Cybersecurity
Search documents
X @Bloomberg
Bloomberg· 2025-07-24 08:34
Security Breach - Several South African entities have been compromised due to hackers exploiting a Microsoft SharePoint server security vulnerability [1] - Eye Security reported the security breach [1]
Orange: Orange Cyberdefense acquires Swiss cybersecurity specialist ensec
Globenewswire· 2025-07-24 06:30
Core Insights - Orange Cyberdefense has acquired 100% of ensec, a Swiss cybersecurity company, to enhance its presence in Switzerland [1][5] - The acquisition aims to strengthen Orange Cyberdefense's capabilities in the German-speaking regions of Switzerland, complementing its existing operations in the French-speaking areas [2][4] - This move aligns with Orange Cyberdefense's strategy to become a leading cybersecurity player in Europe and to provide comprehensive cybersecurity solutions [5][6] Company Overview - Orange Cyberdefense has been operating in Switzerland since 2022 and has established a strong reputation, particularly in offensive security solutions, with over 100 cybersecurity experts [3][8] - The acquisition of ensec adds approximately 40 highly trained experts and a customer portfolio of over 130 clients in sensitive sectors such as finance, retail, and energy [4][8] - The combined expertise of both companies is expected to enhance service delivery and customer proximity, allowing for rapid responses to client needs [7][9] Strategic Implications - The acquisition is seen as an opportunity to leverage synergies between Orange Cyberdefense and Orange Business, enhancing their global sales capabilities [5][6] - This strategic move is part of Orange Cyberdefense's broader ambition to deliver sustainable growth and digital trust through expert-led cybersecurity services [6][10] - The integration of ensec is expected to create a dynamic cybersecurity champion in Switzerland, benefiting both employees and partners [9]
ASGN rporated(ASGN) - 2025 Q2 - Earnings Call Transcript
2025-07-23 21:30
Financial Data and Key Metrics Changes - ASGN reported revenues of $1,020 million for Q2 2025, which was above the high end of guidance and represented a decrease of 1.4% year over year [5][23] - Adjusted EBITDA margin was 10.6%, at the top end of expectations for the quarter [5][27] - Net income for the quarter was $29.3 million, with free cash flow of $115.8 million, translating to a conversion rate of approximately 107% of adjusted EBITDA [27][28] Business Line Data and Key Metrics Changes - IT consulting revenues grew to approximately 63% of total revenues, up from 57% in the prior year [5] - Commercial consulting revenues totaled $325.7 million, an increase of 15.7% year over year, driven by contributions from TopLock [23] - Federal government segment revenues were $312.5 million, an increase of 1.1% year over year, including $10 million of higher than expected license revenue [23] Market Data and Key Metrics Changes - Consumer and industrial accounts showed mid double-digit growth year over year, driven by strong performance in materials, utilities, and consumer discretionary sectors [10] - The healthcare vertical remained flat year over year, while financial services and TMT accounts declined compared to the previous year [10][11] - Federal contract awards totaled $72 million for the quarter, with a book-to-bill ratio of 1.1 times [7] Company Strategy and Development Direction - ASGN is focusing on AI investments to enhance competitiveness and drive demand for cloud and data solutions [6][30] - The company launched the ASGN AI Innovation Center to unify AI expertise and promote business growth [31][33] - Strategic partnerships with companies like AWS and Workday are being leveraged to deliver tailored technology solutions [18][31] Management Comments on Operating Environment and Future Outlook - Management noted that macroeconomic uncertainty is impacting discretionary spending, but clients are still investing in AI to maintain competitiveness [5][30] - The recent increase in U.S. Defense spending is expected to benefit ASGN's federal business, particularly in AI and automation [8][30] - Management expressed cautious optimism regarding future growth, particularly in the commercial consulting space [63] Other Important Information - The company has approximately $470 million remaining under its $750 million share repurchase authorization [28] - ASGN plans to host an Investor Day in Q4 to discuss long-term strategies for growth and value creation [34] Q&A Session Summary Question: How is TopLock performing relative to expectations? - TopLock is tracking just ahead of revenue and bookings expectations, with EBITDA margins in the high teens [39] Question: What impact is AI having on the cyclical part of the assignment business? - The cyclicality is stable, with no significant impact from AI observed at this stage [46] Question: What is the long-term margin profile for the government consulting area? - The long-term margin profile is expected to remain in the 20% to 21% range, with opportunities for increasing direct labor [56] Question: What were the expectations regarding the DOGE impact? - The DOGE impact was expected to be less than 2% of total revenues, consistent with prior expectations [59] Question: Can you discuss the strength in the consumer and industrial segments? - Strength was driven by significant investments in cloud, data, and AI, particularly in materials and utilities [87][90] Question: How is ASGN using AI internally? - ASGN is implementing AI across enterprise software tools to enhance productivity and efficiency in operations [92]
Vanta Valuation Jumps to $4.15 Billion
Bloomberg Technology· 2025-07-23 19:31
So the 150 million, what does it help you do. It helps us continue to help our customers build and demonstrate trust across the Internet. It demonstrates trust across the Internet.I mean, immediately makes me think of today's news flow with worrying about Microsoft in the hack there. I mean, is this something that you're worrying about more broadly that security isn't strong enough, particularly when it comes to access to third parties. Yeah, I think what we've seen is security online.It's an increasing con ...
