Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Hybrid Working Increases Cybersecurity Risk

    2021-06-17

    Business Wire: New hybrid working arrangements are placing firms at greater risk of cyberattack. Employers must be confident that staff understand how to stay safe while working from different locations, according to Questionmark, the online assessment provider.

    Read more...

    Senators Unveil Legislation to Crack Down on Cyber Criminals

    2021-06-17

    The Hill: A bipartisan group of senators on Thursday unveiled legislation intended to crack down on cyber criminals, who have increasingly posed a threat to critical U.S. organizations. 

    Read more...

    Four in Five Ransomware Victims Suffer Repeat Attacks

    2021-06-16

    IT Pro: The company published the figure in a report that surveyed cyber security professionals worldwide, with 24% of them based in the US. It found that 46% of the companies targeted a second time were attacked by the same criminals that infected them the first time. 

    Read more...

    UK's Gateley Says Cyberattack Affects Small Portion of Its Data

    2021-06-16

    US News: Legal and professional services group Gateley reported a cyber security breach from a known external source on Wednesday, adding it was confident that the incident was limited to a small portion of its data.

    Read more...

    Biden’s Not-so-veiled Threat to Putin on Cyberattacks

    2021-06-16

    Yahoo Finance: Following his meeting with Russian President Vladimir Putin in Geneva on June 16, President Biden said “there were no threats” exchanged in the two leaders’ conversation. But Biden also delivered what Putin must have considered a serious warning.

    Read more...

    Cybersecurity Firm Exposes Breach Database Containing 5 Billion User Records

    2021-06-15

    Security Week: An investigation revealed that the database stored information that had been compromised in data breaches suffered by various companies over the past years. The database has been used by security analytics firm Cognyte to alert customers when their information is exposed as a result of a data breach suffered by a third party.

    Read more...

    SEC Charges Issuer with Cybersecurity Disclosure Controls Failures

    2021-06-15

    SEC: The Securities and Exchange Commission today announced settled charges against real estate settlement services company First American Financial Corporation for disclosure controls and procedures violations related to a cybersecurity vulnerability that exposed sensitive customer information.

    Read more...

    Know Your Breach: Carter’s

    The target: Carter’s, a U.S based retailer of baby clothing and apparel.

    The take: An estimated 410,000 records of personally identifiable information including: full names, physical addresses, email addresses, phone numbers, shipping tracking ID’s, and purchases and transaction details.

    The attack vector: The breach occurred because of the failure to implement authentication controls for the URL shortener used on the site. When a customer made a purchase online, they were redirected to the shortened purchase cart page URL which had no credential management. Furthermore, the links were not set to expire, letting anyone with the URL access the sensitive information at any time for any length of time.

    Any page where customer data is stored should follow industry standard practices be managed with proper credential deployment and security. The exposure of detailed personal information makes a firm’s users extremely vulnerable to phishing attacks and fraud.

    Read more...

    U.S. Senate to Probe Whether Legislation Needed to Combat Cyber Attacks

    2021-06-10

    O Canada: U.S. Senate Majority Leader Chuck Schumer said he is initiating a review of recent high-profile cyber attacks on governments and businesses to find out whether a legislative response is needed.

    Read more...

    Serious Cyberattacks in Europe Doubled in the Past Year, New Figures Reveal, as Criminals Exploited the Pandemic

    2021-06-10

    CNN Business: Significant cyberattacks against critical targets in Europe have doubled in the past year, according to new EU figures obtained by CNN, as the pandemic pushed lives indoors and online.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates