Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

SOC 2: Working towards compliance

With the help of SOC 2, organisations can provide proof of effectively implemented controls and the use of best practices to protect the data to their customers and stakeholders, which may help to build trust.

article

31.7.2023

Personnel information security training and guidelines in Cyberday

Most data breaches start with human error. Still, investments in technical information security are often made more eagerly. We tell you why staff information security training and guidelines are important and how to implement then efficiently.

article

13.6.2023

Information security risk management in Cyberday: Identifying risks, evaluation, treatment and closure

Every cyber security framework highlights risk management in its own way. We summarize in this post, what's essential in information security risk management and what kind of an approach Cyberday offers for it.

article

13.6.2023

Become a Cyberday partner: Features, benefits and best practices

A good and efficient tool such as Cyberday is a great way to work on the organization's cyber secuirty. However, for some organizations that is not enough and the expertise and support of a consultant is needed. Our partner program offers both!

article

6.6.2023

Cyberday Community has been launched!

We just launched a new Community section inside Cyberday. Our goal is to make collaboration with your peers and with us easier and thus help you improve your information security even further!

article

24.3.2023

ISO 27001 standard updated to 2022 version - what changed?

What has changed when comparing 2013 vs. 2022 versions of ISO 27001 and how are these updates visible on Cyberday?‍

article

18.11.2022

Efficient cyber risk management with new autopilot mode

We're constatly searching for ways to automate and create efficient cyber risk management. Our newest additions is risk autopilot mode. It's concept is described on this post.

article

1.6.2022

Infographic: Why is cyber security getting more and more important?

Here's a visual summary of some of the drivers that continue to make cyber security more and more important for all organizations.

article

11.2.2022

Exposed Password Gave Hackers Access to 150,000 Cameras

Hacktivists reportedly found logins for a privileged account exposed on the internet and thus gained access to 150 000 Verkada security cameras - on Tesla warehouses, hospitals, jails and more. #cybersecurity

Go to article at
10.3.2021

Phishing campaigns, from first to last victim, take 21h on average

Most phishing victims experience a fraudulent transaction around 5 days after getting phished, new research shows.

Go to article at
9.3.2021
Business-Email-Compromise

PhotoSquared app leaks photos & home addresses of 100,000s of users

By Waqas Another day, another data breach putting user data at risk - This time, PhotoSquared. This is a post from HackRead.com Read the original post: PhotoSquared app leaks photos & home addresses of 100,000s of users

Go to article at
15.5.2020
Illegal Personal Data Processing

COVID-19 Scam Roundup – April 20, 2020

Scams leveraging coronavirus 2019 (COVID-19) as a lure have stolen tens of millions of dollars from their victims. As of April 16, 2020, the Federal Trade Commission (FTC) had received 20,334 consumer reports of fraud attempts pertaining to the coronavirus since the beginning of the year. Those attacks that proved successful had caused their victims […]… Read More The post COVID-19 Scam Roundup – April 20, 2020 appeared first on The State of Security. The post COVID-19 Scam Roundup – April 20, 2020 appeared first on Security Boulevard.

Go to article at
15.5.2020
Phishing

Why ransomware continues to knock on healthcare’s door, enter, and create havoc

My name is Adam, and I’ve worked in the healthcare industry for over 15 years. In my current line of work, I assist healthcare facilities across the U.S. with their overall cybersecurity posture, ranging from physical and technical security controls to security incident response in conjunction with disaster recovery and business continuity planning. My scope of work is quite broad, however, I’m here today to address the state of healthcare relative to ransomware. In many … More → The post Why ransomware continues to knock on healthcare’s door, enter, and create havoc appeared first on Help Net Security.

Go to article at
15.5.2020
Ransomware

Microsoft spots malicious npm package stealing data from UNIX systems

The security team at npm (Node Package Manager), the de-facto package manager for the JavaScript ecosystem, has taken down today a malicious package that was caught stealing sensitive information from UNIX systems. The malicious package is named 1337qq-js and was uploaded on the npm repository on December 30, 2019. According to an analysis by the npm security team, the package exfiltrates sensitive information through install scripts and targets UNIX systems only. The npm team recommends that all developers who downloaded or used this JavaScript package in their projects remove the package from their systems and rotate any compromised credentials. This marks the sixth incident of a malicious package making it on the npm repository index, although, this is the least severe, primarily because Microsoft security analysts caught the library two weeks after it was published and before it gained a serious following. Previous incidents of malicious npm packages making it on npm include:

Go to article at
15.5.2020
Malware

Names & Phone numbers of 267 million Facebook users exposed

By WaqasAnother day, another data breach putting the privacy of hundreds of millions of Facebook users at risk.This is a post from HackRead.com Read the original post: Names & Phone numbers of 267 million Facebook users exposed

Go to article at
15.5.2020
Illegal Personal Data Processing

FBI Warns of Human Traffickers Luring Victims on Social Networks

FBI's Internet Crime Complaint Center (IC3) today issued a public service announcement on human traffickers' continued usage of online platforms like dating sites and social networks to lure victims. [...]

Go to article at
15.5.2020
Phishing

Strong passwords: 9 rules to make, remember and manage your login credentials

The security of your bank account, Netflix account and email inbox depends on how well you safeguard your passwords.

Go to article at
15.5.2020
Password Attacks