Menu
Sign In
    shutterstock_490960141-1

    Industry News: ESG5

      Know Your Breach: Asahi

      The Target: Japanese beer giant Asahi.

      The Take: According to the company, 1,525,000 people who contacted its customer services had their names, addresses, phone numbers, and email addresses stolen. The hackers also exfiltrated the names, addresses, and phone numbers of 114,000 people Asahi had sent congratulatory or condolence messages to.

      The Vector: The company explained that the threat actors hacked network equipment and used it to compromise its data center network. “Ransomware was deployed simultaneously, encrypting data on multiple active servers and some PC devices connected to the network,” the company said.

      This breach is a stark reminder of how strong authentication controls are in an overall robust cybersecurity posture, and that good password hygiene plays a pivotal role in protection.

      Read more...

      Blackstone CTO Says Data Leaks Keep Him Up At Night

      2025-12-03

      Yahoo News/Reuters: Blackstone's Chief Technology Officer ​is increasingly concerned about ‌data leaks and which platforms can help ‌manage safety, he told the Reuters NEXT conference in New York.

      Read more...

      AI Is Changing Cybersecurity—But Not In The Way You Think

      2025-12-03

      Forbes: After more than 20 years in cybersecurity, I’ve learned to be skeptical. I’ve seen countless vendors promise to “revolutionize security,” only to deliver another dashboard we barely have time to check.

      Read more...

      ServiceNow to Acquire Identity Security Firm Veza in Reported $1 Billion Deal

      2025-12-03

      SecurityWeek: The Information last week reported that ServiceNow had been in advanced talks to buy Veza for more than $1 billion. Contacted by SecurityWeek, ServiceNow representatives said they are unable to disclose the terms of the contract. 

      Read more...

      AI Takes Center Stage as the Major Threat to Cybersecurity in 2026

      2025-12-02

      Business Wire: Experian® released its 2026 Data Breach Industry Forecast, offering a look at the evolving cyber threat landscape. The predictions address how the coming year could usher in a new wave of sophisticated attacks driven by artificial intelligence along with other threats and vulnerabilities including quantum computing.

      Read more...

      AI, Defense Fuel Europe’s VC-Backed Cybersecurity Renaissance

      2025-12-01

      Pitchbook: Cybersecurity has emerged as one of the few VC verticals in Europe to experience an increase in dealmaking this year, as demand driven by AI and the defense sector fuels investor enthusiasm.

      Read more...

      Police Disrupt 'Cryptomixer,' Seize Millions in Crypto

      2025-12-01

      Dark Reading: Though many people believe cryptocurrency is untraceable, that, generally speaking, is far from the truth. When cybercriminals obtain cryptocurrency in, say, a ransomware attack, a key step in the process is mixing, or laundering, the crypto. 

      Read more...

      Financial Watchdog Chief Warns Korean Firms Underinvest In Cybersecurity Amid Hacks

      2025-12-01

      The Korea Times: The level of investment in cybersecurity by Korean companies is far below that of other major countries, the head of the country's financial watchdog warned, amid a string of recent hacking incidents at major firms, including SK Telecom, Lotte Card, Coupang and Upbit.

      Read more...

      Know Your Breach: Comcast

      The Target: Comcast is an American mass media, telecommunications, and entertainment multinational company, and the fourth-largest telecom firm in the world by revenue, after AT&T, Verizon, and China Mobile.

      The Take: The threat actors stole personal and financial information between February 14 and February 26, including the names, addresses, Social Security numbers, dates of birth, and Comcast account numbers of affected current and former customers.

      The Vector: The breach occurred in February 2024, when attackers hacked into the systems of Financial Business and Consumer Solutions (FBCS), a debt collector Comcast had stopped using two years earlier.

      This breach highlights the extreme importance of timely software updates for known software vulnerabilities, not only in systems directly under a firm’s control, but in third-party systems the firm relies upon as well. The longer a firm, or its vendors, hold out on deploying the most up-to-date software for their systems, the greater the chance an attacker will exploit the issue.

      Read more...

      EU Agrees On New Rules For Online Fraud Protection

      2025-11-27

      Yahoo News/Reuters: EU member states and the European Parliament have ​agreed on new rules to force banks ‌and other payment service providers to better protect their customers ‌against online fraud, hidden fees and data leaks, the Parliament said.

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates