Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    83% of Businesses Hit With a Firmware Attack in Past Two Years

    2021-03-31

    Dark Reading: Firmware attacks targeting enterprises are up over the past two years. However, most victims are too preoccupied with patches and upgrades to invest resources into preventing them. 

    Read more...

    Ransomware Tops U.S. Cyber Priorities, Homeland Secretary Says

    2021-03-31

    Financial Post: Department of Homeland Security (DHS) Secretary Alejandro Mayorkas said on Wednesday that dealing with ransomware will be a top priority, highlighting the growing threat of the data-scrambling software.

    Read more...

    Data Breaches Are A Frequent Occurrence for the Pensions Industry, Says Sackers Webinar

    2021-03-30

    Institutional Asset Manager: The survey showed that just over a third of those responding to the survey have suffered a breach in the last twelve months, with almost half of such breaches reported to the Information Commissioners Office.  

    Read more...

    Cyberattack Forces Australian TV Channel Off Air

    2021-03-29

    CNN Business: Australian broadcaster 9 News suffered a cyberattack that forced a number of live shows off air on Sunday, as the country's federal parliament also reported an attack on its computer network.

    Read more...

    Know Your Breach: SCO

    The target: California State Controller’s Office

    The take: Financial and personally identifiable information and documents, such as Social Insurance Numbers, on several thousand employees.

    The attack vector: An employee, the target of a spear phishing attack, clicked on a suspicious link and entered their account ID/email address and password. This gave the attacker full access to SCO’s systems with the same level of access the employee had, including any files shared with the affected account. From here, the attacker further launched phishing attempts against over 9000 employees, using the hacked account to increase the believability of the scam.

    Phishing attacks against individual employees remain one of the greatest security threats to the entire organization. Regular social engineering and awareness testing and training, along with tone-from-the-top messaging to emphasize the importance of critical thinking and caution are crucial to protecting sensitive information assets.

    Read more...

    Trust No One Becomes Mantra After Massive Cyber-Attacks

    2021-03-25

    Yahoo Finance: Researcher John Kindervag published a paper about a decade ago that argued administrators of sensitive computer networks shouldn’t trust anyone on their networks, regardless of their title.

    Read more...

    US Cyber Experts Conducted Operations to Safeguard Election

    2021-03-25

    Yahoo Finance: The U.S. Cyber Command conducted more than two dozen operations aimed at preventing interference in last November's presidential election, the general who leads the Pentagon's cyber force said.

    Read more...

    Businesses Warned of Hidden Cyber Attacks As Number of Reported Breaches Falls

    2021-03-24

    Evening Standard: The average cost to companies that have been hit in the last 12 months is estimated to be £8,460, according to the annual Cyber Security Breaches Survey.

    Read more...

    IIROC Publishes Notice Regarding Ransomware Attacks

    2021-03-23

    Lexology: The Investment Industry Regulatory Organization of Canada (“IIROC”) has published a Cybersecurity Notice on Ransomware (the “Notice”), which flags a recent uptick in ransomware attacks on IIROC firms and provides guidance on how IIROC firms should prevent, detect, respond to and recover from ransomware attacks.

    Read more...

    Three Billion Phishing Emails Are Sent Every Day. But One Change Could Make Life Much Harder for Scammers

    2021-03-23

    ZDNet: Cyber criminals are sending over three billion emails a day as part of phishing attacks designed to look like they come from trusted senders.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates