Urgent.News

What's breaking now, across thousands of outlets.

Tech

Goldman-linked EY breach highlights new era of undetectable data theft

Sensitive corporate data can be stolen through everyday workplace software without setting off traditional cyber defences, Darktrace has warned, after a breach at the Big Four giant exposed information linked to Goldman Sachs and Man Group. Nathaniel Jones, senior vice president of global threat intelligence at Darktrace, told City AM attackers were increasingly able to [...]

Goldman-linked EY breach highlights new era of undetectable data theft

A recent breach at the Big Four accounting firm, EY, has exposed sensitive corporate data, highlighting a new era of undetectable data theft, according to Darktrace. Senior Vice President Nathaniel Jones warned that attackers can now hide among legitimate activity on everyday workplace software such as document-sharing platforms.

The breach occurred when an unauthorized third party accessed EY's platform between March 28 and April 12, downloading documents containing names, addresses, email addresses, tax identification numbers, and financial information linked to multiple EY clients. EY did not detect the unusual activity until April 23, 11 days after the last unauthorized access.

The company stated that the breach did not impact its broader enterprise systems or pose a threat to ongoing business. Traditional cyber defenses are often ineffective against such attacks as they focus on detecting malware or known malicious infrastructure. Jones advises that the bigger vulnerability lies in the data inside third-party and cloud software.

Once sensitive information is uploaded to a supplier's platform, it can quickly move beyond the controls and monitoring that protect it inside a company. This makes seemingly unremarkable software increasingly attractive to hackers. Goldman Sachs confirmed that its systems were not compromised and is working with EY to support any impacted clients. Man Group also stated that the incident was independent of its systems, which were not compromised.

Written by urgent.news from City AM's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at cityam.com →

More in Tech

Your plan says (known after apply). OpenTofu 1.13 lets you talk back

Every person who has reviewed an infrastructure plan knows the feeling. You run tofu plan on a Friday afternoon. The output scrolls past.

  • New features include assumenotnull, assumestringprefix, assumeequal functions
  • Built-in linting, symbol libraries, and Windows on ARM64 support added

Brunch Gem: Isolated Development Environments for Git Branches and Worktrees

Switching Git branches changes your code instantly. It usually doesn't change your development environment. You may switch from main to a feature branch with a different database schema, different…

  • Brunch creates isolated development environments for each Git branch and worktree
  • Users can run multiple worktrees, each with its own environment like Docker Compose project
  • Switching branches with Git commands updates the corresponding environment instantly

How UI/UX Designers Can Build Scalable Income With Design Products

How UI/UX Designers Can Build Scalable Income With Design Products If you're a UI/UX designer, there's a good chance your income is still closely tied to one thing: How many projects can you complete?

  • UI/UX designers can create reusable design products for scalable income.
  • Website templates and UI kits are examples of design products.
  • High-quality, coherent systems cater to specific customer needs.

More from Wednesday 7 October →