Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

Corporate Security Alert: Identifying Dangerous Apps on Employee Phones

This article uncovers hidden security risks of popular apps on work devices, covering social media, messaging, cloud storage, gaming, utility, health, VPN, and shopping apps, with recommendations to safeguard corporate data.

article

20.9.2024

NIS2 national legistation, ransomware and a new development forum: Cyberday product and news round-up 9/2024 🛡️

This is the September news and product review from Cyberday. Read news about ransomware, new phishing techniques and local NIS2-legistations.

article

20.9.2024

IT and OT Cyber Security: Different Environments, Different Priorities

This blog post outlines the key differences between IT and OT cyber security, focusing on their distinct areas, objectives, environments, threat landscapes, and compliance requirements.

article

4.9.2024

Cyber Security in Supply Chain Risk Management

Businesses should prioritize supply chain security by adopting best cyber security practices, fostering resilience, and promoting collaboration to protect against evolving cyber threats. Learn more about this topic in this blog post.

article

22.8.2024

Spreadsheet vs. ISMS tool - top 10 reasons why a tool is better than the traditional way

Discover the top 10 reasons why agile tools outperform traditional spreadsheets in managing cyber security compliance, from centralized management to continuous improvement.

article

22.8.2024

ISMS Essentials: Mastering a Data System Inventory for Your Organization

This post provides essential insights for maintaining a data system inventory within your organization's ISMS, detailing key processes, asset types, and tackling common challenges.

article

15.8.2024

Incident Detection: Building, Nurturing, and Continuously Improving a Proactive Environment

Shift from reactive to proactive incident detection. Use advanced tools, continuous learning, and customised strategies to anticipate and prevent issues. Focus on constant improvement and innovation to boost security and resilience.

article

15.8.2024

ISO 27001 and ISO 9001: Differences, how they work together and benefits of combining

Learn about the synergy between ISO 27001 and ISO 9001. Learn how integrating these standards enhances information security, quality management, and overall operational efficiency, using case examples and actionable insights.

article

6.6.2024

Fake Chrome updates spread malware

⚠️ Campaign (since Nov-22) uses vulnerable, hacked sites to push fake browser updates. Malicious JS shows an update msg and automatically downloads a zip when landing on the page. Opening the file will execute a cryptominer #malware.

Go to article at
21.4.2023

Discarded, not destroyed: Old routers reveal corporate secrets

🗑️ The fate of a discarded routers? ESET purchased a few used ones to investigate. In many cases, previous configurations weren't wiped and data could be used to identify the prior owners and network details. #cybersecurity

Go to article at
21.4.2023

AI chatbots making it harder to spot phishing emails, say experts

⚠️ Europol issues a warning about criminal use of ChatGPT "AI allows crafting very believable ‘spear-phishing’ emails and other written communication with very little effort, especially compared to what you have to do before." #phishing

Go to article at
31.3.2023

Pig butchering scams: The anatomy of a fast‑growing threat

💬 Hyper-connectedness cuts both ways. Scammers also can reach you anytime, any channel. And their techniques are developing. "Pig butchering scams" start with weeks long cold msg chains, to trick people later. Examples >> #cybercrime

Go to article at
31.3.2023

Microsoft Security Copilot is a new GPT-4 AI assistant for cybersecurity

🤖 Microsoft is developing an AI-powered #cybersecurity assistant to help identify breaches and derive smart signals from data. Security Copilot has a chatbot interface like new Bing, and is the latest example of MS's big push with AI.

Go to article at
31.3.2023

New Wi-Fi Protocol Security Flaw Affecting Linux, Android and iOS Devices

⚠️ Researchers uncovered a #vulnerability in IEEE 802.11 Wi-Fi protocol standard: "Attacker can disconnect a victim and connect under his MAC address (using the credentials of the adversary) to steal the data still underway to them."

Go to article at
31.3.2023

Just 1% of Nonprofit Domains Have Basic DMARC Email Security Protections

⚠️ Only 1.2% of nearly 10M verified .org domains analyzed are using proper DMARC rules. DMARC is used to automatically flag emails that are suspected to be sent from an impersonated domain. It's an important tool for battling #phishing.

Go to article at
24.3.2023

Fake ChatGPT Chrome Browser Extension Caught Hijacking Facebook Accounts

⚠️ "ChatGPT For Google", #malware version of real browser add-on, got 9k installations in 30 days. Extension harvested FB session cookies to hijack accounts. After this? Password change > Name / pic change > Extremist propaganda sharing

Go to article at
24.3.2023

Hackers Drain Bitcoin ATMs Of $1.5 Million By Exploiting 0-Day Bug

Bitcoin ATMs allow people exchange bitcoin for other currencies. A threat actor exploited a #vulnerability to use the interface to upload and execute a malicious Java app and drain 56 BTC from accounts - roughly worth $1.5 million.

Go to article at
24.3.2023