Copy
Share Share
Tweet Tweet
Share Share
Forward to friend Forward to friend

👋 Help us in sharing the cyber security awareness. Thanks!

Weekly #cybersecurity digest

Greetings <<First Name>>! This newsletter brings to your inbox every Friday:
🗞️ this week's most important cyber security news, 📅 next week's upcoming webinar trainings and 🛡️ most recent Cyberday development.

Published 18.11.2022 • Read all @ Cyberday.ai

#WeStandWithUkraine 🇺🇦

POST FROM CYBERDAY TEAM

ISO 27001 standard updated to 2022 version - what changed?

ISO 27001, the world's leading information security standard, got an update for the first time in 9 years. What has changed when comparing 2013 vs. 2022 versions of ISO 27001 and how are these updates visible on Cyberday?

WEEK'S MOST IMPORTANT CYBER SECURITY NEWS

Token tactics: How to prevent, detect, and respond to cloud token theft

⚠️ When we increase MFA coverage, threat actors need more sophisticated techniques to compromise resources. Recently there's been a significant increase in token theft. Read Microsoft's DART team's report on the #cybersecurity threat >>

18.11. 09:31 · https://www.microsoft.com/en-us/security/blog/2022/11/16/token-tactics-how-to-prevent-detect-and-respond-to-cloud-token-theft/

Google to Pay $391 Million Privacy Fine for Secretly Tracking Users' Location

391M$ fine: Google's #privacy actions deemed deceptive. ⚠️ "misled users to think they turned off location tracking, but continued to collecting data" Location is combined with behavioral data to create user profiles eg for ad targeting.

18.11. 09:24 · https://thehackernews.com/2022/11/google-to-pays-391-million-privacy-fine.html

Instagram Impersonators Target Thousands, Slipping by Microsoft's Cybersecurity

⚠️ #Phishing attack targets 22k students in the US with a "unusual login on Instagram" scam. To note: attack used a valid 41-month old domain with a good reputation, and was able to pass e.g. MS 365 and Exchange email protections.

18.11. 09:19 · https://www.darkreading.com/application-security/instagram-impersonators-target-thousands-microsoft-cybersecurity

It’s time. Delete your Twitter DMs

Twitter is in quite a chaos. Security people are advising to e.g. delete DMs 💬 and stop using Twitter SSO 🔐. Recently quitted Twitter employees include: - CISO - Head of Trust & Safety - CPO (privacy) - CCO (compliance) #cybersecurity

18.11. 09:15 · https://grahamcluley.com/its-time-delete-your-twitter-dms/

NEXT WEEK'S CYBER SECURITY WEBINARS

Admin training (part 2/5): Framework selection and asset identification

We will present configuring your ISMS with proper security standards, managing users and starting the work with asset identification.

Aleksi Pulkkanen
Starts on Wed 23.11. at 2PM (EET) · duration 30 min

ISO 27001 (part 5/5): Certification achieved - what next?

We will go through the basics of Cyberday and how ISO 27001 standard can support systematic information security management. We will also cover the 2022 update to the standard.

Aleksi Pulkkanen
Starts on Wed 23.11. at 3PM (EET) · duration 45 min

NEWS FROM CYBERDAY DEVELOPMENT TEAM

new feature

Published: ISO 27001:2022 framework

We're currently finalizing our framework for ISO 27001:2022 update. The older version of the framework will stay available normally...

small improvement

Notification of employee-reported incidents for multiple users

You can now select multiple "owners" for the Security incidents documentation list. If you have allowed employees to report security incidents...

new feature

Language versions for custom guidelines

Nowadays, you can define in Settings -> Guidebook settings in which languages the digital security guidance for personnel is maintained. The template guidelines from Cyberday library...

All content @ cyberday.ai

Facebook
Twitter
LinkedIn
Website
Email
Privacy notice | Update preferences | Unsubscribe 

© 2022 Agendium Ltd. All rights reserved. Cyberday.ai | Agendium Ltd, Kalevantie 2, 33100 Tampere, Finland