Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

NIS2 Compliance: Top 5 Reasons for the Manufacturing Sector

The article highlights the critical importance for manufacturers to comply with NIS2 regulations to safeguard their operations and infrastructure from cyber threats.

article

31.5.2024

Cannes Hospital data breach, the impact of AI and NIS2 evolution: the Cyberday product and news round-up 5/2024 🛡️

May's Product and News Update presents the new monthly ISMS reports as well as the Metrics page. Other topics include Cyberday's new framework DORA and recent news around the world.

article

17.5.2024

6 ways to assess security work effectiveness

Evaluating the effectiveness of your cybersecurity involves examining the adequacy of your existing security measures. This process helps you identify your current security status and determine the necessary actions to enhance and fortify.

article

3.5.2024

Best Practices from ISO 27001 for Secure System Acquisition and Development: Create your NIS2 measures

Get tips on securely acquiring and developing systems with a focus on ISO 27001, helping meet NIS2 requirements. Post explains key aspects like secure coding, acquiring secure applications and testing or publishing changes in a controlled manner.

article

16.4.2024

Build your NIS2 measures for Business Continuity and Backups with ISO 27001

This post offers insight on complying with NIS2's continuity and backup requirements using ISO 27001's best practices. It guides you through continuity planning, backup processes, challenges, and achieving compliance effectively.

article

12.4.2024

Understanding HR Security Basics for ISO 27001 & NIS2 Compliance

Discover how the crucial role of HR in information security not only shapes the corporate security culture, but also steers the organization towards ISO 27001 and NIS2 compliance, ensuring secure handling of information assets and much more.

article

5.4.2024

Access Control & MFA (NIS2 21.2): Build A Solid Foundation with ISO 27001 Best Practices

What are the requirements for access control and MFA in NIS2 and ISO 27001 and how can they be implemented successfully? Learn more about the controls, requirements, best practices and how to overcome potential challenges in this blog post.

article

4.4.2024

Potential Struggles IT Companies might Encounter with Incident Identification and Reporting Today

The complexities of incident identification and reporting in IT, touching on coordination problems, tool inadequacies, and process deficiencies. It explores modern challenges like cyber threats and alert fatigue, as well as the cognitive gap.

article

28.3.2024

Education giant Pearson fined $1M for downplaying data breach

2018 data breach led to the compromise of 13 000 student / admin login credentials. The breach was disclosed only after media inquiries and its effects were downplated. This resulted in now decided $1M additional fine. #cybersecurity

Go to article at
19.8.2021

XSS Bug in SEOPress WordPress Plugin Allows Full Site Takeover

Cross-site scripting (XSS) vulnerability in a popular WordPress plugin allows attackers to inject arbitrary web scripts into sites, as one API endpoint was insecurely implemented. Plugin is installed on 100,000 websites. #cybersecurity

Go to article at
19.8.2021

Phishing Costs Nearly Quadrupled Over 6 Years

“Until organizations deploy a people-centric approach to cybersecurity that includes security awareness training and integrated threat protection to stop and remediate threats, phishing attacks will continue.” #cybersecurity

Go to article at
17.8.2021

65 vendors affected by severe vulnerabilities in Realtek chips

Researchers found a vulnerability on Realtek chips, informed them and Realtek promptly provided an appropriate patch. To prevent risky devices, manufacturers need to check their hardware and provide patches to their users. #cybersecurity

Go to article at
17.8.2021

Most organizations experienced at least one ransomware attack, multiple attacks very common

Worrying #ransomware statistics: ⚠️ 37% of organisations experienced a successful attack in previous 12 months ⚠️ only 13% of attacked organisations reported NOT paying the ransom 📈 avg. ransom 250k$ #cybersecurity

Go to article at
17.8.2021

How hackers can use message mirroring apps to see all your SMS texts — and bypass 2FA security

Major vendors (e.g. Microsoft) have urged users to abandon 2FA solutions that leverage one-time codes sent via SMS. 2FA w/ SMS is open to multiple attacks, like SIM swapping, request smuggling and notification mirroring. #cybersecurity

Go to article at
17.8.2021

Microsoft Warns of Another Unpatched Windows Print Spooler RCE Vulnerability

Only a day after releasing Patch Tuesday updates, Microsoft acknowledged that it's working to remediate yet another remote code execution vulnerability in the Windows Print Spooler component. #PrintNightmare continues. #cybersecurity

Go to article at
12.8.2021

IT Giant Accenture Hit by LockBit Ransomware; Hackers Threaten to Leak Data

IT consulting giant Accenture ht by i#ransomware. Company says to have restored data from backups, but attackers threaten data publication. Last phase may well be blackmailing related Accenture clients. #cybersecurity

Go to article at
12.8.2021

SMBs increasingly vulnerable to ransomware, despite the perception they are too small to target

Report warns SMBs based current on #cybersecurity trends. ⚠️ Limited resources make SMBs turn to IT providers ⚠️ Supply-chain attacks are growing ⚠️ In these cases, one compromised IT provider can breach thousands of SMBs

Go to article at
11.8.2021