Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      BlackRock-Backed Round Values Cyber Firm Acronis at $3.5 Billion

      2022-07-26

      BNN Bloomberg: Cybersecurity provider Acronis raised $250 million in new funding from institutional investors earlier this year to expand its business, including through acquisitions and hiring.

      Read more...

      ‘Cryptojacking’ Rises 30% to Record Highs Despite Crypto Slump: Report

      2022-07-26

      Coin Telegraph: New research shows that despite falling digital asset prices, cryptojacking has reached record levels in the first half of 2022.

      Read more...

      Hackers Scan for Vulnerabilities Within 15 Minutes of Disclosure

      2022-07-26

      Bleeping Computer: System administrators have even less time to patch disclosed security vulnerabilities than previously thought, as a new report shows threat actors scanning for vulnerable endpoints within 15 minutes of a new CVE being publicly disclosed.

      Read more...

      T-Mobile Agrees to Pay Customers $350 Million in Settlement Over Massive Data Breach

      2022-07-25

      CNN: T-Mobile has agreed to pay $350 million to settle multiple class-action suits stemming from a data breach disclosed last year affecting tens of millions of people.

      Read more...

      Know Your Breach: Morgan Hunt

      The Target: Morgan Hunt, a British recruitment agency.

      The Take: Exposure of Personally Identifiable Information including: names, contact details, identity documents, proof address documents (bank or building statements, national insurance number, and date of birth.

      The Vector: The attackers breached a third-party software developer of Morgan Hunts who were storing access credentials to their database with no authentication or access controls.

      This breach is a stark reminder that authentication controls are a critical piece in an overall robust cybersecurity posture. Furthermore, all steps should be taken by a firm to ensure any third-party vendor who can access their data is employing the requisite methods. Enforcing multi-factor authentication, reasonably regular forced password resets, and password length and complexity rules are all effective strategies to mitigate these kinds of breaches to protect a firm’s customer base.

      Read more...

      Why Data Now Underpins the Future Security of Your Organization

      2022-07-21

      Tech Radar: As the number of different digital touchpoints grows exponentially as hybrid working(opens in new tab) cements itself, so too have the number of attack surfaces available for cybercriminals to exploit. In a world where cybercrime is evolving at a rapid pace and the threat landscape remains unpredictable and constantly shifting, one thing is clear: data increasingly underpins future security.

      Read more...

      China Fines Didi $1.2 Billion for Violating Cybersecurity and Data Laws

      2022-07-21

      CNN: China’s cyberspace regulator fined Didi Global just over 8 billion yuan ($1.2 billion) for violating cybersecurity and data laws, putting an end to a yearlong investigation into the ride-hailing giant.

      Read more...

      EIS Fund Custodian Suffers Data Breach After Cyber-attack

      2022-07-20

      Portfolio Adviser: Hackers have infiltrated a London-based fund administrator and custodian’s IT system, potentially putting customers’ personal data at risk. Mainspring notified clients earlier this week it had suffered a data breach, following a targeted ransomware attack on the morning of 12 July.

      Read more...

      ACCC, ASIC Trials Website Takedowns for Phishing, Crypto Scams

      2022-07-20

      IT News: Australia’s competition watchdog has partnered with the corporate regulator to trial automated takedowns of websites hosting phishing and other scams.

      Read more...

      Atlantic Street Capital Acquires Assets of CyberGuard Compliance

      2022-07-19

      Private Equity Wire: Atlantic Street Capital (ASC), a private equity firm that invests in lower middle market companies, has acquired assets from CyberGuard Compliance, a licensed CPA firm with exclusive specialisation in IT compliance and cybersecurity audit and assessment services, and Elite Consulting Solutions, a provider of IT compliance and cybersecurity consulting and remediation services, collectively known as “CyberGuard”.

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates