Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Identity Thieves Raked In Billions with Your Data, Even As Breaches Fell In 2020

    2021-01-28

    Cnet: Based on what we know so far, hackers didn't steal as much personal data in 2020 as they did in previous years, but that doesn't mean they weren't able to make plenty of money. According to a report released Thursday by the Identity Theft Resource Center, hackers and identity thieves used stolen passwords and personal information to profit in new ways from your information.

    Read more...

    Cybercops Derail Malware Botnet, FBI Makes Ransomware Arrest

    2021-01-28

    Yahoo Finance: European and North American cyber cops have joined forces to disrupt what may be the world's largest network for seeding malware infections. The operation appears to strike a major blow against criminal gangs that have used that network for years to install ransomware for extortion schemes and to steal data and money.

    Read more...

    AMF Renews Call for Heightened Vigilance Against Cyber Threats In Québec’s Financial Sector

    2021-01-27

    Autorité des marchés financiers: The Autorité des marchés financiers (AMF) is concerned by the increasing number of security incidents, including cyber incidents, affecting major institutions in Québec’s financial sector. The AMF is therefore again calling on the financial institutions and businesses it supervises to adequately assess information technology risks and take all necessary steps to bolster privacy safeguards and cybersecurity.

    Read more...

    New Zealand Financial Markets regulator Says NZX Failed to Meet Tech Standards

    2021-01-27

    Reuters: New Zealand’s financial markets regulator said the country’s stock exchange operator’s technological systems were “insufficient” following a probe into the multiple outages and cyber attacks that hit the bourse operator last year.

    Read more...

    Governments, Insurers Should Work Together On Global Risks-executives

    2021-01-26

    Nasdaq: Companies, insurers and governments need to work together to help businesses cope with major risks such as climate change and cyber security, company executives said.

    Read more...

    Australia's Securities Regulator Says Server Hit By Cyber Security Breach

    2021-01-25

    Reuters: Australia’s securities regulator said on Monday there was a cyber security breach at a server it used to transfer files including credit licence applications where some information may have been viewed.

    Read more...

    Know Your Breach: Pixlr

    The target: Pixlr, a popular, free online photo editing application.

    The take: 1.9 million user records of personally identifiable information including: email addresses, login names, hashed password, and user’s county of origin.

    The attack vector: The breach occurred when an AWS storage bucket was left unsecured and online by Pixlr’s parent company, Inmagine. This allowed the attacker to download a copy of the data and then post it on a public hacking forum, vastly increasing the negative area of effect for the compromised users.

    This leak shows the negative and cascading effects a breach can have, not only in the personal or financial risk to the user, but in how far the stolen data can be distributed to malicious actors. Robust password controls and user authentication are critical to maintain data integrity and confidentiality. In addition, this breach highlights the importance of protecting against credential stuffing attacks by using strong, unique passwords which are not shared among logins - a security strategy recommended to every firm.

    Read more...

    Cybersecurity, the Cloud and Covid-19: Facing the Challenges Head-on

    2021-01-21

    Hedgeweek: In the early stages of the pandemic, the major tech challenges centred around endpoint security. Individuals may have been using personal devices for professional purposes, and the prevalent model was of decentralised security and centralised data. We no longer look to secure a network or server in the same way. Endpoint security is now key, and every device needs security protection. With so many entry points to firms' applications and data, managing the security at the end point has been at the forefront since early 2020 across the sector.

    Read more...

    Joe Biden’s Cybersecurity Priorities: Fixing Damage from SolarWinds Attack, Working with Allies

    2021-01-20

    IT World Canada: Several cybersecurity issues will be among the many early priorities for the 46th president of the United States, Joseph Biden. These include responding to recent cyberattacks believed to come from nation-states, reorganizing and reprioritizing cyber in Washington, and encouraging allies to adopt a more unified approach to issues like Internet governance and cyber norms.

    Read more...

    Global Cyber Security Investment to Grow In 2021 Following Record-high Breaches

    2021-01-20

    Channel Asia: Spending on cyber security around the world is expected to grow as high as 10 per cent this year, to US$60.2 billion, following claims that 2020 saw record high levels of data breaches, compromised records and ransomware attacks. 

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates