Lloyd’s of London Launches New Cyber Insurance Consortium

December 13, 2024 at 08:37AM Lloyd’s of London has launched a cyber insurance consortium aimed at creating a shared risk facility for qualified organizations. This initiative offers exclusive rates, simplified processes, and comprehensive coverage, particularly for those with HITRUST certifications, including a significant premium discount. The consortium aims to improve underwriting efficiency and broaden participation. … Read more

Krispy Kreme Doughnut Delivery Gets Cooked in Cyberattack

December 11, 2024 at 05:38PM Krispy Kreme experienced a cybersecurity incident affecting online ordering while retail operations remain unaffected. An SEC filing revealed unauthorized access to its IT systems, prompting ongoing investigations and external expert assistance. The company anticipates material business impact, though losses may be mitigated by cyber insurance. Customer data compromise remains unconfirmed. … Read more

Heart surgery device maker’s security bypassed, data encrypted and stolen

December 10, 2024 at 07:38AM Artivion reported a cybersecurity incident resembling a ransomware attack on November 21, 2024, resulting in data theft and file encryption. The company is investigating, has engaged external advisors, and is working to restore systems. The incident has disrupted operations but is not expected to impact finances significantly, aided by cyber … Read more

Does Your Company Need a Virtual CISO?

December 2, 2024 at 12:47PM Companies hire virtual chief information security officers (vCISOs) for various reasons, including expanding security strategies, responding to breaches, and complying with regulations. vCISOs offer expert guidance, consistent security program management, and cost-effective solutions for firms lacking full-time CISO resources. They also help navigate evolving cybersecurity challenges and technologies. ### Meeting … Read more

Palo Alto Networks Releases IoCs for New Firewall Zero-Day

November 18, 2024 at 08:19AM The CISO Forum Virtual Summit sessions are now available for instant viewing. SecurityWeek offers extensive resources on various cybersecurity topics, including malware, ransomware, incident response, and risk management. Subscribe to their Daily Briefing Newsletter for the latest news and expert insights. Unsubscribe anytime. ### Meeting Takeaways: 1. **CISO Forum Virtual … Read more

Beyond Compliance: The Advantage of Year-Round Network Pen Testing

November 18, 2024 at 06:03AM IT leaders are urged to conduct more frequent network penetration testing to stay ahead of hackers, as compliance-focused approaches are insufficient. Automated testing solutions like vPenTest can reduce costs by over 60%, allowing companies to perform assessments quickly, maintain security year-round, and meet regulatory and insurance requirements efficiently. ### Meeting … Read more

Cyberattack Cost Oil Giant Halliburton $35 Million

November 11, 2024 at 08:30AM SecurityWeek offers comprehensive cybersecurity news, including insights on malware, data breaches, ransomware, and various security domains such as cloud, network, and IoT security. It features events, webcasts, and newsletters for staying updated on industry developments, along with resources for CISO strategies and funding in cybersecurity. ### Meeting Takeaways: 1. **Key … Read more

Microsoft Warns of Russian Spear-Phishing Attacks Targeting Over 100 Organizations

October 30, 2024 at 09:42AM The 2024 ICS Cybersecurity Conference in Atlanta offers sessions focused on various cybersecurity topics. Stay updated with cybersecurity news, webcasts, and virtual events through SecurityWeek. Subscribe to their email briefing for insights on threats and industry trends, with options to unsubscribe anytime. ### Takeaways from the 2024 ICS Cybersecurity Conference … Read more

New Fortinet Zero-Day Exploited for Months Before Patch

October 24, 2024 at 07:41AM The ICS Cybersecurity Conference is broadcasting live from Atlanta, offering remote sessions on various cybersecurity topics, including threats, incident response, and data protection. SecurityWeek provides news, webcasts, and virtual events focused on cybersecurity, and encourages subscriptions to their daily briefing newsletter for the latest insights. ### Takeaways from the Meeting … Read more

Chinese State Hackers Main Suspect in Recent Ivanti CSA Zero-Day Attacks

October 14, 2024 at 09:15AM The Zero Trust Strategies Summit sessions are now available on demand. SecurityWeek offers a wide range of cybersecurity topics and resources including news, webcasts, and events. Stay updated with their Daily Briefing Newsletter for insights on threats, incident response, and more. Unsubscribe anytime. ### Meeting Takeaways: 1. **Event Highlight:** – … Read more