shutterstock_490960141-1

Industry News: ESG5

    Know Your Breach: CHS

    The Target: Community Health Systems, a U.S based multi-state hospital chain.

    The Take: Exposure of 1 million records of Personally Identifiable Information including: full names, medical billing and insurance information, diagnoses, medication, date-of-birth, and social security numbers.

    The Vector: A zero-day exploit was used to breach a third-party vendor, Fortra, of CHS, targeting their file transfer software which let the attackers gain access to sets of files throughout the third-party vendor’s systems.

    This breach is critical reminder that zero-day exploits do happen, and furthermore that patching software in a timely, effective manner is a key component of ensuring customer data is protected. Ensuring third-party vendors are deploying patches and fixes in accordance with a firm’s cybersecurity policy is an important step in an overall robust security posture.

    Read more...

    Global Cybersecurity Market Size To Grow USD 501.6 Billion By 2030

    2023-03-08

    GlobeNewswire: The cyber security market growth includes increased number of data breaches across the globe, rising digitalization, and increased sophisticated cyber intrusions. Cyber threats are anticipated to evolve with the increase in usage of devices with intelligent and IoT technologies.

    Read more...

    Darktrace Warns Of Rise In AI Enhanced Scams Since ChatGPT Release

    2023-03-08

    The Guardian: The cybersecurity firm Darktrace has warned that since the release of ChatGPT it has seen an increase in criminals using artificial intelligence to create more sophisticated scams to con employees and hack into businesses.

    Read more...

    Key Proposals In Biden's Cybersecurity Strategy Face Congressional Challenges

    2023-03-07

    Dark Reading: The Biden administration's plans to introduce minimum cybersecurity requirements for organizations in critical infrastructure sectors could face challenges in a divided Congress.

    Read more...

    BlackBerry Says Cybersecurity Revenue Will Be Lower Than Expected

    2023-03-07

    BNN Bloomberg: Shares in BlackBerry Ltd. were down more than 10 per cent in early trading after the company lowered its fourth-quarter and full-year revenue expectations for its cybersecurity business. The dip in share price comes as the company said some large deals that were expected to close in the quarter were not completed in time.

    Read more...

    How Cybersecurity Protects Valuation: Considerations For Private Equity In The Deal Lifecycle

    2023-03-07

    Mondaq: Cybersecurity risk applies to businesses of all sizes and across all industries - it is a risk that cannot be ignored. In particular, cybersecurity risk can no longer be ignored in the deal lifecycle. Time and again, investors have seen value evaporate after an acquisition target or new portfolio company is breached by a threat actor.

    Read more...

    As Cyber Attacks On Health Care Soar, So Does The Cost Of Cyber Insurance

    2023-03-06

    Axios: Health systems buffeted by labor and supply chain costs and broader economic woes have another unwieldy financial problem: the soaring costs of cyber insurance.

    Read more...

    European Police, FBI Bust International Cybercrime Gang

    2023-03-06

    ABC News: German police said Monday they have disrupted a ransomware cybercrime gang tied to Russia that has been blackmailing large companies and institutions for years, raking in millions of euros.

    Read more...

    Know Your Breach: Animker

    The Target: Animker, an all-in-one video marketing online platform company.

    The Take: Exposure of 700,000 records of Personally Identifiable Information including: full names, device types, postal codes, IP addresses, mobile phone numbers, email addresses, profile details, and physical addresses.

    The Vector: A misconfigured database was left open and unsecured, and notably, on its default settings, meaning anyone with an internet connection could have viewed and downloaded the data using the server maker’s basic setup guide.

    This shows how important authentication controls are, and even more critically, that they be purposefully and smartly deployed with security in mind. Multi-factor authentication and password length and complexity rules on server access are effective strategies to mitigate these kinds of breaches to protect a firm’s data.

    Read more...

    U.S. Unveils New Cybersecurity Strategy with Tighter Regulations

    2023-03-02

    U.S News: The White House announced a new cybersecurity strategy in the latest effort by the U.S. government to bolster its cyber defenses amid a steady increase in hacking and digital crimes targeting the country.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates