Most K-12 Schools Have Cyber Insurance, But Still Lack Basic Security Measures:  MS-ISAC Report 

In our opinion, the report’s authors are diplomatic in their summary: “The K-12 community displayed an overall average maturity score of 3.55 on the 2021 NCSR’s 1 through 7 maturity scale. Results from the Nationwide Cybersecurity Review (NCSR) risk-based assessment have shown the K-12 sector is improving in its cybersecurity capabilities over time, though the … Read more

Inadequate Security + No Insurance + No Ransomware Payment = Disaster for Australian Health Insurer 

Australian health insurance provider Medibank Private Ltd. refused to pay ransom. Now hackers are releasing records from some of the app. 10 million customers whose data was compromised. “Following through on a threat, the hackers began publishing the most private medical details of some of Medibank’s customers, including terminated pregnancies, treatment for drug and alcohol … Read more

BOXX Buys Templarbit, Latest Example of Cyber Insurers Fusing Risk Intel/Protection & Coverage

Financial terms of the transaction were not released. Boxx appears to have wanted the target’s cybersecurity talent as well as the company & its IP. Templarbits CEO/co-founder will head up Boxx’s new R&D effort. “…BOXX has announced the acquisition of Templarbit and the creation of a new R&D Division to deliver effective        … Read more

Time for a “Parametric Approach” to Cyber Insurance? 

The growing legal and technical complexities of cyber insurance policies might be addressed by a simpler process. “’In this respect, we see an interesting trend that we definitely follow and promote, [and that is] a parametric approach. Since many of the cyber events are really black and white, I think a clear claim settlement process … Read more

Growing Reliance on Stand-Alone Cyber Insurance Policies Questioned by New Book 

Josephine Wolff offers the critique in her well-researched book, Cyberinsurance Policy: Rethinking Risk in an Age of Ransomware, Computer Fraud, Data Breaches, and Cyberattacks (MIT Press, 2022). Are insurers and insurtech companies placing too much emphasis on narrowly-defined cyber coverage, security controls and hacking data and not enough on holistic underwriting? “In trying to treat … Read more

×