Cyberday partner: Features, benefits and best practices

A good and efficient tool such as Cyberday is a great way to work on the organization's cyber secuirty. However, for some organizations that is not enough and the expertise and support of a consultant is needed. Our partner program offers both!

article

6.6.2023

Cyberday Community has been launched!

We just launched a new Community section inside Cyberday. Our goal is to make collaboration with your peers and with us easier and thus help you improve your information security even further!

article

24.3.2023

ISO 27001 standard updated to 2022 version - what changed?

What has changed when comparing 2013 vs. 2022 versions of ISO 27001 and how are these updates visible on Cyberday?‍

article

18.11.2022

Efficient cyber risk management with new autopilot mode

We're constatly searching for ways to automate and create efficient cyber risk management. Our newest additions is risk autopilot mode. It's concept is described on this post.

article

1.6.2022

Infographic: Why is cyber security getting more and more important?

Here's a visual summary of some of the drivers that continue to make cyber security more and more important for all organizations.

article

11.2.2022

Beware: Walmart phishing attack says your package was not delivered

Phishing victims are urged to send their mailing address to the attacker impersonating Walmart. Goal is likely to use address info to conduct a more malicious activities, sending you further, more customized scam emails. #cybersecurity

Go to article at
3.6.2021

Euroopan tietosuojaneuvostolta lausunnot ensimmäisistä ylikansallisista käytännesäännöistä ja suosituksia luottokorttitietojen tallentamisen oikeusperusteesta

🚀 EDPB approved first codes of conduct. E.g. CLOUD CoC gives guidance and specific requirements cloud providers can comply to demonstrate that they act in accordance with the requirements of GDPR. #cybersecurity

Go to article at
3.6.2021

Google Play Store to Add Privacy Labels to Android Apps by 2022

Following Apple’s similar initiative, Google announced privacy labels arriving to Play Store. The purpose is to give user a brief summary to apps #cybersecurity, related assurance, and personal data processing practices.

Go to article at
28.5.2021

Cybersecurity leaders lacking basic cyber hygiene

74% of cybersec leaders targeted in phishing attack in last 90 days. Still basic security hygiene is partly lacking: ⚠️ 45% connect to public Wi-Fi without a VPN ⚠️ 24% use the same passwords for work and personal use #cybersecurity

Go to article at
28.5.2021

DHS to issue first cybersecurity regulations for pipelines after Colonial hack

The recent Colonial Pipeline attack has mobilized authorities in the United States. For the first time, cyber security in the pipeline industry is being regulated in attempt to avoid similar situations in the future. #cybersecurity

Go to article at
28.5.2021

Päivitä heti: VMware varoittaa kriittisestä haavoittuvuudesta

VMware prompts vCenter users to patch vCenter Server versions 6.5, 6.7, and 7.0 immediately. Upon gaining access to port 443, an attacker may choose to run any code of his choice on the host. #cybersecurity

Go to article at
28.5.2021

Should Paying Hacker Ransoms Be Illegal?

#Ransomware gangs make money. Colonial Pipeline just paid 4,5 M$ ransom - small part of one group's earnings. No-one wants payments for crooks, but ban has its difficulties too, especially if organisation is poorly prepared. #cybersecurity

Go to article at
21.5.2021

Cobalt Strike Becomes a Preferred Hacking Tool by Cybercrime, APT Groups

Data from Sophos shows that Cobalt Strike, a threat emulation software, is one of the top tools used in cyber attacks. Cyber criminals use it to e.g. drop malware and employ PowerShell commands to camouflage their activity. #cybersecurity

Go to article at
21.5.2021

The basics of security code review

Article gives ideas for improving code security: ✅ determine common vulnerabilities for the type of app you’re working with ✅ dedicate enough time for reviewing code / fixing bugs ✅ use automated SCA & SAST tools #cybersecurity

Go to article at
19.5.2021