ubiquity breach

Ubiquiti security breach: “Catastrophic breach”

Shares of Ubiquiti traded down more than 10% on Wednesday following a report claiming the maker of cloud-enabled Internet of Things devices downplayed a recent security breach. Block & Leviton LLP, a national securities litigation firm, announces that it is investigating Ubiquiti, Inc. for potential violations of the federal securities laws. Ubiquity security breach Originally,…

CNA cyberattack

CNA Cyberattack: Insurance Company Hit By cyberattack

CNA Financial, a Chicago-based provider of cyber insurance, confirmed a cyberattack against its systems, which has some concerned that cybercriminals may target policyholders. If the investigation of the attack proves to include policyholder data, a cyber insurance industry expert warned, it could enable devastating further incidents that hackers could use as leverage in extortion attempts.…

data breach notification

Data breach notification laws: New York

Personal information in the United States is currently protected by a patchwork of industry-specific federal laws and state legislation whose scope and jurisdiction vary. The challenge of compliance for organizations that conduct business across all 50 states is therefore considerable. Even though many countries have laws that mandate data breach notification, data breach notifications are…

cyber insurance risk framework

NYDFS: Cyber Insurance Risk Framework

The New York State Department of Financial Services has released new guidance presenting some key practices for New York-regulated insurers that write cyber insurance. Background The 2020 Internet Crime Report issued by the FBI’s Internet Crime Complaint Center includes information from 791,790 complaints of suspected internet crime—an increase of a whopping 69.4% from 2019—and reported…

microsoft breach

Microsoft Breach and The NYDFS

Hackers are exploiting vulnerabilities in Exchange email servers to drop ransomware, Microsoft has warned, a move that puts tens of thousands of email servers at risk of destructive attacks. NYDFS Letter To Regulated Entities On March 9th The NYDFS released an industry letter to all regulated entities regarding the Microsoft Reports Exploitation of Four Vulnerabilities…

breached cameras

Hacked cameras: Verkada’s customers exposed

A “hacktivist” breached a massive trove of security-camera data collected by Silicon Valley startup Verkada, gaining access to live feeds of 150,000 surveillance cameras inside hospitals, companies, police departments, prisons and schools. Bloomberg reports the breach was carried out by a hacker with the goal of demonstrating the “pervasiveness of video surveillance and the ease…

solarwinds hack

New Malware Strains Linked to SolarWinds Hack

Researchers uncover 3 more malware strains linked to SolarWinds hackers. FireEye and Security researchers with the Microsoft Threat Intelligence Center (MSTIC) discovered 3 more malware strains in connection with the SolarWinds supply-chain attack, including a “sophisticated second-stage backdoor”. Microsoft and FireEye published blog posts showing several new pieces of malware that they believe are linked…

security alert BIG I

ACT and BIG “I” Security Alert

As Financial companies become more vulnerable, the risk of employees and contractors causing a data breach or ransomware attack is simultaneously increasing, but many agency principals still underestimate their cyber security risks. On March 1st, the Independent Insurance Agents & Brokers of America’s Agents Council for Technology (ACT), in conjunction with the Big “I” (Independent…