Trouble viewing this email?  View in web browser ›

The Wall Street Journal ProThe Wall Street Journal Pro

CybersecurityCybersecurity

Sponsored by NetscoutNetscout

Cyber Safety Review Board Under Senate Microscope

By Kim S. Nash

 

Hello. Remember the Cyber Safety Review Board? 

In February 2022, the Biden administration created a panel of senior officials and private-sector experts to investigate major national cybersecurity failures. It is loosely modeled on the National Transportation Safety Board, which investigates plane crashes and train derailments. 

The cyber board's first probe, in July 2022, was of the widespread Log4j hack. A year later, it published its second investigation, on the Lapsus$ hacker group. 

Now, lawmakers are wondering how the board is doing. The U.S. Senate's committee on homeland security and governmental affairs plans a hearing Wednesday, on the "expectations, outcomes and enduring questions" related to the board. Tune in here at 10:00 a.m. ET. 

More news:

  • Southwest wins cyber insurance appeal
  • OpenAI works with Defense Department on cyber tools
  • Shein faces new IPO hitch: China’s cybersecurity police
  • Auto executives worry about supply-chain hacks
  • Material impact at First American Financial
  • Palo Alto Networks CEO takes the corporate jet to avoid cyber threats
 
Share this email with a friend.
Forward ›
Forwarded this email by a friend?
Sign Up Here ›
 

‏‏‎ ‎

CONTENT FROM: Netscout

Shifts in DDoS Tactics Necessitate Automated DDoS Protection

The latest DDoS techniques are changing as threat actors continue to find new ways to target networks. With these new strategies comes new protection methods that harness the power of advanced analysis and mitigation capabilities to streamline the resolution of DDoS attacks. Safeguard your network with the latest security measures.

Learn More

 

More Cyber News

PHOTO: FREDERIC J. BROWN/AGENCE FRANCE-PRESSE/GETTY IMAGES

Southwest Airlines can claim losses under a cyber insurance policy for damages from technology outages in 2016, a federal appeals court in Texas ruled Tuesday. The airline sued Liberty Insurance Underwriters in 2019 after the insurer denied the claim, saying about $35 million of the $77 million in costs that Southwest claimed were “discretionary,” related to marketing and customer loyalty, and therefore excluded. 

  • A lower court in 2022 ruled in favor of Liberty. Southwest appealed. The outages, which Southwest said resulted from a router failure and not a hack, disrupted 2,300 flights over four days.

Hezbollah, a militant group supported by Iran, has launched cyberattacks against Israel in the ongoing conflict with Hamas, said Dorit Dor, chief technology officer of cybersecurity company Check Point Software Technologies. Check Point, based in Tel Aviv, is monitoring online activity and critical infrastructure in the region. (Bloomberg) 

OpenAI is collaborating with the U.S. Department of Defense on cybersecurity tools, said Anna Makanju, the company's vice president of global affairs, speaking at the World Economic Forum in Davos. OpenAI, maker of the ChatGPT generative AI bot, bans the use of its technology to build weapons or to destroy people or property. (Bloomberg) 

China’s internet regulator is scrutinizing Shein’s data handling and sharing practices for potential national security risks as the fast-fashion company seeks Beijing’s blessing for its planned initial public offering. The Cyberspace Administration of China is looking into the ways Shein handles information on its staff, suppliers and partners in China, as well as whether the company can effectively protect such data from leaking to overseas parties, people familiar with the matter said. (WSJ)

64%

C-suite leaders in the auto sector who said the automotive supply chain is vulnerable to cyberattack, according to a poll of 200 such executives by cyber company Kaspersky Lab. Infotainment and connectivity tech, along with internal systems such as transmissions and electrical components, bring the biggest risks, they said.

 

Disclosures

PHOTO: DAVID GRAY/REUTERS

Title insurance company First American Financial said it expects a material financial impact in its most recent quarter from a December cyberattack that disrupted operations. Some fourth-quarter 2023 transactions were delayed and some business was lost to competitors, the company said Friday in an 8-K filing to the Securities and Exchange Commission. 

 

Cyber Business

PHOTO: DAVID PAUL MORRIS/BLOOMBERG

Perks: Palo Alto Networks began subsidizing personal flights for CEO Nikesh Arora in the year ended July 2022, spending about $650,000. That total rose to $1.8 million in its most recent fiscal year, plus a further $286,000 to cover his tax bill for the perk, the cybersecurity company said in a regulatory filing.

  • Palo Alto Networks said in filings that its board requires Arora to fly corporate in response to a security consultant’s report. “There was a bona fide, business-related security concern for Mr. Arora and credible threat actors existed with both the willingness and resources necessary for conducting an attack on Mr. Arora,” it said. (WSJ)

Acquired: Application-development security company Snyk said Tuesday it bought startup Helios. The companies didn't disclose terms of the deal. 

 

Careers & Talent

PHOTO: BLACKHAWK NETWORK

Selim Aissi joined health-savings account administrator HealthEquity as chief security officer. Aissi was most recently chief information security officer at payments company Blackhawk Network Holdings for nearly two years, ending in October 2023. He has also held senior cybersecurity positions at Ellie Mae, Visa and Intel. 

 
Advertisement
 

About Us

The WSJ Pro Cybersecurity team is Deputy Editor Kim S. Nash (on X @knash99), reporter James Rundle and reporter Catherine Stupp (@catstupp). Follow us on X @WSJCyber. Reach the team by replying to any newsletter you receive or by emailing Kim at kim.nash@wsj.com.

 
Desktop, tablet and mobile. Desktop, tablet and mobile.
Access WSJ‌.com and our mobile apps. Subscribe
Apple app store icon. Google app store icon.
Unsubscribe   |    Newsletters & Alerts   |    Contact Us   |    Privacy Notice   |    Cookie Notice
Dow Jones & Company, Inc. 4300 U.S. Ro‌ute 1 No‌rth Monm‌outh Junc‌tion, N‌J 088‌52
You are currently subscribed as [email address suppressed]. For further assistance, please contact Customer Service at pro‌newsletter@dowjones.com or 1-87‌7-975-6246.
Copyright 2024 Dow Jones & Company, Inc.   |   All Rights Reserved.
Unsubscribe