Learn more about how we can help your business prevent attacks like this
Contact Us: https://hubs.ly/Q02JyH5Q0
Pentest ROI Calculator Download: https://hubs.ly/Q02wBB5d0
SEC Charges Four Companies
The SEC charged four companies—Unisys Corp., Avaya Holdings Corp., Check Point Software Technologies Ltd, and Mimecast Limited—for making misleading cybersecurity disclosures. Unisys was also cited for controls violations. The companies underplayed the impact of cybersecurity breaches related to the SolarWinds Orion hack, misleading shareholders and the public. Penalties range from $990,000 to $4 million. The SEC stressed the importance of transparency in reporting cyber risks and the consequences of downplaying incidents. Each company cooperated with the investigation and agreed to pay penalties without admitting wrongdoing.
More Reading: https://www.sec.gov/newsroom/press-re...
New MacOS Vulnerability Discovered
Microsoft Threat Intelligence discovered a vulnerability in macOS called "HM Surf," which allows attackers to bypass Apple’s Transparency, Consent, and Control (TCC) technology. This flaw could enable unauthorized access to protected data, such as browsing history, camera, microphone, and location information. The issue, identified as CVE-2024-44133, was reported to Apple, which issued a fix in September 2024. Microsoft urges users to apply security updates and continues to monitor potential exploitation of this vulnerability by malicious actors.
More Reading: https://www.microsoft.com/en-us/secur...
00:00 Introduction
00:26 SEC Charges Four Companies With Misleading Cyber Disclosures
06:33 New macOS Vulnerability HM Surf
14:03 Outro