The likely effects of corporate cyber-attack disclosure

Companies may see more network vulnerability admissions in the coming months as a result of the SEC’s mandated disclosure rules

In October 2011, the Securities and Exchange Commission (SEC) requested for the first time that public companies disclose cyber-attacks against them. Today, Bloomberg reported on the kinds of disclosures companies may soon begin to see as a result of the SEC’s guidance, and the risks that come along with them.

Here’s a summary of the key points:

  • More than 20 percent of Fortune 500 companies are currently experiencing or have recently dealt with serious breaches, according to security firm Mandiant Corp.
  • In the past decade, China-based cyber spies have attacked the networks of more than 2,000 companies, government agencies, research universities and Internet service providers, according to former U.S. counterintelligence chief Joel Brenner
  • Before the SEC’s guidance, companies rarely admitted to such attacks. One exception was Google, which owned up to a cyber-burglary aimed at its source code in 2010.
  • The guidance aims to provide important information to investors, for example, that hackers could gain control of computerized release valves that control oil pipelines, something that could cost many lives should it actually occur
  • Critics, however, say that more detailed reporting of cyber-security risks by public companies could provide too much information to hackers, and actually help them better plan their attacks

In the coming months, as public companies file their annual performance reports, Bloomberg predicts investors can expect to see at least a few new admissions of corporate networks being hacked.

Comments

InsideScoop Daily eNewsletter

InsideScoop delivers the latest-breaking news affecting in-house counsel. Get the latest business trends, current corporate litigation, labor developments, technology initiatives and more — FREE. Sign up now!

You have been subscribed! You will receive a confirmation email soon.

See the entire list of InsideCounsel eNewsletters.

Resource Library


Reduce eDiscovery Costs and Risks through Email Disposition

Read this white paper to learn best practices on determining email retention periods with real...

Prepare for the Eventuality of eDiscovery Now and Reap the...

This report presents an overview of eDiscovery implementation challenges organizations may face as well as...

The Fastest and Most Cost-Effective Document Review Available!

Recommind's Predictive Coding is the market's only solution that allows clients the option of reviewing...

Bring the Benefits of Decision Tree Analysis to Your Everyday...

In this on-demand webinar, learn how to counter the challenges of litigation with predictive analytics...

13 Things to do Now to Reduce Risk and Avoid...

We have developed best practices for lowering your e-Discovery costs, shortening the length of your...

7 Simple Strategies for Improving Legal Fee Budgeting Certainty

Understanding the legal fee budgeting paradigm and following seven simple strategies will help you control...

Complimentary White Paper: Best Practices for Meeting Critical eDiscovery Challenges

Packed with practical advice, this white paper discusses best practices for meeting eDiscovery challenges across...

Complimentary White Paper "Key Considerations for Collection Methodologies and Resources"

This white paper addresses the need for companies to reevaluate their current collection policies in...

Moving Matters In-House: How Technology Enables Legal In-Sourcing

Strategically shifting more matters to in-house counsel has proven to be an effective strategy to...

5 Ways to Promote Responsible Content Sharing

Find out five ways that organizations can promote responsible sharing of content among employees by...

View All »

Advertisement. Closing in 15 seconds.