Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Managing Cybersecurity Risk: Four Options for CEOs, CFOs and Risk Officers

    2021-08-26

    Forbes: Cybersecurity risk, once the focus of technology professionals, is now a boardroom topic. CEOs, CFOs, risk officers and audit committees are seeing cybersecurity risk come into the scope of their roles.

    Read more...

    A COVID-19 Phishing Caper

    2021-08-26

    KnowBe4: A new phishing campaign is exploiting the ongoing uncertainty about company policies related to COVID-19, according to Roger Kay at INKY. 

    Read more...

    Hackers Drained Their Coinbase Accounts. The Victims Want Answers.

    2021-08-24

    NBC News: For Tanja Vidovic, it was a moment of panic: She had received a series of alerts about someone changing access to her cryptocurrency account. And she realized, as she stared at her computer screen, that nearly all of her $168,000 in holdings was gone — vanished before her eyes.

    Read more...

    80% of Global Businesses Expect a Breach of Customer Records In the Next Year

    2021-08-24

    Security Magazine: The findings come from Trend Micro’s biannual Cyber Risk Index (CRI) report, which measures the gap between respondents’ cybersecurity preparedness versus their likelihood of being attacked.

    Read more...

    Singapore, US Pledge Deeper Collaboration In Cybersecurity

    2021-08-23

    ZDNet: Singapore and the US have inked a series of memorandums of understanding (MOUs) to widen their collaboration in cybersecurity across defence, financial, and research and development.

    Read more...

    Ransomware Attacks Doubled In Frequency During Pandemic

    2021-08-23

    IT Pro Portal: Phishing may be the most common cybersecurity threat in the UK, but it could be only a matter of time before ransomware snatches the crown, a report from cybersecurity firm CybSafe suggests.

    Read more...

    Know Your Breach: Ford

    The target: Ford, a U.S based maker of automobiles.

    The take: Exposure of Personally Identifiable Information including: customer and employee records, finance account numbers, database names and tables, internal support tickets, user profiles, and authentication access tokens,  

    The attack vector: A known vulnerability present in one of Ford’s misconfigured customer management interfaces named Pega Infinity, could have allowed an attacker access to the backend web panel. From here, they could execute malicious commands through the URL to retrieve data base tables, run queries, and more critically, perform administrative actions.

    This breach highlights the importance of having processes in place to update software in a timely manner, an essential part of complying with industry standard cybersecurity practices. Furthermore, this exposure also demonstrates how one exposed point of access can have a cascading and multiplying effect on the severity of a breach.

    Read more...

    Financial Institutions Are Prime Targets for Cybercriminals and Future Attacks Are 'Inevitable'

    2021-08-19

    Institutional Asset Manager: According to IBM, 23 per cent of all cyber-attacks are directed at financial institutions, while the total cost of a single data breach is the second largest among all industries, costing financial organisations USD5.72 million on average.

    Read more...

    Ransomware Attacks Are Now the Second Most Commonly Reported Security Incident

    2021-08-19

    Beta News: Analysis by CybSafe of incidents reported to the UK's Information Commissioner's Office (ICO) shows that ransomware attacks made up 22 percent of all reported cyber security incidents in the first half of 2021. This is up from 11 percent in the first half of 2020.

    Read more...

    More Than $90 Million in Cryptocurrency Stolen After a Top Japanese Exchange is Hacked

    2021-08-19

    CNBC: Japanese cryptocurrency exchange Liquid said Thursday it has been hit by a cyberattack that saw hackers make off with a reported $97 million worth of digital coins.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates