A Tale of Two Disclosures: SEC Cyber Filings from MGM and Caesars After Their Recent Hacks

We’ve written extensively about the SEC regulations requiring public companies to disclose material cyber events (see full regs and legal analysis of it here.) Analysis of the legal and business ramifications of the disclosure regime have raised a number of issues, including potential conflicts between the cyber and D&O or other policies of insureds hit … Read more

Potential Insurance Conflicts Exposed by New SEC Cybersecurity Reporting Rules

We’ve reported extensively on the new SEC rules requiring disclosure of material cyber events by US public companies (see the full reg and legal analysis of it and its implications here.) The new regulatory regime is just starting. A couple recent examples are the 8K disclosures file by Caesars, relatively detailed and with what we … Read more

The Caesar’s Attack as Reported in a Public Disclosure

We’ve told you about the new SEC rules requiring disclosure by public companies of material cyber attacks within four business days. The rules are still being phased in, but Caesars Entertainment appeared to be proactive after its recent social-engineering breach that disclosed the driver’s license and/or social security numbers of loyalty program members. The attack … Read more

Are Ransomware Gangs Trustworthy?

Cyber Insurance News has wondered how often ransomware gangs — groups of criminals often supported by hostile foreign powers — can be trusted. We asked Jennifer Coughlin of Mullen Coughlin, “a law firm uniquely dedicated exclusively to representing organizations facing data privacy events, information security incidents, and the need to address these risks before a … Read more

Gap Opening Between D&O and Cyber Insurance

“’There’s been a hole that’s opening up between cyber and D&O policies, and this will widen the gap and require creative work by brokers to close, (Arturo Perez-Reyes, senior vice president and cyber strategist at San Francisco-based Newfront Insurance) said.” The causes include the recent SEC cyber regulations, about which we’ve written extensively. The required … Read more

×