Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      Vista Equity Partners to Acquire KnowBe4 In $4.6bn Deal

      2022-10-12

      Private Equity Wire: Vista Equity Partners (Vista) is to acquire KnowBe4, the provider of the world’s largest security awareness training and simulated phishing platforms, in an all-cash transaction valued at approximately $4.6 billion on an equity value basis.

      Read more...

      A Consumer-focused Cyber Labeling Scheme May Be Put Into Play After Years On the Drawing Board.

      2022-10-11

      FCW: In an Oct. 11 fact sheet, the White House teed up plans to host a meeting with stakeholders including companies and trade associations to discuss "a common label for products that meet U.S. government standards and are tested by vetted and approved entities."

      Read more...

      German Cybersecurity Chief Investigated Over Russia Ties

      2022-10-10

      AP News: Arne Schoenbohm, who heads the BSI agency, co-founded a cybersecurity group a decade ago that brings together experts from public institutions and the private sector. German media reported that one of its members is a company founded by a former Russian intelligence agent.

      Read more...

      Lloyd's of London Says No Evidence Found of Data Compromise From Cyberattack

      2022-10-10

      U.S. News: "The investigation has concluded that no evidence of any compromise was found and as such Lloyd's has been advised that its network services can now be restored," a company spokesperson said in an email.

      Read more...

      Know Your Breach: American Airlines

      The Target: American Airlines, U.S based air travel company.

      The Take: Exposure of Personally Identifiable Information including: employee and customer names, dates of birth, mailing addresses, phone numbers, email addresses, driver license numbers, passport numbers, and certain medical information.

      The Vector: Using a phishing attack, the threat actor compromised an employee’s Office365 account, and acting with all their permissions, exfiltrated the exposed data.

      This breach is a stark reminder of the effective of social engineering attacks and how critical authentication controls are in an overall robust cybersecurity posture. Enforcing multi-factor authentication, reasonably paced password resets, and regular social engineering and phishing awareness training are all effective strategies to mitigate these kinds of breaches to protect a firm’s customer base.

      Read more...

      New Royal Ransomware Emerges In Multi-million Dollar Attacks

      2022-09-29

      Bleeping Computer: A ransomware operation named Royal is quickly ramping up, targeting corporations with ransom demands ranging from $250,000 to over $2 million. 

      Read more...

      Russian Hackers' Lack of Success Against Ukraine Shows That Strong Cyber Defences Work, Says Cybersecurity Chief

      2022-09-29

      ZDNet: Russia has engaged in a sustained, malicious cyber campaign against Ukraine and its allies since the February 24 invasion – but its lack of success shows that it's possible to defend against cyberattacks, even against some of the most sophisticated and persistent attackers, says the UK's cybersecurity chief.

      Read more...

      US Senators Aim to Amend Cybersecurity Bill to Include Crypto

      2022-09-28

      Tech Crunch: As regulators around the world try to provide frameworks for the digital asset industry, two U.S. senators have introduced a bill to help crypto companies report cybersecurity threats.

      Read more...

      More Than 60% of Hackers Can Exfiltrate Data In Less Than Five Hours, Finds Inaugural Hacking Report

      2022-09-28

      Global Newswire: Bishop Fox, the leading authority in offensive security, announced the results of a groundbreaking new survey that explores the minds and methodologies of modern attackers. 

      Read more...

      New European Union Cybersecurity Proposal Takes Aim at Cybercrime

      2022-09-28

      World Economic Forum: Lawmakers are seeking to strengthen cybersecurity requirements across the European Union, advancing new legislation to bolster security requirements for all digital hardware and software products. 

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates