Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Canada's Biggest Real Estate Companies Grapple with Cybersecurity Gaps: KPMG

    2022-12-06

    Cision: Despite the fact that most Canadian real estate companies now build smart tech into their buildings to monitor, manage, and maintain many functions, such as heating, lighting, elevators, power meters and fire alarm systems, very few have invested to ensure these systems can't be hacked, finds new research from KPMG in Canada.

    Read more...

    Cybersecurity Spending ‘Difficult to Cut’ Despite Recession Risks: CrowdStrike CEO

    2022-12-05

    Yahoo Finance: CrowdStrike Co-Founder and CEO George Kurtz joins Yahoo Finance Live to discuss the company's latest quarterly results, the outlook for cybersecurity spending, and expectations for cyberattacks in 2023.

    Read more...

    Why Modernizing Cybersecurity Boosts SaaS Companies’ Bottom Line

    2022-12-05

    Forbes: Cybersecurity is important for SaaS companies, both to comply with industry standards and to protect their businesses. Companies that still use legacy systems to host a product, application or service on their premises run additional risks, which include cyber breaches, loss of confidential data and intellectual property, and potential damage to customer relationships caused by noncompliance.

    Read more...

    Know Your Breach: ENC Security

    The Target: ENC Security, Netherlands based data-encryption firm.

    The Take: Exposure of security keys for various firm applications and software including: SMTP credentials for sales channels, Ayden, the firm’s single payment platform, email marketing Mailchimp APIs, licensing payment APIs, and public and private keys.

     The Vector: A misconfigured data server was left open and unsecured, meaning anyone with an internet connection could have viewed and downloaded the data.

    This breach is critical reminder that authentication controls are an important piece in an overall robust cybersecurity posture and furthermore, that such precautions must in place in all third-party vendors that have access to a firm’s data. Multi-factor authentication and password length and complexity rules are effective strategies to mitigate these kinds of breaches to protect a firm’s data.

    Read more...

    Nine Tips to Strengthen Defenses Against Specialized Cybercrime

    2022-12-02

    Forbes: The cyber threat landscape has grown increasingly specialized and more challenging for organizations to defend against on their own.

    Read more...

    Password App LastPass Hit by Cybersecurity Breach but Says Data Remains Safe

    2022-12-01

    The Guardian: Password manager LastPass has told customers that some of their information has been accessed in a cybersecurity breach, but says passwords remain safe.

    Read more...

    Cybersecurity Laws to be Updated to Boost UK Protection from Cyber Attacks

    2022-11-30

    Yahoo News: The UK’s cybersecurity laws will be updated to require outsourced IT providers to meet security standards as part of efforts to better protect supply chains, the Government has announced.

    Read more...

    Cybersecurity Researchers Take Down DDoS Botnet by Accident

    2022-11-30

    Bleeping Computer: As revealed in a report published earlier this month, the KmsdBot malware behind this botnet was discovered by members of the Akamai Security Intelligence Response Team (SIRT) after it infected one of their honeypots.

    Read more...

    Crowdstrike Holdings Warning Sparks Selloff in Cybersecurity Stocks

    2022-11-30

    Reuters: A warning from Crowdstrike Holdings Inc (CRWD.O) that clients were cutting back on spending and delaying purchases due to an economic slowdown slammed cybersecurity stocks, inflicting fresh pain on the battered sector.

    Read more...

    Using An M&A to Improve Your Company's Cybersecurity Posture

    2022-11-30

    Forbes: The whole point of a merger or acquisition (M&A) is to combine the resources of two organizations to take advantage of economies of scale. It can be a strong recipe for corporate success, yet cybersecurity often takes a back seat in the quest to boost profits and trim costs.

    Read more...

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates