shutterstock_490960141-1

Industry News: ESG5

      Know Your Breach: PandaBuy

      The Target: The PandaBuy online shopping platform.

      The Take: The data contained approximately 1.5 million unique UserIds, First Name, Last Name, Phone Numbers, Emails, and Login IPs.

      The Vector: "The data was stolen by exploiting several critical vulnerabilities in the platform's API and other bugs were identified allowing access to the internal service of the website," the threat actor said.

      This breach is critical reminder that zero-day exploits do happen, and furthermore that patching software in a timely, effective manner is a key component of ensuring customer data is protected. Ensuring third-party vendors are deploying patches and fixes in accordance with a firm’s cybersecurity policy is an important step in an overall robust security posture.

      Read more...

      UK's Darktrace Raises Annual Forecasts For Third Time This Year

      2024-04-11

      Yahoo Finance: Darktrace raised its annual revenue and margin forecasts for the third time this year after the British cybersecurity company's third-quarter revenue jumped nearly 27%.

      Read more...

      Russia Ranked Top of Global Cybercrime Index in New Study

      2024-04-11

      MSN: The World Cybercrime Index has been published in journal Plos One following three years of research by academics from the University of Oxford and the University of New South Wales (UNSW) Canberra.

      Read more...

      National Security Agency Announces Dave Luber As Director of Cybersecurity

      2024-04-10

      Dark Reading: Dave Luber began as the National Security Agency’s (NSA) new Director of Cybersecurity on April 1, 2024. As the new Cybersecurity Director, he oversees NSA’s Cybersecurity Directorate (CSD), whose critical mission is to prevent and eradicate cyber threats to the Department of Defense, National Security Systems, and the Defense Industrial Base.

      Read more...

      Cyber Attacks Risk Triggering Bank Runs, Warns IMF

      2024-04-09

      Yahoo Finance: Cyber attacks are becoming so frequent, malicious and costly that they risk triggering bank runs, according to the International Monetary Fund (IMF). The Fund warned that rising cyber threats now posed “serious concerns for financial stability” and could push companies into insolvency.

      Read more...

      The Secret To Leveraging AI For Cybersecurity

      2024-04-09

      Forbes: Every day, we hear from government and company leaders asking how they can best leverage artificial intelligence (AI) and machine learning (ML) for improved cybersecurity outcomes—and for protection against more sophisticated attacks created by bad actors using AI.

      Read more...

      MAS, Mastercard Ink MOU to Strengthen Cyber Resilience in Financial Services Sector

      2024-04-09

      The Straits Times: The Monetary Authority of Singapore (MAS) and Mastercard on April 9, 2024 signed a memorandum of understanding (MOU) to enhance cooperation in cyber security, specifically with the aim of strengthening cyber resilience in Singapore’s financial services sector.

      Read more...

      Cybersecurity Market to Reach USD 395 Billion by 2031

      2024-04-09

      StreetInsider: A growing number of cyber-attacks owing to the proliferation of e-commerce platforms, emergence of smart devices, and deployment of cloud are some key factors propelling Cybersecurity Market growth.

      Read more...

      Know Your Breach: Prudential Insurance

      The Target: Prudential Insurance — one of the largest insurers in the United States.

      The Take: The company said the names, addresses, driver's license numbers or ID cards of 36,545 were accessed.

      The Vector: The company filed documents with the SEC on February 13 warning that a “cybercrime group” was able to access “administrative and user data from certain information technology systems and a small percentage of Company user accounts associated with employees and contractors.”

       This breach is a stark reminder of how strong authentication controls are in an overall robust cybersecurity posture, and that good password hygiene plays a pivotal role in protection.

      Read more...

      US Government Commits $3.6 Million To Address Cybersecurity Skill Shortage

      2024-04-04

      Cointelegraph: The United States National Institute of Standards and Technology (NIST) said it awarded cooperative agreements of almost $3.6 million, aiming to build a workforce to help guard businesses against cybersecurity risks. 

      Read more...

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates