shutterstock_490960141-1

Industry News: ESG5

    CFOs Must Boost Their Cybersecurity Savvy, Former FBI Agent Says

    2023-11-21

    CFO: New Securities and Exchange Commission (SEC) rules requiring the disclosure of processes for identifying material cyber risks — and management’s role and expertise in assessing and managing the risks — may require CFOs to hit the books.

    Read more...

    Airbus and Deutsche Telekom Back Tighter EU Cybersecurity Rules

    2023-11-21

    Investing.com: European companies, including Airbus SE and Deutsche Telekom AG, have endorsed the European Union Agency for Cybersecurity's (ENISA) proposal for stricter cybersecurity regulations.

    Read more...

    Australia Unveils Cybersecurity Ramp Up After Port Cyberattack

    2023-11-21

    Yahoo Finance: Australia will undertake an economy-wide revamp of its cybersecurity protections including revised data laws, mandatory reporting and a new nationwide cyber council in response to several significant hacks targeting businesses and infrastructure over the past year.

    Read more...

    The Good, The Bad And The Reality: The Impact Of AI On Cybersecurity

    2023-11-20

    Forbes: If you take a look at the headlines surrounding the impact of artificial intelligence (AI) on cybersecurity, there are two dominant themes.

    Read more...

    Cybersecurity Firm Executive Pleads Guilty To Hacking Hospitals

    2023-11-20

    Bleeping Computer: The former chief operating officer of a cybersecurity company has pleaded guilty to hacking two hospitals, part of the Gwinnett Medical Center (GMC), in June 2021 to boost his company's business.

    Read more...

    Ukraine Fires Top Cybersecurity Officials

    2023-11-20

    TechCrunch: The Ukrainian government has fired two of its most senior cybersecurity officials following accusations of alleged embezzlement.

    Read more...

    Know Your Breach: Ellington Management Group

    The Target: Investment management firm Ellington Management Group L.L.C.

    The Take: Ellington determined that the following general categories of information may have been involved in the incident but are not relevant to every individual impacted: name, date of birth, Social Security number, medical information, and driver’s license number. In only three instances, non-Ellington financial account information may have been impacted.

    The Vector: Ellington’s investigation determined that between July 18, 2023 and August 8, 2023, an unauthorized actor had access to a single Ellington email account for the demonstrated purpose of sending phishing emails. Ellington analyzed the email account and did not find any evidence of any data being downloaded, emails being forwarded, or the account being synced to other systems.

    As phishing actors continue to explore every potential abuse opportunity on legitimate service providers, novel security gaps constantly threaten to expose users to severe risks. It is essential not to rely solely on email protection solutions, and also scrutinize every email that lands on your inbox, look for inconsistencies, and double-check all claims made in those messages.

    Read more...

    How US SEC Legal Actions Put CISOs At Risk And What To Do About It

    2023-11-16

    CSO: With the US Securities and Exchange Commission (SEC) having taken legal action against CISOs at both SolarWinds and Uber, security executives feel the pressure to be absolutely precise when writing up security incidents that the company has decided are material. 

    Read more...

    How To Strengthen Your Business's Cybersecurity Practices

    2023-11-15

    Forbes: Most of you have heard a lot in the past month about cybersecurity, hacking attacks and many words that are strange to us, like man in the middle ("MITM") phishing, spoofing, LifeLock, blueprinting, fingerprinting, crypto locker, VPN and so on, in the news and from media ads.

    Read more...

    Barclays Flags Treasuries Central Clearing Cybersecurity Risks After ICBC Hack

    2023-11-15

    Yahoo Finance: A key reform proposed by the U.S. Securities and Exchange Commission to boost the use of central clearing for U.S. Treasuries could leave the market more exposed to cybersecurity risks, Barclays said, referring to the cyber hack of Industrial and Commercial Bank of China's U.S. broker-dealer.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates