Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Know Your Breach: Fairmont Federal Credit Union

    The Target: A not-for-profit financial organization, Fairmont Federal Credit Union offers services such as business and home mortgage loans, financial first aid, and personal checking. It operates nine regional branches in West Virginia.

    The Take: The hackers stole files containing names, dates of birth, Social Security numbers, driver’s license numbers, government ID numbers, financial information, medical and health insurance information, and other personal data. More alarming is that the stolen information contains full credit card/debit card details, including card numbers, security codes/PIN numbers, and expiration dates. IRS PIN numbers, tax ID numbers, routing numbers, and full access credentials were also compromised in the data breach.

    The Vector: The organization discovered the cybersecurity incident on January 23, 2024 and launched a prompt and thorough forensic investigation, concluding on August 17, 2025, that files stolen from its network contained personal information.

    This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

    Read more...

    Private Equity Circles Cyber Security as AI-Driven Threats and Defence Fuel Investment Surge

    2025-09-18

    Cyber Daily: Speaking to Cyber Daily’s sister brand, InvestorDaily, investment strategist at Betashares, Hugh Lam, said demand for security solutions has accelerated as geopolitical tensions and AI advancements reshape the risk landscape.

    Read more...

    VC Firm Insight Partners Says Thousands of Staff and Limited Partners had Personal Data Stolen in a Ransomware Attack

    2025-09-17

    TechCrunch: Venture capital firm Insight Partners has notified thousands of people, including the firm’s limited partners, that their personal information was stolen by hackers in an earlier data breach.

    Read more...

    Cybersecurity Firm Netskope Lifts IPO Price Range, Eyes $7.3 Billion Valuation

    2025-09-16

    Yahoo News: Cybersecurity firm Netskope is now aiming for a valuation of up to $7.26 billion in its U.S. initial public offering after raising the proposed price range, it said, underscoring investor appetite for high-growth tech stocks.

    Read more...

    Cybersecurity Market Is Projected To Reach US$552.35 Billion By 2031 With CAGR Of 13.8%

    2025-09-15

    PR Newswire: According to a new comprehensive report from The Insight Partners, the global cybersecurity market is observing significant growth owing to the rise in cyber threats and attacks, stringent government regulations and compliance, and a surge in need to protect business assets.

    Read more...

    CISA Audit Sparks Debate About Cybersecurity Pay Incentives

    2025-09-15

    Cybersecurity Dive: An audit that castigated the Cybersecurity and Infrastructure Security Agency’s cybersecurity pay incentives is worrying CISA staffers who say the report lacks context and could give the Trump administration an excuse to end a vital retention program.

    Read more...

    CrowdStrike and Meta Launch Benchmarks to Test AI in Cybersecurity

    2025-09-15

    Investing.com: CrowdStrike, the cybersecurity powerhouse whose stock has surged 68% over the past year and maintains a strong "Buy" rating from 38 analysts, partnered with Meta to introduce a new suite of benchmarks called CyberSOCEval to evaluate how artificial intelligence systems perform in real-world security operations.

    Read more...

    AI Threats Challenge Banks' Incident Response Strategies

    2025-09-15

    Bank Info Security: Financial institutions are facing a new wave of cyberthreats as attackers weaponize artificial intelligence to exploit insider vulnerabilities. Richard Cassidy, field CISO at Rubrik, said financial organizations risk severe consequences if they continue relying on outdated approaches to incident response.

    Read more...

    Know Your Breach: Workiva

    The Target: Workiva, a leading cloud-based SaaS (Software as a Service) provider.

    The Take: The threat actors exfiltrated a limited set of business contact information, including names, email addresses, phone numbers, and support ticket content.

    The Vector: Workiva notified its customers that attackers who gained access to a third-party customer relationship management (CRM) system stole some of their data.

    This breach is a stark reminder of how strong authentication controls are in an overall robust cybersecurity posture, and that good password hygiene plays a pivotal role in protection.

    Read more...

    The Click That Costs Millions: Why Human Error Is Cybersecurity's Top Threat

    2025-09-11

    Forbes: For years, cybersecurity focused on perimeter defenses. Today, with hybrid work and the cloud being ubiquitous, the greatest threat isn't code; rather, it's the person holding the device.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates