Securities Exchange Commission (SEC)

Coinbase Says Breach May Cost $400 Million, Issues $20 Million Bounty
Jeffrey Burt | | Coinbase, cryptocurrency asset theft, Data breach, Securities Exchange Commission (SEC)
The major data breach of cryptocurrency exchange Coinbase could cost the company as much as $400 million, it told the SEC. However, rather than pay the $20 million extortion demand, Coinbase issued ...
Security Boulevard

SEC Fines Four Tech Firms for Downplaying SolarWinds Impacts
Jeffrey Burt | | Avaya, Check Point, mimecast, Securities Exchange Commission (SEC), SolarWinds breach, Unisys
The SEC fined Unisys, Avaya, Check Point, and Mimecast millions of dollars for disclosures in the wake of the high-profile SolarWinds data breach that intentionally mislead investors and downplayed the impact the ...
Security Boulevard

Biden Will Veto Efforts to Spike SEC Breach Disclosure Rule
President Biden is warning Congressional Republicans that he will veto any attempts to overturn the Securities and Exchange Commission’s (SEC) new requirement for public companies disclosing cybersecurity incidents. In a brief policy ...
Security Boulevard

23andMe Finally Admits: 6.9 MILLION Users’ PII Breached
Richi Jennings | | 23andMe, Compromised Credential, compromised credentials, compromised credentials monitoring, Credential Compromise, credential replay attacks, credential reuse, credential stuffing, credential stuffing attack, Credential Stuffing Attacks, DEVOPS, DevSecOps, DNA, GDPR, iam, password reuse, pii, PII Leakage, SB Blogwatch, SEC, Securities and Exchange Commission, Securities Exchange Commission (SEC), U.S. Securities and Exchange Commission
Not nice: Hacker claimed 20 million, 23andMe said it was only 14,000—but now admits to 6.9 million ...
Security Boulevard

SEC, FTC Issue Warning on Log4j Vulnerabilities
Nathan Eddy | | Apache Log4j, Apache Log4j (CVE-2021-44228), Federal Trade Commission (FTC), Securities Exchange Commission (SEC)
The U.S. Federal Trade Commission (FTC) and the Securities and Exchange Commission (SEC) are sending warnings to companies that don’t address the risk from the Log4j vulnerabilities. The FTC in particular has ...
Security Boulevard

SEC Releases InfoSec “Roadmap” for GLBA Entities
Nur Lalji | | Data Security, Gramm-Leach-Bliley Act (GLBA), Incident Response, Securities Exchange Commission (SEC)
The Securities and Exchange Commission’s Office of Compliance Inspections and Examinations (OCIE) has released a new report, entitled Cybersecurity and Resiliency Observations, which stands as their most detailed and comprehensive information security ...

Is Your Token a Security? The SEC Wants to Help You Figure That Out.
The SEC has issued a “Framework for ‘Investment Contract’ Analysis of Digital Assets” (the ‘Framework’) that provides the Division of Corporation Finance’s guidance on how to evaluate whether digital assets are “investment ...