US healthcare company suffers cyberattack affecting 16,000 patients @ UnityPoint Health

In April 2018, the company disclosed the data breach affecting up to 16,000 people. The breach was caused by hackers obtaining unauthorised access to several employees’ email accounts after successful phishing attacks, these accounts were believed to ...

Regulator reporting tool hacked possibly for insider trading purposes @ U.S. Securities and Exchange Commission

In September 2017, the top US markets regulator disclosed that hackers had infiltrated its database that stores company financial filings which potentially allowed hackers to trade on inside information. The hackers exploited a software vulnerability...

Personal information of customers exposed at US retailer @ Saks Fifth Avenue

In March 2017, news broke that the personal information of tens of thousands of customers was available in plain text via a specific link on the company's website. The information was visible on a page where customers could join a product waiting list...

Personal information of 198 million voters exposed by contractor @ Deep Root Analytics and Republican National Committee

In 2016, the Republican National Committee hired the data analytics firm to gather political information about U.S. voters. In June 2017, a security researcher discovered that the firm held data of roughly 198 million American citizens on an Amazo...

Files deleted, email system hacked and website traffic redirected by leaving employee @ Navarro Security Group Inc.

During January 2013 an ex-employee performed malicious actions on his former company's systems (despite them being a computer security company). He was able to gain access because before he left the company he downloaded the remote access software...

Let us do the analysis so you can make the decisions

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as bad actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...