Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      Britain, France Lead 35 Nation Agreement on Controlling Spyware, Mercenary Hackers

      2024-02-06

      US News: Countries led by Britain, France and the United States and tech firms including Google, Microsoft and Meta signed a joint statement recognising the need for more action to tackle malicious use of cyber spying tools.

      Read more...

      Deepfake-Generating Apps Explode, Allowing Multimillion-Dollar Corporate Heists

      2024-02-05

      Dark Reading: Deepfake creation software is proliferating on the Dark Web, enabling scammers to carry out artificial intelligence (AI)-assisted financial fraud with previously unheard of creativity and scope.

      Read more...

      Know Your Breach: Direct Trading Technologies

      The Target: Direct Trading Technologies (DTT) is an international fintech company offering trading platforms for stocks, forex, precious metals, energies, indices, Contracts for Difference (CFDs), and cryptocurrencies.

      The Take: The leaked data included the trading activity of over 300,000 users spanning the past six years, along with names, email addresses, emails sent by the company, and IP addresses.

      The Vector: In October 2023, a research team discovered a misconfigured web server with backups and development code references allegedly belonging to the fintech company Direct Trading Technologies. The discovered directory included multiple database backups, each holding a significant amount of sensitive information about the company’s users and partners.

      With the fintech industry experiencing rapid growth, this leak stands as a clear reminder of the critical role of robust cybersecurity measures. Fintech companies manage and store exceptionally sensitive customer data. This breach is a stark reminder of how authentication controls are in an overall robust cybersecurity posture, and that good password hygiene plays a pivotal role in protection.

      Read more...

      US Disrupted Chinese Hacking Operation That Targeted Routers

      2024-01-31

      BNN Bloomberg: A US operation disrupted a Chinese state-sponsored hacking effort in which spies hijacked a large network of devices to target water facilities and the power grid, among other targets, officials from the Federal Bureau of Investigation and the Department of Justice said. 

      Read more...

      US Sanctions Two ISIS-Affiliated ‘Cybersecurity Experts’

      2024-01-31

      SecurityWeek: The sanctioned individuals are both Egyptian nationals. One of them is Mu’min Al-Mawji Mahmud Salim, the creator of a platform named Electronic Horizons Foundation (EHF), which provides cybersecurity training and guidance to ISIS supporters.

      Read more...

      Cyber Crime Damage Costs Firms Up To $5 Million Annually, Says Barracuda

      2024-01-31

      Security Brief: The annual cost of recouping from cyber crime for businesses can reach as much as $5 million, according to a new Cybernomics 101 report from Barracuda Networks, a leading provider of cloud-first security solutions.

      Read more...

      New SEC Cyber Disclosure Rules Will Force Companies to Develop Incident Response Plans

      2024-01-31

      CPO Magazine: To many, the new SEC rules that require public companies to disclose “material” cybersecurity incidents within four days of determining their materiality may seem like a challenging, if not unreasonable, demand. 

      Read more...

      20 Essential Factors To Consider When Vetting Cybersecurity Platforms

      2024-01-30

      Forbes: In an increasingly digital work world, companies across industries collect and manage sensitive data. And just as companies are finding new and sophisticated ways to leverage that data, hackers are finding new and sophisticated ways to breach cyber defenses.

      Read more...

      SolarWinds Files Motion to Dismiss SEC Lawsuit

      2024-01-29

      Dark Reading: In a new filing with the US Southern District Court of New York, SolarWinds argued that the Securities and Exchange Commission was outside of its depth of expertise as well as its scope of authority in charging SolarWinds and its chief information security officer with mishandling the now-infamous, 2020, Russian-backed cyber espionage attack on its Orion platform.

      Read more...

      Canada Wakes Up To China, Russia, Iran Threat To Intellectual Property

      2024-01-29

      CSO Online: It is as if a light went on within the Canadian government this month as it took steps to tighten control over the risk presented by China, Russia, and Iran to sensitive research being funded by the federal government.

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates