Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

NIS2 Incident Reporting Requirements and related ISO 27001 Best Practices

This post outlines NIS2 incident reporting and further describes ISO 27001 best practices, and their application in crafting successful incident reporting processes for your organization.

article

8.3.2024

Top 7 information security standards, frameworks and laws explained

Many information security frameworks are available to help organizations build their own security plans. This article provides key information about some of the most popular information security frameworks.

article

4.3.2024

ISO 27001 and NIS2: Understanding their Connection

Learn how the ISO 27001 and the NIS2 are "connected" and why they are brought up together pretty often. Understand their differences and synergy with the help of this blog post.

article

1.3.2024

Guide to Incident Detection and Reporting: Prepared for the Worst

In this guide you'll learn to navigate the incident detection and reporting process, explore various mechanisms, understand reporting, documentation, and derive crucial lessons. We also glance at other ingredients for successful incident management.

article

22.2.2024

NIS2 Overview: History, key contents and significance for top management

Get an overview of NIS2's main contents and understand how it makes top management clearly responsible for organization's information security efforts.

article

16.2.2024

Best Practices and Common Challenges of ISMS Implementation

No matter if you are an IT professional, a cyber security expert, or in a management role, this post will provide you with valuable insights into the best practices for a successful ISMS implementation and how to navigate common challenges.

article

14.2.2024

ISMS Guide: Top 10 ISMS Implementation Benefits

What is an ISMS and why does your organization benefit from its implementation in the long run? This blog post will give you a short guide about all the basics you need to know about an ISMS and its top 10 benefits.

article

9.2.2024

Intro to Incident Management: Definitions, benefits and best practices

Learn how an incident management process improves communication, documentation, and continuous improvement for IT organisations.

article

6.2.2024

Exposed Password Gave Hackers Access to 150,000 Cameras

Hacktivists reportedly found logins for a privileged account exposed on the internet and thus gained access to 150 000 Verkada security cameras - on Tesla warehouses, hospitals, jails and more. #cybersecurity

Go to article at
10.3.2021

Phishing campaigns, from first to last victim, take 21h on average

Most phishing victims experience a fraudulent transaction around 5 days after getting phished, new research shows.

Go to article at
9.3.2021
Business-Email-Compromise

PhotoSquared app leaks photos & home addresses of 100,000s of users

By Waqas Another day, another data breach putting user data at risk - This time, PhotoSquared. This is a post from HackRead.com Read the original post: PhotoSquared app leaks photos & home addresses of 100,000s of users

Go to article at
15.5.2020
Illegal Personal Data Processing

COVID-19 Scam Roundup – April 20, 2020

Scams leveraging coronavirus 2019 (COVID-19) as a lure have stolen tens of millions of dollars from their victims. As of April 16, 2020, the Federal Trade Commission (FTC) had received 20,334 consumer reports of fraud attempts pertaining to the coronavirus since the beginning of the year. Those attacks that proved successful had caused their victims […]… Read More The post COVID-19 Scam Roundup – April 20, 2020 appeared first on The State of Security. The post COVID-19 Scam Roundup – April 20, 2020 appeared first on Security Boulevard.

Go to article at
15.5.2020
Phishing

Why ransomware continues to knock on healthcare’s door, enter, and create havoc

My name is Adam, and I’ve worked in the healthcare industry for over 15 years. In my current line of work, I assist healthcare facilities across the U.S. with their overall cybersecurity posture, ranging from physical and technical security controls to security incident response in conjunction with disaster recovery and business continuity planning. My scope of work is quite broad, however, I’m here today to address the state of healthcare relative to ransomware. In many … More → The post Why ransomware continues to knock on healthcare’s door, enter, and create havoc appeared first on Help Net Security.

Go to article at
15.5.2020
Ransomware

Microsoft spots malicious npm package stealing data from UNIX systems

The security team at npm (Node Package Manager), the de-facto package manager for the JavaScript ecosystem, has taken down today a malicious package that was caught stealing sensitive information from UNIX systems. The malicious package is named 1337qq-js and was uploaded on the npm repository on December 30, 2019. According to an analysis by the npm security team, the package exfiltrates sensitive information through install scripts and targets UNIX systems only. The npm team recommends that all developers who downloaded or used this JavaScript package in their projects remove the package from their systems and rotate any compromised credentials. This marks the sixth incident of a malicious package making it on the npm repository index, although, this is the least severe, primarily because Microsoft security analysts caught the library two weeks after it was published and before it gained a serious following. Previous incidents of malicious npm packages making it on npm include:

Go to article at
15.5.2020
Malware

Names & Phone numbers of 267 million Facebook users exposed

By WaqasAnother day, another data breach putting the privacy of hundreds of millions of Facebook users at risk.This is a post from HackRead.com Read the original post: Names & Phone numbers of 267 million Facebook users exposed

Go to article at
15.5.2020
Illegal Personal Data Processing

FBI Warns of Human Traffickers Luring Victims on Social Networks

FBI's Internet Crime Complaint Center (IC3) today issued a public service announcement on human traffickers' continued usage of online platforms like dating sites and social networks to lure victims. [...]

Go to article at
15.5.2020
Phishing

Strong passwords: 9 rules to make, remember and manage your login credentials

The security of your bank account, Netflix account and email inbox depends on how well you safeguard your passwords.

Go to article at
15.5.2020
Password Attacks