Cyber Insurers Try to Plan for “Catastrophic Events:” WSJ

“(T)he biggest risk hasn’t yet materialized: a cyberattack against a company or information services system so important to an economy, or to society as a whole, that it reaches systemic levels. One so big, perhaps, it might take down carriers. ‘I think it’s important we stress that the insurance industry has not had a catastrophic … Read more

Got an Opinion on Government Financial Backing for the Cyber Insurance Industry? You’ve Still Got Time to Weigh In

The new deadline to comment on the issue is December 14th. “Pursuant to a recommendation from the Government Accountability Office, under direction from Congress to investigate the question, the agencies are seeking answers on ‘the extent to which risks to critical infrastructure from catastrophic cyber incidents and potential financial exposures warrant a federal insurance response,’ … Read more

Most K-12 Schools Have Cyber Insurance, But Still Lack Basic Security Measures:  MS-ISAC Report 

In our opinion, the report’s authors are diplomatic in their summary: “The K-12 community displayed an overall average maturity score of 3.55 on the 2021 NCSR’s 1 through 7 maturity scale. Results from the Nationwide Cybersecurity Review (NCSR) risk-based assessment have shown the K-12 sector is improving in its cybersecurity capabilities over time, though the … Read more

“Fraudulent Instruction” Attacks Surge: Beazley 

We’ve seen such attacks. They’re tricky, often made possible by poor cyber hygiene, and require attention to detail by employees as a final defense (“Boss, are we really supposed to send this wire transfer to a bank in China?”) As Beazley defines it: “Fraudulent Instruction is the transfer of funds by an employee, outside of … Read more

Creepy Twist from Hackers of Australian Insurance Company Medibank

“The group threatened to release the data of Medibank’s ‘1k most [prominent] media persons’ which includes ‘[those with the] most [social media] followers, politicians, actors, bloggers, LGBT activists [and] drug addicted people’ as well as people with ‘very interesting diagnoses.’” Source: Medibank is latest Australian company to suffer cyber security incident | Cyber Security Hub