Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Know Your Breach: StreamElements

    The Target: StreamElements is a popular cloud-based streaming tools platform used primarily by content creators on Twitch and YouTube. It provides a suite for stream overlays, tips/donations, chatbots, activity feeds, merch store integration, stream analytics, loyalty/reward systems, and more.

    The Take: A threat actor using the nickname "victim" claimed to have stolen the data of 210,000 StreamElements customers on March 20, 2025. The threat actor also shared samples of the stolen data, which included full names, addresses, phone numbers, and email addresses.

    The Vector: The same hacker claimed that they breached a StreamElements employee via an information-stealing malware infection, which allowed them to take over an internal account and access the platform's order management system.

    This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

    Read more...

    AI Security Firm Straiker Emerges From Stealth With $21M in Funding

    2025-03-27

    SecurityWeek: The company has raised $21 million in initial funding from Lightspeed Ventures and Bain Capital Ventures. Straiker’s platform aims to address the risks associated with the increasing use of AI chatbots and AI agents.

    Read more...

    TransUnion Study Finds U.S. Data Breach Severity Reaches New High

    2025-03-27

    GlobeNewswire: Despite the volume of U.S. data breaches declining in 2024 from highs reached a year prior, data breach severity reached levels never seen since TransUnion’s measurement began in 2020. 

    Read more...

    GetReal Security Raises $17.5 Million to Tackle Gen-AI Threats

    2025-03-27

    SecurityWeek: The investment round was led by Forgepoint Capital, with additional support from Ballistic Ventures, Capital One Ventures, Cisco Investments, Evolution Equity, K2 Access Fund, and In-Q-Tel (IQT).

    Read more...

    Cybersecurity Firm Island Raises $250 Million, Jumps Valuation To $4.8 Billion

    2025-03-26

    Crunchbase: Dallas-based enterprise browser developer Island raised a $250 million Series E at a $4.8 billion valuation. The new round was led by Coatue Management, with several existing investors participating in the round, per the company.

    Read more...

    Sequoia to Reap 25-Fold Return from Wiz’s Sale to Alphabet

    2025-03-18

    Yahoo Finance: Wiz backer Sequoia Capital is poised to deliver a return of about 25 times its invested capital from the cybersecurity startup’s pending sale to Google parent Alphabet Inc., according to a person with knowledge of the matter.

    Read more...

    Google’s Parent to Buy Cybersecurity Group Wiz in its Biggest Ever Deal

    2025-03-18

    The Guardian: Google’s owner, Alphabet, has agreed to buy the cybersecurity group Wiz for $32bn (£24.7bn), the biggest acquisition it has ever made.The search company’s purchase of the Israeli startup comes as Google attempts to catch its competitors Microsoft and Amazon in the competitive cloud services market.

    Read more...

    HITRUST Secures Growth Investment from Brighton Park to Accelerate Innovation in Cybersecurity and Information Risk Assurance

    2025-03-17

    Business Wire: Brighton Park Capital (“Brighton Park”), an investment firm focused on entrepreneur-led, growth-stage companies in software and healthcare, announced a growth investment in HITRUST, the leader in information security assurance for risk management and compliance.

    Read more...

    Sola Raises $30 Million for ‘Self-Serve’ Cybersecurity Solution

    2025-03-11

    PYMNTS.com: Sola Security has raised $30 million for its no-code, artificial intelligence (AI)-powered cybersecurity platform. The seed funding, announced as the company emerged from stealth, will allow Sola to develop its solution, which it says lets businesses build security apps without needing “deep technical expertise” or having to spend too much.

    Read more...

    New York Sues Insurance Giant Over Data Breaches

    2024-03-11

    SecurityWeek: National General, which offers home, vehicle, and other insurance coverage, suffered two data breaches in 2020 and 2021, resulting in the driver’s license numbers of more than 165,000 New Yorkers being compromised.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates