Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      Play Ransomware Claims Attack on Belgium City of Antwerp

      2022-12-12

      Bleeping Computer: Digipolis, the IT company responsible for managing Antwerp's IT systems, suffered a ransomware attack that disrupted the city's IT, email, and phone services.

      Read more...

      California Probes Cyberattack Against State’s Finance Department

      2022-12-12

      Yahoo Finance: California’s finance department has been hit by a cybersecurity attack, and a notorious ransomware group is claiming responsibility.

      Read more...

      Why Employee-Targeted Digital Risks Are The Next Frontier Of Enterprise Cybersecurity

      2022-12-12

      Forbes: The story of cybersecurity is a constant progression of new ways to defeat new threats, from thought experiments to mainstream best practices. It started with the earliest antivirus software, which began as an experiment and progressed to being a necessity.

      Read more...

      Know Your Breach: VEVOR

      The Target: Vevor, a California-based online retailer.

      The Take: 1.1 billion records across two databases of Personally Identifiable Information including: first and last name, partial credit card numbers, transaction IDs, order and refund information, home addresses, and email addresses. Internal Vevor account admin names and plaintext passwords were also exposed, as well as IP addresse, ports, and pathways.

      The Vector: A misconfigured data server was left open and unsecured, meaning anyone with an internet connection could have viewed and downloaded the data.

      This breach is critical reminder that authentication controls are an important piece in an overall robust cybersecurity posture and furthermore, that when admin credentials are exposed, dangerous pivot attacks may follow as attackers use these to move into a firm’s other platforms. Multi-factor authentication and password length and complexity rules are effective strategies to mitigate these kinds of breaches to protect a firm’s data.

      Read more...

      Australia Witnessed 16 Major Cyber-attacks As Hackers Attempt to Steal ‘Sensitive Data’

      2022-12-08

      Express: Australia had 16 major cyber-attacks against Australian organisations, which were trying to be “cyber extortion attacks”, claimed CyberCX Cyber Intelligence Director Katherine Mansted. Recently, millions of Australians had their privacy breached in cyber attacks on Optus, Medibank and other companies.

      Read more...

      Recession Hits Cybersecurity Companies Hard As Layoffs Mount

      2022-12-08

      CTech: The cybersecurity industry is not immune. This message has been internalized over the past week in the technology sector. It started with U.S. company CrowdStrike, which is considered one of the biggest players in the market. The company revealed good results in its financial reports for the third quarter, but the CEO admitted that customers are cutting expenses and postponing purchases.

      Read more...

      Automated Dark Web Markets Sell Corporate Email Accounts for $2

      2022-12-08

      Bleeping Computer: Cybercrime marketplaces are increasingly selling stolen corporate email addresses for as low as $2 to fill a growing demand by hackers who use them for business email compromise and phishing attacks or initial access to networks.

      Read more...

      Mega-investment in Cyber Defense Could Boost Cybersecurity ETFs

      2022-12-07

      Wealth Professional: Data proliferation is reaching new heights as a result of new digital infrastructure and long-term work-from-home arrangements, while cyberattacks are also increasing in intensity. And as corporations and governments attempt to remain ahead of the curve, cybersecurity firms are taking centre stage.

      Read more...

      Canada's Biggest Real Estate Companies Grapple with Cybersecurity Gaps: KPMG

      2022-12-06

      Cision: Despite the fact that most Canadian real estate companies now build smart tech into their buildings to monitor, manage, and maintain many functions, such as heating, lighting, elevators, power meters and fire alarm systems, very few have invested to ensure these systems can't be hacked, finds new research from KPMG in Canada.

      Read more...

      Cybersecurity Spending ‘Difficult to Cut’ Despite Recession Risks: CrowdStrike CEO

      2022-12-05

      Yahoo Finance: CrowdStrike Co-Founder and CEO George Kurtz joins Yahoo Finance Live to discuss the company's latest quarterly results, the outlook for cybersecurity spending, and expectations for cyberattacks in 2023.

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates