Security News

Alleged Bitcoin crook faces 5 years after SEC's X account pwned
2024-10-18 12:30

SIM swappers strike again, warping cryptocurrency prices An Alabama man faces five years in prison for allegedly attempting to manipulate the price of Bitcoin by pwning the US Securities and...

Arrested: USDoD, Anonymous Sudan, SEC X account hacker
2024-10-18 09:09

Law enforcement agencies have arrested suspects involved in cyber attacks claimed by USDoD and Anonymous Sudan, as well as a person involved in the hacking of SEC’s X (Twitter) account. USDoD On...

FBI arrest Alabama man suspected of hacking SEC's X account
2024-10-17 18:21

An Alabama man was arrested today by the FBI for his suspected role in hacking the SEC's X account to make a fake announcement that Bitcoin ETFs were approved. [...]

SEC ends probe into MOVEit attacks impacting 95 million people
2024-08-07 22:35

The SEC concludes its investigation into Progress Software's handling of the widespread exploitation of a MOVEit Transfer zero-day flaw that exposed data of over 95 million people. [...]

Judge mostly drags SEC's lawsuit against SolarWinds into the recycling bin
2024-07-18 21:06

A judge has mostly thrown out a lawsuit brought by America's financial watchdog that accused SolarWinds and its chief infosec officer of misleading investors about its computer security practices and the backdooring of its Orion product. In a Thursday ruling [PDF], US federal district Judge Paul Engelmayer dismissed all of the so-called "Post-SUNBURST" claims the SEC levied against SolarWinds.

Pressure mounts on CISOs as SEC bares teeth with legal action
2024-06-21 03:30

A Panaseer investigation into organizations’ annual 10-K filings reported to the SEC shows that from January-May 2024, at least 1,327 filings mentioned NIST – a key indicator that cybersecurity...

Six months of SEC’s cyber disclosure rules
2024-06-12 03:00

In this Help Net Security video, Mark Millender, Senior Advisor of Global Executive Engagement at Tanium, discusses the overall sentiment from CISOs of large, public companies on the effectiveness and understanding of SEC's cyber disclosure rules and common misconceptions and gray areas to watch for. Learn what C-suite leaders can expect from the cyber disclosure rules in the next 6-12 months based on feedback, effectiveness, and guidance from industry peers.

Intercontinental Exchange to pay $10M SEC penalty over VPN breach
2024-05-22 17:20

The Intercontinental Exchange will pay a $10 million penalty to settle charges brought by the U.S. Securities and Exchange Commission after failing to ensure its subsidiaries promptly reported an April 2021 VPN security breach. ICE is an American company listed on the Fortune 500 that owns and operates financial exchanges and clearing houses worldwide, including the New York Stock Exchange.

Confused by the SEC's IT security breach reporting rules? Read this
2024-05-22 16:30

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

SEC requires financial institutions to notify customers of breaches within 30 days
2024-05-20 09:53

The Securities and Exchange Commission announced the adoption of amendments to Regulation S-P to modernize and enhance the rules that govern the treatment of consumers' nonpublic personal information by certain financial institutions."These amendments to Regulation S-P will make critical updates to a rule first adopted in 2000 and help protect the privacy of customers' financial data. The basic idea for covered firms is if you've got a breach, then you've got to notify. That's good for investors."