US Nuclear Body Among Those Impacted By SharePoint Breech
Bloomberg Technology· 2025-07-23 18:13
Cybersecurity Threat Landscape - Cyberattacks target sign-in credentials, usernames, and passwords, potentially enabling hackers to access multiple systems [1] - A nuclear agency responsible for nuclear weapon development and disposal was hacked, raising concerns about national security [2] - While sensitive or classified information was reportedly not taken from the nuclear agency, the risk of hackers branching out remains a concern [3] - Thousands of servers globally, vulnerable due to a common Microsoft software (SharePoint) vulnerability, are at risk [5] Attribution and Response - Microsoft identified at least two Chinese state-backed hacking groups as being behind some of the attacks [5] - Microsoft rolled out patches to address the vulnerability, but security researchers suggest that patching alone is insufficient after a breach [7][8] Impact and Scope - The full scope of the breaches is still under investigation, and Microsoft has not disclosed the number of customers affected [6] - The attacks are not limited to the US, with a Dutch cyber company identifying the activity as international [4]
Clorox Claims Cognizant Handed Credentials To Hacker, Ignored Security Protocols
Benzinga· 2025-07-23 15:56
Core Viewpoint - Clorox Company has filed a lawsuit against Cognizant Technology Solutions for gross negligence and breach of trust following a cyberattack that resulted in nearly $380 million in damages due to Cognizant's failure to adhere to cybersecurity protocols [1][5][6]. Group 1: Incident Overview - Clorox relied on Cognizant for operating its employee service desk, which included critical tasks like password recovery and credential resets for over a decade [2]. - On August 11, 2023, a cybercriminal gained direct access to Clorox's network credentials through the Cognizant-run service desk without proper authentication checks, which occurred multiple times [4]. - The cyberattack severely disrupted Clorox's corporate network and supply chain, impairing its ability to fulfill orders [5]. Group 2: Allegations Against Cognizant - Clorox alleges that Cognizant ignored established security procedures designed to prevent such attacks, leading to significant damages [5][6]. - The lawsuit claims that Cognizant's mishandling of credential requests was exacerbated by a poor incident response and disaster recovery effort [5]. - Despite claiming cybersecurity expertise and training for its staff, Cognizant's actions were described by Clorox as a "devastating lie," suggesting that the breach could have been avoided with proper adherence to protocols [6]. Group 3: Financial Impact - Clorox reported over $49 million in direct recovery costs and hundreds of millions more in business interruption losses due to the cyberattack [6]. - In contrast, Cognizant reported $20 billion in revenue for 2024, showing no immediate negative impact on its brand or financial performance [7].
X @Bloomberg
Bloomberg· 2025-07-23 15:01
Cybersecurity Breach - Waratah, a Canadian hedge fund, is investigating a cybersecurity breach [1] - The breach may have exposed sensitive client information [1]
Rapid7 Labs Security Researchers to Speak at Black Hat USA 2025 and DEF CON 33
Globenewswire· 2025-07-23 13:00
Core Insights - Rapid7, Inc. announced its participation in Black Hat USA 2025 and DEF CON 33, showcasing a lineup of speakers from Rapid7 Labs who will present groundbreaking research on emerging cybersecurity threats and vulnerabilities [1][10]. Company Overview - Rapid7 Labs is recognized for its community-driven approach to cybersecurity, providing open-source tools and curated intelligence to help teams effectively identify, assess, and mitigate threats [2]. - The company has introduced the Intelligence Hub, which consolidates global threat intelligence curated by Rapid7 Labs researchers [2]. Event Details - Black Hat USA 2025 will occur from August 2 to August 7, while DEF CON 33 will take place from August 7 to August 10, focusing on cutting-edge research and community collaboration in information security [10]. - Rapid7 will feature sessions that leverage 25 years of security program expertise to address pressing cybersecurity challenges [3]. Session Highlights - **Metasploit's Latest Attack Capability**: This session will cover new capabilities in Metasploit, including SMB-to-LDAP relaying and new process injection techniques, with live demonstrations [4]. - **Akheron Proxy**: A session on security testing methods using Akheron proxy, which facilitates real-time communication between microprocessors on hardware circuit boards [5]. - **Weaponization of Cellular-Based IoT Technology**: This briefing will analyze how adversaries exploit IoT devices with cellular technology, including live demonstrations and mitigation techniques [6]. - **Exploiting Synology NAS**: A presentation revealing a critical vulnerability in Synology NAS devices, allowing unauthenticated attackers to achieve root-level remote code execution [7][8]. Community Engagement - Rapid7 emphasizes the importance of face-to-face interactions at these conferences for fostering collaboration and sharing actionable insights within the cybersecurity community [9].
Cycurion Shines as Diamond Affiliate Partner at NACCHO Annual Conference, Showcasing High-Margin Cyber Shield Solution to Address Public Health Cybersecurity Challenges
Globenewswire· 2025-07-23 12:00
Core Insights - Cycurion, Inc. is a leader in high-margin cybersecurity solutions and recently attended the NACCHO Annual Conference, focusing on improving healthcare through technology [1][2] Company Overview - Cycurion unveiled its Cyber Shield solution, aimed at providing advanced cybersecurity protection and business continuity for public health organizations [2][4] - The company is collaborating with NACCHO to develop a nationwide rollout plan for the Cyber Shield, which includes educational components to enhance member understanding and implementation [2][3] Market Impact - The NACCHO conference generated over 250 leads for Cycurion's Cyber Shield services, indicating strong market interest and potential for growth [3] - Revenue projections for Cyber Shield services over the next three years are as follows: Year 1: $1,809,000, Year 2: $4,338,000, Year 3: $13,896,000, showcasing significant anticipated growth [8] Strategic Positioning - Cycurion's partnership with NACCHO positions it as a trusted leader in public health cybersecurity, with a strong presence at the conference through various engagements [3][4] - The company emphasizes its commitment to public health security and aims to address urgent cybersecurity challenges faced by public health organizations [5][4]