Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      Know Your Breach: Boyd Gaming

      The Target: Boyd Gaming is a public US casino entertainment company with 28 gaming properties in ten states.

      The Take: The threat actors were able to steal data from the company's systems, which includes information about employees and individuals.

      The Vector: In a new 8-K form filed with the US Securities and Exchange Commission (SEC), the company said it experienced a cybersecurity “incident” in which unauthorized third parties accessed its IT system.

      This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

      Read more...

      Oneleet Raises $33 Million to Shake up the World of Security Compliance

      2025-10-02

      TechCrunch: Bryan Onel’s father was a locksmith. As for Onel, he described himself as the digital equivalent. Ethical hacking was Onel’s hobby growing up. He studied AI at university and then turned that hacking hobby into a profession. 

      Read more...

      How AI Adoption Is Shifting The Cost Factor Of Cyberattacks

      2025-10-02

      Forbes: IBM’s "2025 Cost of a Data Breach Report" sounds an alarm for organizations racing to deploy AI without adequate safeguards. The study highlights how organizations are choosing speed and innovation over security oversight, which is translating into steeper breach costs and more-complex recovery efforts.

      Read more...

      Landmark US Cyber-Information-Sharing Program Expires, Bringing Uncertainty

      2025-10-01

      Cybersecurity Dive: A federal program that encourages companies to share cyber threat information expired, raising fears of significantly diminished cybersecurity collaboration between the government and the private sector.

      Read more...

      Databricks Enters the Cybersecurity Arena With an AI-Driven Platform

      2025-09-30

      CSO Online: Databricks is trying to carve out a bigger role in cybersecurity for itself with the launch of “Data Intelligence for Cybersecurity,” a platform aimed at unifying fragmented security data and powering AI agents against automated attacks.

      Read more...

      CrowdStrike Appoints Amjad Hussain as Chief Resilience Officer

      2025-09-30

      Investing.com: CrowdStrike, the $122.58 billion cybersecurity powerhouse that has delivered a remarkable 74% return to investors over the past year, announced the appointment of Amjad Hussain as chief resilience officer, a new position focused on advancing operational excellence and reliability across the cybersecurity company’s platform and business operations.

      Read more...

      SafeHill Emerges from Stealth With $2.6 Million Pre-Seed Funding

      2025-09-29

      SecurityWeek: The firm was founded by Mike Pena (CEO), Nicholas Gonzalez (chief revenue officer), Hector Monsegur (chief research officer), Ibrahim Karajic (VP of infrastructure), and Andy Sok (VP of product). 

      Read more...

      How Advanced Cybersecurity Can Help Safeguard America’s Economic Future

      2025-09-29

      Forbes: As digital ecosystems expand and global interconnectivity accelerates, cybercrime is emerging as a significant economic vulnerability. In 2020, Cybersecurity Ventures projected it would inflict $10.5 trillion in damages annually by 2025.

      Read more...

      Know Your Breach: Bouygues Telecom

      The Target: Bouygues Telecom is one of the largest telecommunication service providers in France, offering mobile, internet, and IPTV services. Bouygues Telecom has 14.5 million mobile subscribers, 9,000 employees, and an annual revenue of €56.8 billion ($66B).

      The Take: According to the FAQ, the following customer information was stolen: Contact details; Contract information; Civil status data; Company details (for business customers); International Bank Account Numbers (IBANs).

      The Vector: A previous statement says that internal investigations confirmed that the attack was orchestrated by a 'known cybercriminal group' that targeted 'specific internal resources.'

      This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

      Read more...

      JPMorgan Hired a New Cybersecurity Chief from Goldman Sachs' Investment Bank

      2025-09-24

      eFinanical Careers: Multiple banks have been recruiting senior cybersecurity specialists as technologies like AI make cyberattacks much more powerful. Bank of America hired an ex-US Secret Service investigator, while HSBC hired a former UK Home Office technology director.

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates