Cybersecurity
Search documents
Vanta Valuation Jumps to $4.15 Billion
Bloomberg Technology· 2025-07-23 19:31
So the 150 million, what does it help you do. It helps us continue to help our customers build and demonstrate trust across the Internet. It demonstrates trust across the Internet.I mean, immediately makes me think of today's news flow with worrying about Microsoft in the hack there. I mean, is this something that you're worrying about more broadly that security isn't strong enough, particularly when it comes to access to third parties. Yeah, I think what we've seen is security online.It's an increasing con ...
US Nuclear Body Among Those Impacted By SharePoint Breech
Bloomberg Technology· 2025-07-23 18:13
Cybersecurity Threat Landscape - Cyberattacks target sign-in credentials, usernames, and passwords, potentially enabling hackers to access multiple systems [1] - A nuclear agency responsible for nuclear weapon development and disposal was hacked, raising concerns about national security [2] - While sensitive or classified information was reportedly not taken from the nuclear agency, the risk of hackers branching out remains a concern [3] - Thousands of servers globally, vulnerable due to a common Microsoft software (SharePoint) vulnerability, are at risk [5] Attribution and Response - Microsoft identified at least two Chinese state-backed hacking groups as being behind some of the attacks [5] - Microsoft rolled out patches to address the vulnerability, but security researchers suggest that patching alone is insufficient after a breach [7][8] Impact and Scope - The full scope of the breaches is still under investigation, and Microsoft has not disclosed the number of customers affected [6] - The attacks are not limited to the US, with a Dutch cyber company identifying the activity as international [4]
Clorox Claims Cognizant Handed Credentials To Hacker, Ignored Security Protocols
Benzinga· 2025-07-23 15:56
Core Viewpoint - Clorox Company has filed a lawsuit against Cognizant Technology Solutions for gross negligence and breach of trust following a cyberattack that resulted in nearly $380 million in damages due to Cognizant's failure to adhere to cybersecurity protocols [1][5][6]. Group 1: Incident Overview - Clorox relied on Cognizant for operating its employee service desk, which included critical tasks like password recovery and credential resets for over a decade [2]. - On August 11, 2023, a cybercriminal gained direct access to Clorox's network credentials through the Cognizant-run service desk without proper authentication checks, which occurred multiple times [4]. - The cyberattack severely disrupted Clorox's corporate network and supply chain, impairing its ability to fulfill orders [5]. Group 2: Allegations Against Cognizant - Clorox alleges that Cognizant ignored established security procedures designed to prevent such attacks, leading to significant damages [5][6]. - The lawsuit claims that Cognizant's mishandling of credential requests was exacerbated by a poor incident response and disaster recovery effort [5]. - Despite claiming cybersecurity expertise and training for its staff, Cognizant's actions were described by Clorox as a "devastating lie," suggesting that the breach could have been avoided with proper adherence to protocols [6]. Group 3: Financial Impact - Clorox reported over $49 million in direct recovery costs and hundreds of millions more in business interruption losses due to the cyberattack [6]. - In contrast, Cognizant reported $20 billion in revenue for 2024, showing no immediate negative impact on its brand or financial performance [7].
X @Bloomberg
Bloomberg· 2025-07-23 15:01
Cybersecurity Breach - Waratah, a Canadian hedge fund, is investigating a cybersecurity breach [1] - The breach may have exposed sensitive client information [1]
Rapid7 Labs Security Researchers to Speak at Black Hat USA 2025 and DEF CON 33
Globenewswire· 2025-07-23 13:00
Core Insights - Rapid7, Inc. announced its participation in Black Hat USA 2025 and DEF CON 33, showcasing a lineup of speakers from Rapid7 Labs who will present groundbreaking research on emerging cybersecurity threats and vulnerabilities [1][10]. Company Overview - Rapid7 Labs is recognized for its community-driven approach to cybersecurity, providing open-source tools and curated intelligence to help teams effectively identify, assess, and mitigate threats [2]. - The company has introduced the Intelligence Hub, which consolidates global threat intelligence curated by Rapid7 Labs researchers [2]. Event Details - Black Hat USA 2025 will occur from August 2 to August 7, while DEF CON 33 will take place from August 7 to August 10, focusing on cutting-edge research and community collaboration in information security [10]. - Rapid7 will feature sessions that leverage 25 years of security program expertise to address pressing cybersecurity challenges [3]. Session Highlights - **Metasploit's Latest Attack Capability**: This session will cover new capabilities in Metasploit, including SMB-to-LDAP relaying and new process injection techniques, with live demonstrations [4]. - **Akheron Proxy**: A session on security testing methods using Akheron proxy, which facilitates real-time communication between microprocessors on hardware circuit boards [5]. - **Weaponization of Cellular-Based IoT Technology**: This briefing will analyze how adversaries exploit IoT devices with cellular technology, including live demonstrations and mitigation techniques [6]. - **Exploiting Synology NAS**: A presentation revealing a critical vulnerability in Synology NAS devices, allowing unauthenticated attackers to achieve root-level remote code execution [7][8]. Community Engagement - Rapid7 emphasizes the importance of face-to-face interactions at these conferences for fostering collaboration and sharing actionable insights within the cybersecurity community [9].
Cycurion Shines as Diamond Affiliate Partner at NACCHO Annual Conference, Showcasing High-Margin Cyber Shield Solution to Address Public Health Cybersecurity Challenges
Globenewswire· 2025-07-23 12:00
Core Insights - Cycurion, Inc. is a leader in high-margin cybersecurity solutions and recently attended the NACCHO Annual Conference, focusing on improving healthcare through technology [1][2] Company Overview - Cycurion unveiled its Cyber Shield solution, aimed at providing advanced cybersecurity protection and business continuity for public health organizations [2][4] - The company is collaborating with NACCHO to develop a nationwide rollout plan for the Cyber Shield, which includes educational components to enhance member understanding and implementation [2][3] Market Impact - The NACCHO conference generated over 250 leads for Cycurion's Cyber Shield services, indicating strong market interest and potential for growth [3] - Revenue projections for Cyber Shield services over the next three years are as follows: Year 1: $1,809,000, Year 2: $4,338,000, Year 3: $13,896,000, showcasing significant anticipated growth [8] Strategic Positioning - Cycurion's partnership with NACCHO positions it as a trusted leader in public health cybersecurity, with a strong presence at the conference through various engagements [3][4] - The company emphasizes its commitment to public health security and aims to address urgent cybersecurity challenges faced by public health organizations [5][4]
Cyngn Engages Drata to Pursue SOC 2 and ISO 27001 Compliance as Part of Broader Cybersecurity Program
Prnewswire· 2025-07-23 11:05
Core Insights - Cyngn Inc. has partnered with Drata to pursue SOC 2 Type II and ISO 27001 certifications, reinforcing its commitment to data security and customer protection [1][3] - The initiative is part of a broader cybersecurity program that includes a bug bounty program to identify and resolve vulnerabilities [3][4] - Prescient Security will act as the independent auditor for the certifications, and the company has engaged specialized legal counsel in data privacy and cybersecurity [4] Company Overview - Cyngn develops autonomous vehicle technology aimed at addressing challenges in industrial organizations, such as labor shortages and safety incidents [5] - The company's DriveMod technology allows customers to implement self-driving technology without significant upfront costs or infrastructure changes [6] - DriveMod products include the Tugger, which can haul up to 12,000 lbs with a payback period of less than 2 years, and the Forklift, designed for non-standard pallets [7]
X @Bloomberg
Bloomberg· 2025-07-23 00:15
Security Breach - US agency responsible for maintaining and designing the nation's nuclear weapons was breached [1] - The breach was due to a hack of Microsoft's SharePoint document management software [1]
5 ETFs Making Waves Since Their 2025 Launch
ZACKS· 2025-07-22 15:00
Core Insights - The global ETF market is experiencing significant growth, with a record number of new fund launches in the first half of 2025, totaling 1,308 new ETFs compared to 878 in the same period last year, resulting in a net increase of 1,042 ETFs after accounting for 266 closures [1][2] - The total global ETF assets under management (AUM) reached $17 trillion as of June 2025, surpassing the previous high of $16.3 trillion set in May, with year-to-date ETF inflows hitting $897.7 billion, marking an all-time high [2] ETF Launches and Trends - BlackRock's iShares led the new ETF launches with 42, followed by Global X with 36 and First Trust with 27, among a total of 326 different providers introducing new products [2] - Key trends driving the growth in ETF launches include: - Actively Managed ETFs gaining popularity as investors seek flexible strategies in volatile markets [3] - Thematic Funds focusing on niche areas like artificial intelligence and clean energy attracting significant inflows [4] - Innovative Structures offering exposure to digital assets and derivatives-based strategies expanding market breadth [4] - Factor-Based Strategies focusing on value, momentum, quality, size, and minimum volatility becoming increasingly popular [4] - Mutual Fund to ETF conversions as asset managers launch ETF versions of traditional mutual funds to meet investor demand [5] Notable ETF Performances - The JPMorgan Mortgage-Backed Securities ETF (JMTG) has accumulated $5.8 billion in AUM since its launch on June 27, 2025, primarily investing in mortgage-backed securities with a broad basket of 2,427 securities [6] - The JPMorgan Active High Yield ETF (JPHY) has garnered over $2 billion in AUM since its debut on June 24, 2025, focusing on below investment-grade debt securities with a yield to maturity of 6.35% [7] - The 0-3 Month Treasury Bill ETF (VBIL) has attracted $2.1 billion in AUM since its launch on February 7, 2025, tracking a market-weighted Treasury index with an ultra-short-term maturity [8] - The iShares High Yield Muni Active ETF (HIMU) has amassed $1.8 billion in AUM since its launch on February 7, 2025, aiming to provide income exempt from federal taxes [9][10] - The Simplify Government Money Market ETF (SBIL) has gathered $1.2 billion in AUM since its debut in July 2025, focusing on liquidity and principal stability [11]