Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    IT and cybersecurity Infrastructure is a Vital Organ of Any Fund Launch

    2022-03-30

    Hedge Week: The IT and cyber security infrastructure of a start-up fund is instrumental to its fate and can be key to determining whether it fails or succeeds. Therefore, a consultative approach in this regard can ensure their framework is fit for purpose and can effectively support the fund’s growth objectives.

    Read more...

    Hackers’ Path Eased as 600,000 U.S. Cybersecurity Jobs Sit Empty

    2022-03-30

    BNN Bloomberg:  President Joe Biden has urged U.S. companies to “harden your cyber defenses immediately” amid a growing risk of Russian cyberattacks. For many, that won’t be easy. 

    Read more...

    Mnuchin’s Liberty Strategic Capital Continues Strong Push Into Cybersecurity

    2022-03-29

    Crunchbase News: Former U.S. Secretary of the Treasury Steven Mnuchin’s new private equity firm Liberty Strategic Capital is moving quickly into the hot sector of cybersecurity.

    Read more...

    OCC Designates Points of Contact for Computer Security Incident Notifications

    2022-03-29

    ABA Banking Journal: With a joint agency final rule requiring banks to notify their primary regulatory within 36 hours of becoming aware of computer security incidents that are considered “notification incidents” taking effect on May 1, the OCC issued a bulletin reminding banks of their notification responsibilities and specifying points of contact.

    Read more...

    Hackers Steal Over $600 Million from Video Game Axie Infinity's Ronin Network

    2022-03-29

    CNN: The latest crypto hack has targeted a gaming-focused blockchain network that supports the popular video game Axie Infinity. Hackers made off with about $625 million worth of Ethereum and USDC, two cryptocurrencies, in one of the largest crypto hacks of all time.

    Read more...

    Know Your Breach: Doctors Me

    The Target: Doctors Me, a private self-assessment health service company located in Japan.

    The Take: Exposure of 300,000 records of nearly 12,000 customers. The exposed information was a collection of symptom photos, in many cases, exposing the customer’s faces.

    The Vector: A misconfigured Amazon S3 storage server was left open online, meaning anyone with internet access could have viewed and downloaded the data. 

    While the photos were uploaded anonymously, attackers can cross reference these pictures with other social media sties and craft extremely effective spear-phishing campaigns, as well engage in fraud and blackmail. This breach is another critical reminder of the importance of airtight credential management at all points of access for firms. Ensuring two-factor and comprehensive user authentication is paramount for a robust cybersecurity posture.

    Read more...

    Biden’s Russia Cyber Warning Befuddles Ill-Prepared Businesses

    2022-03-24

    Yahoo Finance: A day after U.S. President Joe Biden issued a stark warning that a Russian cyberattack “is coming,” members of his administration hosted a three-hour call with about 13,000 people representing businesses, public agencies and other organizations to discuss the potential threat.

    Read more...

    London Cops Nab Seven Teens in Connection with Lapsus$ Hacks

    2022-03-24

    PYMNTS: Seven teenagers were arrested by London police on Thursday (March 24) in connection with the recent hacking spree by the Lapsus$ cyber-crime gang that infiltrated Microsoft and Okta this week and recently, Samsung, Ubisoft and Nvidia. 

    Read more...

    One in Five Businesses Have Paid or Would Pay a Ransom for Their Data, Finds Thales

    2022-03-23

    Business Wire: New research from Thales has found that malware, ransomware and phishing continues to plague global organisations. In fact, one in five (21%) have experienced a ransomware attack in the last year; with 43% of those experiencing a significant impact on operations.

    Read more...

    Financial Sector and Cloud Security Providers Complete Initiative to Enhance Cybersecurity

    2022-03-23

    Business Wire: The Cyber Risk Institute (CRI), the Cloud Security Alliance (CSA), and the Bank Policy Institute-BITS announced today the release of a cloud extension for the CRI Profile version 1.2. The “Cloud Profile” represents the collaboration of over 50 financial institutions and major cloud service providers (CSPs) to extend the CRI Profile, which is a widely accepted cybersecurity compliance framework for the financial sector.

    Read more... 

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates