Black Kite Blog
Cyber Nightmares of 2019: the Breach, the Fine and the Reputation
Cyber nightmares of 2019: the 10 biggest breaches, fines, and reputational hits that kept C-suites up at night, and the patterns that still apply today.
Jan 20, 2020Top Ten Data Breaches Caused by a Third Party in the Last Decade
We picked the top 10 for the countdown based on the number of records exposed, their impact on certain industries, their coverage on media, etc.
Jan 14, 2020Major Third-party Data Breaches Revealed in December 2019
We regularly update the list of major third-party (aka supply-chain) attacks and breaches that are revealed in December 2019.
Jan 10, 2020What Exactly Does the Term Risk Mean to You?
Without fail the word “risk” came up numerous times and in multiple contexts. Inherent risk, residual risk, cyber security and third party risk.
Jan 7, 2020Pentest Vs. Security Rating Services
The Security Rating services allow you to measure your organization’s data-based cybersecurity performance.
Dec 23, 2019Another Bucket Leak: Third-party Pr Firm Serving Top-name Brands Exposed Customers’ Data
Another S3 bucket leak: a third-party PR firm exposed sensitive customer data for top-name brands. Inside the incident and its controls.
Dec 16, 2019Number of Possible Phishing Domain Rises Towards the End of 2018
Phishing domains spike as 2018 closes: cybercriminals are launching fraudulent e-commerce sites for the holiday shopping season. From Black Kite.
Dec 9, 2019Major Third-party Data Breaches Revealed in November 2019
We regularly update the list of major third-party (aka supply-chain) attacks and breaches that are revealed in November 2019.
Dec 4, 2019The Intertwined Relationship Between Credit Ratings and Cyber Risk Scores After the Downgrade of Equifax’s Rating by Moody’s
The intertwined relationship between credit ratings and cyber risk after Moody's downgraded Equifax. Black Kite on the precedent and what it signals next.
Nov 26, 2019Maturing a Third-party Risk Management Program Using the Open Fair™ Model to Improve Due Diligence and Action Plans
Maturing a third-party risk program with the Open FAIR™ model: how quantification reshapes due diligence and turns action plans into dollar terms.
Nov 20, 2019Vendorinsight and Black Kite Announce Partnership to Provide Advanced Cybersecurity Monitoring Services
VendorInsight® and Black Kite® announce an OEM partnership combining vendor management with continuous cyber risk monitoring for joint customers.
Nov 15, 2019How to Integrate Black Kite’s Open Fair™ Analysis Into a Third-party Risk Management (TPRM) Program
If you’re not familiar with the Open FAIR™ model, read Bob Maley's previous blog post “Using the Open FAIR™ Model to Quantify Third-Party Cyber Risk”.
Nov 14, 2019