Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    The Cybersecurity Industry Doesn't Have a Stress Problem — It Has a Leadership Problem

    2022-12-13

    Dark Reading: Around the world, employees have been experiencing extreme stress due to the ongoing pandemic, business disruption, and the faster pace of work. 

    Read more...

    Cybersecurity Startup Snyk Valued at $7.4 Bln After Latest Funding

    2022-12-12

    Reuters: Cybersecurity start-up Snyk Ltd said it had raised $196.5 million in Series G funding, led by Qatar Investment Authority, which is at a lower valuation of $7.4 billion.

    Read more...

    Play Ransomware Claims Attack on Belgium City of Antwerp

    2022-12-12

    Bleeping Computer: Digipolis, the IT company responsible for managing Antwerp's IT systems, suffered a ransomware attack that disrupted the city's IT, email, and phone services.

    Read more...

    California Probes Cyberattack Against State’s Finance Department

    2022-12-12

    Yahoo Finance: California’s finance department has been hit by a cybersecurity attack, and a notorious ransomware group is claiming responsibility.

    Read more...

    Why Employee-Targeted Digital Risks Are The Next Frontier Of Enterprise Cybersecurity

    2022-12-12

    Forbes: The story of cybersecurity is a constant progression of new ways to defeat new threats, from thought experiments to mainstream best practices. It started with the earliest antivirus software, which began as an experiment and progressed to being a necessity.

    Read more...

    Know Your Breach: VEVOR

    The Target: Vevor, a California-based online retailer.

    The Take: 1.1 billion records across two databases of Personally Identifiable Information including: first and last name, partial credit card numbers, transaction IDs, order and refund information, home addresses, and email addresses. Internal Vevor account admin names and plaintext passwords were also exposed, as well as IP addresse, ports, and pathways.

    The Vector: A misconfigured data server was left open and unsecured, meaning anyone with an internet connection could have viewed and downloaded the data.

    This breach is critical reminder that authentication controls are an important piece in an overall robust cybersecurity posture and furthermore, that when admin credentials are exposed, dangerous pivot attacks may follow as attackers use these to move into a firm’s other platforms. Multi-factor authentication and password length and complexity rules are effective strategies to mitigate these kinds of breaches to protect a firm’s data.

    Read more...

    Australia Witnessed 16 Major Cyber-attacks As Hackers Attempt to Steal ‘Sensitive Data’

    2022-12-08

    Express: Australia had 16 major cyber-attacks against Australian organisations, which were trying to be “cyber extortion attacks”, claimed CyberCX Cyber Intelligence Director Katherine Mansted. Recently, millions of Australians had their privacy breached in cyber attacks on Optus, Medibank and other companies.

    Read more...

    Recession Hits Cybersecurity Companies Hard As Layoffs Mount

    2022-12-08

    CTech: The cybersecurity industry is not immune. This message has been internalized over the past week in the technology sector. It started with U.S. company CrowdStrike, which is considered one of the biggest players in the market. The company revealed good results in its financial reports for the third quarter, but the CEO admitted that customers are cutting expenses and postponing purchases.

    Read more...

    Automated Dark Web Markets Sell Corporate Email Accounts for $2

    2022-12-08

    Bleeping Computer: Cybercrime marketplaces are increasingly selling stolen corporate email addresses for as low as $2 to fill a growing demand by hackers who use them for business email compromise and phishing attacks or initial access to networks.

    Read more...

    Mega-investment in Cyber Defense Could Boost Cybersecurity ETFs

    2022-12-07

    Wealth Professional: Data proliferation is reaching new heights as a result of new digital infrastructure and long-term work-from-home arrangements, while cyberattacks are also increasing in intensity. And as corporations and governments attempt to remain ahead of the curve, cybersecurity firms are taking centre stage.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates