Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Navigating the Cybersecurity Maze: Master NIS2 with the help of ISO 27001

Learn how to master NIS2 with ISO 27001 and grab our free NIS2 e-book! This blog post was originally written for the Cyber Security Nordic 2024 event where Cyderday is presented as Strategic partner.

article

3.10.2024

Corporate Security Alert: Identifying Dangerous Apps on Employee Phones

This article uncovers hidden security risks of popular apps on work devices, covering social media, messaging, cloud storage, gaming, utility, health, VPN, and shopping apps, with recommendations to safeguard corporate data.

article

20.9.2024

NIS2 national legistation, ransomware and a new development forum: Cyberday product and news round-up 9/2024 🛡️

This is the September news and product review from Cyberday. Read news about ransomware, new phishing techniques and local NIS2-legistations.

article

20.9.2024

IT and OT Cyber Security: Different Environments, Different Priorities

This blog post outlines the key differences between IT and OT cyber security, focusing on their distinct areas, objectives, environments, threat landscapes, and compliance requirements.

article

4.9.2024

Cyber Security in Supply Chain Risk Management

Businesses should prioritize supply chain security by adopting best cyber security practices, fostering resilience, and promoting collaboration to protect against evolving cyber threats. Learn more about this topic in this blog post.

article

22.8.2024

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

Privacy predictions 2022

What to expect in 2022 in relation to #privacy: ☑️ Even more user settings, but still no "privacy by default"? ☑️ People and legislators demanding more transparency from algorithms ☑️ Remote work increases employees' privacy skills

Go to article at
25.11.2021

Biometric auth bypassed using fingerprint photo, printer, and glue

"A printer and some glue". Team cloned fingerprints and passed biometric auth (e.g. on MacBook Pro) for $5 cost and w/o high-end tools. Fingerprints are convenient, but with critical data should be used w/ strong password. #cybersecurity

Go to article at
25.11.2021

Arrest in ‘Ransom Your Employer’ Email Scheme

In August scammers were spotted "recruiting" people to unleash #ransomware in their company in exchange for % of the profits. 🚨 Now authorities in Nigeria arrested a man seemingly responsible of this targeting of disgruntled employees.

Go to article at
25.11.2021

What to do if you receive a data breach notice

GDPR demands reporting personal data breaches. Good practices for responding: ☑️ Read notice calmly and ensure legitimacy ☑️ Update compromised passwords ☑️ Expect related scam attempts ☑️ Track activity on your online accounts #privacy

Go to article at
25.11.2021

GoDaddy admits to password breach: check your Managed WordPress site!

GoDaddy #cybersecurity breach: ⚠️ 1,2M managed WP sites affected ⚠️ Crooks in its network for 6 weeks ⚠️ sFTP and database passwords leaked (no encryption reported!) ⚠️ SSL/TLS private keys leaked What-to-do's on the article >>

Go to article at
23.11.2021

Emotet malware is back and rebuilding its botnet via TrickBot

In early 2021 Europol and Eurojust took over the Emotet infrastructure and arrested two individuals. ⚠️ Now researchers see signs of Emotet activity increasing. Takedown hasn't prevented the adversaries from bringing the #malware back.

Go to article at
19.11.2021

FBI's Email System Hacked to Send Out Fake Cyber Security Alert to Thousands

⚠️ FBI server was hijacked and 100,000 people were alerted of a fake cyber attack. An embarrassing case that could have been a lot worse if, instead of "trolling", the threat actor would have been #phishing or distributing malware.

Go to article at
19.11.2021

SharkBot — A New Android Trojan Stealing Banking and Cryptocurrency Accounts

🕵️ Researchers on Monday reported a new Android trojan called SharkBot. #Malware masquarades as media player and uses accessibility features (intended to assist people with disabilities) to e.g. steal banking and crypto app credentials.

Go to article at
19.11.2021

'PerSwaysion' Phishing Campaign Still Ongoing, and Pervasive

The PerSwaysion #phishing kit has been used in thousands of attacks around the world - and is still active. The scams utilize Microsoft's file-sharing services (e.g. SharePoint) to trick people into credential-stealing sites.

Go to article at
19.11.2021