Data Breach News, Malware Ransomware, News
November 10, 2023
988 views 52 secs 0

Basically all of Maine had data stolen by a ransomware gang

Engadget reports: The state agencies of Maine had fallen victim to cybercriminals who exploited a vulnerability in the MOVEit file transfer tool, making them the latest addition to the growing list of entities affected by the massive hack involving the software. In a notice the government has published about the cybersecurity incident, it said the event impacted […]

Data Breach News, News, Vulnerabilities
November 09, 2023
1046 views 43 secs 0

Microsoft: SysAid zero-day flaw exploited in Clop ransomware attacks

Bleeping Computer reports: Threat actors are exploiting a zero-day vulnerability in the service management software SysAid to gain access to corporate servers for data theft and to deploy Clop ransomware. SysAid is a comprehensive IT Service Management (ITSM) solution that provides a suite of tools for managing various IT services within an organization. The Clop ransomware is notorious […]

Legal News, News
November 09, 2023
951 views 12 secs 0

NYDFS Amends Cybersecurity Regulation; Some Provisions Go Into Effect December 1

New York State continues to strengthen cybersecurity regulations for financial institutions. New amendments to the Cybersecurity Regulation enacted in 2017 strengthen the regulation and add new security obligations. As Hunton Andrews Kurth summarizes it, “The new amendments strengthen the initial framework and require NYDFS-regulated entities to adhere to a number of additional prescriptive data security […]

Data Breach News, News
November 07, 2023
1046 views 47 secs 0

Sun Life third-party breach exposes 212K individuals

CyberNews reports: Sun Life data was exposed after MOVEit hackers breached Pension Benefit Information (PBI), jeopardizing hundreds of thousands of individuals. Sun Life, a financial services company managing a trillion dollars worth of assets, informed the Maine Attorney General that a third-party breach had impacted 212,129 individuals. Earlier this year, the company was impacted by […]

News, Commentaries and Analyses, Legal News, Malware Ransomware
November 02, 2023
1240 views 9 mins 0

International Counter Ransomware Initiative 2023 Joint Statement

Released by the White House, November 2, 2023 The 50 members of the International Counter Ransomware Initiative (CRI)—Albania, Australia, Austria, Belgium, Brazil, Bulgaria, Canada, Colombia, Costa Rica, Croatia, the Czech Republic, the Dominican Republic, Egypt, Estonia, the European Union, France, Germany, Greece, India, INTERPOL, Ireland, Israel, Italy, Japan, Jordan, Kenya, Lithuania, Mexico, the Netherlands, New […]

Finance, Legal News, News
November 02, 2023
1045 views 14 secs 0

NY Financial Regulator Rolls Out Updated Cybersecurity Standards

Bloomberg reports: New York regulators assigned heightened cybersecurity requirements to banks, insurers, and financial services providers based in the state with the release of finalized rule amendments Wednesday. Covered entities will have to use multifactor authentication, expand cybersecurity governance duties, and conduct consistent threat testing under the regulation updated by the New York Department of Financial Services. […]

News, Vendor News
October 31, 2023
1123 views 0 secs 0

US sues software company targeted in massive Russian cyber espionage campaign

The Hill reports: The U.S. sued a software company targeted in a massive Russian cyber espionage campaign Monday. The Securities and Exchange Commission (SEC) suit against Texas-based SolarWinds is seeking civil penalties, reimbursement of “ill-gotten gains” and the removal of the company’s top security executive, Tim Brown, according to The Associated Press. “We allege that, for years, […]

Legal News, Malware Ransomware, News
October 31, 2023
923 views 50 secs 0

The U.S. And Its Allies Are Pledging Never To Pay Hacker Ransoms

Eric Geller reports: The Biden administration and dozens of foreign allies will pledge this week never to pay ransoms to hackers who lock up their national governments’ computer systems, hoping to discourage financially motivated cyber criminals from seeing those systems as attractive ransomware targets. The joint promise will occur as part of the third annual […]

News, Legal News
October 27, 2023
1085 views 2 mins 0

FTC announces new Safeguards Rule provision: Is your company up on what’s required?

October 2023 marks the 20th anniversary of the effective date of the Gramm-Leach-Bliley Safeguards Rule. Its purpose then – and its purpose now – is to protect consumers by requiring entities covered by the Rule to “develop, implement, and maintain reasonable administrative, technical, and physical safeguards to protect the security, confidentiality, and integrity of customer […]