Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Know Your Breach: UK Legal Aid Agency

    The Target: The Legal Aid Agency, which is part of the UK’s Ministry of Justice, provides criminal and civil legal aid and advice to people in England and Wales.

    The Take: The compromised data includes applicants’ contact details and addresses, dates of birth, national ID numbers, criminal history, and employment status, as well as financial information such as contribution amounts, payments, and debts.

    The Vector: An investigation conducted with the aid of the National Crime Agency and National Cyber Security Centre revealed on May 16 that the intrusion was “more extensive than originally understood and that the group behind it had accessed a large amount of information relating to legal aid applicants”.

    This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

    Read more...

    H.I.G. Capital Announces Strategic Growth Investment in AgileBlue to Accelerate AI-Powered Cybersecurity for the Mid-Market

    2025-05-22

    PR Newswire: H.I.G. Growth Partners ("H.I.G. Growth"), the dedicated growth capital investment affiliate of H.I.G. Capital ("H.I.G."), a leading global alternative investment firm with $69 billion of capital under management, is pleased to announce its investment in AgileBlue (or the "Company"), an AI-powered Security Operations platform that detects, investigates, and auto-responds to cyber threats across cloud, network, and endpoint environments.

    Read more...

    Cyber and AI Fuel Surge in UK Tech M&A Deals

    2025-05-21

    Yahoo Finance: The UK’s software M&A market has hit a record high, with £13.2bn deployed across 420 deals over the past year, marking a 27 per cent year on year rise and revealing the nation’s pivotal role in Europe’s tech investment scene.

    Read more...

    Hong Kong Regulator Bans Broker Text Links After Phishing Scams Hit Traders

    2025-05-21

    Finance Magnates: A wave of phishing scams has hit Hong Kong investors, with attackers impersonating licensed brokers in fraudulent text messages that link to fake websites.

    Read more...

    Online Criminals Attacking HSBC ‘All the Time’, says Head of UK Arm

    2025-05-20

    The Guardian: The boss of HSBC’s UK arm has said the bank is “being attacked all the time” by online criminals, with cybersecurity now its biggest expense, costing the lender hundreds of millions of pounds.

    Read more...

    Cybersecurity is in a Pivotal Moment With AI, Says Palo Alto Networks CEO

    2025-05-20

    CNBC: According to Nikesh Arora, even “naysayers” of AI are now trying to move data to the cloud in order to keep up with competitors. New AI models require the cloud, he said, claiming that businesses will be left behind if they don’t move their company to the platform.

    Read more...

    30% of Data Breaches Involve Victims’ Third-Party Suppliers and Vendors

    2025-05-19

    PYMNTS: Thirty percent of data breaches that occurred during the year ended Oct. 31 involved a third party, according to Verizon.

    Read more....

    BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

    2025-05-19

    SecurityWeek: The company, which is working on technology to revamp corporate incident response reporting systems, said the new financing included expanded equity positions for SYN Ventures and Overline.

    Read more...

    Know Your Breach: Coinbase

    The Target: Crypto giant Coinbase

    The Take: The company said the hacker stole customer names, postal and email addresses, phone numbers, and the last four-digits of users’ Social Security numbers. The hacker also took masked bank account numbers and some banking identifiers, as well as customers’ government-issued identity documents, such as driver’s licenses and passports.

    The Vector: Coinbase said the hacker “obtained this information by paying multiple contractors or employees working in support roles outside the United States to collect information from internal Coinbase systems to which they had access in order to perform their job responsibilities.”

    This breach is a stark reminder of how strong authentication controls are in an overall robust cybersecurity posture, and that good password hygiene plays a pivotal role in protection.

    Read more...

    Cybersecurity Firm Proofpoint to Buy European Rival for $1 Billion as it Eyes IPO

    2025-05-15

    CNBC: Cybersecurity firm Proofpoint announced it will acquire European rival Hornetsecurity for $1 billion to strengthen its European presence as it explores a return to public markets.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates