Data Security Posture & DLP

Almost every company knows it has "secret data" — customer lists, card numbers, secret recipes, source code. But ask where exactly it lives and who can get to it, and the answer is usually silence. That's because the data is scattered everywhere: a cloud bucket everyone forgot about, copies in someone's personal Google Drive, a test database full of real data, and lately — in the ChatGPT prompt box employees paste into every day. This node is the two-layer technology that fixes this: DSPM goes out and finds and classifies the secret data in every nook and cranny, and shows who can touch it; DLP then keeps it from leaking out.

Theme index · base 100 · USD total return
News & notes moving Data Security Posture & DLP
Data Security Posture & DLP

Varonis Systems Launches Data Lifecycle Management Capability

Varonis Systems, Inc. launched Varonis Data Lifecycle Management, a new capability that automatically identifies and remediates redundant, obsolete, and trivial data across enterprise environments using its existing Data Security Platform. The launch ties data cleanup directly to sensitivity, access, and activity context, aiming to reduce storage waste, improve AI output quality, and help organizations address compliance exposures from scattered sensitive information. The DLM tool stacks on top of Varonis Atlas, the AI security platform that went generally available in March 2026, which targets discovery, posture management, and runtime protection for AI workloads. Together, Atlas and DLM broaden Varonis' role from guarding unstructured data to governing how that data is stored, used, cleaned up, and exposed across Snowflake, Claude, Cursor, and other cloud and AI partnerships. Varonis Systems' narrative projects $1.1 billion revenue and $120.7 million earnings by 2029, yielding a $50.68 fair value, an 8% upside to its current price, while the most pessimistic analysts were already modeling about US$1.0 billion of 2029 revenue.
Simply Wall St·1dRead more →
Data Security Posture & DLP

Cohesity Launches Agent Resilience to Protect and Recover AI Agent Infrastructure

Cohesity introduced Cohesity Agent Resilience, a new Cohesity Data Cloud capability that will discover, protect, and recover the infrastructure behind enterprise AI agents. The capability is available now to select customers, with general availability targeted for the end of 2026, and launches with support for Amazon Bedrock AgentCore and Amazon Bedrock Agents, while Microsoft and Google agent platforms are on the roadmap. Cohesity also outlined its vision for Autonomous Cyber Resilience, which uses agentic workflows to automate its five-step cyber resilience framework, and introduced the Cohesity AI Resilience Academy, beginning with a free, self-paced Foundations of AI Resilience with Cohesity course that Catalyst attendees will get early access to immediately after the event. The company cited new research from the fifth annual Cohesity Global Cyber Resilience Report showing that 56% of organizations said they were not well prepared to detect or contain unintended actions by AI agents and automated workflows, while 58% were not very confident in their ability to verify the integrity of AI models and related data following a cyberattack. Cohesity also said customers with Cohesity Data Cloud Enterprise Edition and Cohesity DSPM can now automate the protection of newly discovered sensitive data that is not already protected.
Business Wire·2dRead more →
Data Security Posture & DLP3impact 4

Palantir, Nvidia, Booz Allen Restrict Anthropic and OpenAI Models Over Data Protections

Palantir Technologies, Nvidia, and Booz Allen Hamilton are restricting or threatening to drop advanced AI models from Anthropic and OpenAI unless the labs provide stronger data protections, according to Reuters. Palantir has pressed Anthropic to guarantee zero data retention before making its models available through Palantir's software, while Nvidia limits Anthropic's models to less sensitive internal tasks and prefers its own Nemotron models for proprietary work, and Booz Allen has forbidden staff from running Anthropic's commercial model on cybersecurity projects touching proprietary data. The pushback intensified after Anthropic introduced a 30-day data retention policy in June tied to the rollout of its Fable 5 model, saying it needed usage logs to detect sophisticated attacks that unfold across multiple sessions, though the company said it would not use the retained data to train its models. Anthropic responded by announcing Enterprise Frontier Safeguards, which lets enterprise customers store activity data in their own cloud infrastructure, including Amazon S3, Azure Blob Storage, or Google Cloud Storage, under their own encryption keys, with automated safety monitoring but no human review by Anthropic employees; the system is rolling out in phases, with broader availability targeted for later this fall. Last week, Palantir and Nvidia unveiled a platform pairing Palantir's software with Nvidia's open Nemotron models to let organizations run AI on their own data without exposing it to outside model providers, and Nvidia shares dropped roughly 3% on Monday as AI-related stocks broadly retreated.
Reuters·4dRead more →
Data Security Posture & DLP

Socify.ai Hits 300 Clients, Accelerating Toward 10,000 by 2030

TAC InfoSec Limited's Socify.ai, an AI-powered SOC 2 compliance platform, has crossed 300 customers, with the latest 100 added in just two months, following six months for the first 100 and three months for the second 100. The company, listed on NSE as TAC, aims to reach 10,000 clients by 2030 as part of its broader goal of $100 million in annual recurring revenue. Founder and CEO Trishneet Arora highlighted the accelerating adoption, noting that each 100-customer milestone is being achieved faster than the previous one. The customer base spans AI, cybersecurity, enterprise software, and other sectors, including NETGEAR, Peloton Interactive, Globant, and several AI-first startups. Socify aims to make SOC 2 compliance accessible to thousands of businesses globally through automation and aggressive pricing.
Business Wire·11dRead more →
Data Security Posture & DLPimpact 4

Varonis surges on Proofpoint acquisition talks

Varonis Systems shares jumped 13% Wednesday afternoon following a Bloomberg report that Proofpoint, backed by private equity firm Thoma Bravo, is in talks to acquire the cybersecurity company. People familiar with the matter said a transaction could be announced in the coming weeks, though no final decision has been made and talks could still fall apart or another bidder could emerge. Before the report surfaced, Varonis had a market value of approximately $4.7 billion. Representatives for Thoma Bravo, Proofpoint and Varonis did not immediately respond to requests for comment, according to the Bloomberg report. Varonis provides cybersecurity solutions that help companies monitor and control access to sensitive information across cloud systems.
Investing.com·16dRead more →
Data Security Posture & DLP2

Akamai Technologies Launches Workforce Protector AI Security Product

Akamai Technologies announced the launch of its Workforce Protector product, which integrates AI governance tools with real-time data loss prevention for enterprise users. The company also released new security research detailing emerging AI-driven threats that target enterprise environments and exploit browser-based vulnerabilities. The twin updates highlight rising risks tied to employee use of AI tools at work and frame Akamai's response with additional controls for data access and monitoring. The launch extends Akamai's security platform, which already covers applications, APIs, and infrastructure, to the browser and desktop AI apps where employees interact with data. Investors will watch for future disclosure on Workforce Protector adoption, customer counts, or its role in security revenue, especially after the latest quarter where sales were US$1,099.68 million and net income was US$79.4 million.
Simply Wall St·34dRead more →
Data Security Posture & DLP

AvePoint Unveils Kinetic Classification for Cloud Data Protection

AvePoint introduced Kinetic Classification, a new data sensitivity and recovery solution for Microsoft 365, Google Workspace, and other business apps. The product uses AI to continuously assess data sensitivity and adjust protection policies across connected cloud services, integrating automated recovery tools aimed at improving incident response for security and data governance teams. AvePoint, with a market cap of $2.7 billion, targets enterprises standardizing on major collaboration platforms and positions Kinetic Classification as part of its broader bet on becoming an essential data governance layer as enterprises roll out AI tools.
Simply Wall St·38dRead more →
Data Security Posture & DLP

BeyondTrust Unveils First Native Pathfinder Capabilities for Every Identity at Black Hat USA 2026

BeyondTrust announced the first wave of native capabilities built on its Pathfinder platform at Black Hat USA 2026, extending privilege management to every identity that can hold or exercise privileged access. The four new capabilities—PathfinderAI & MCP Server, AI Agent Security, NHI Governance, and Workload Credentials—combine visibility, intelligence, and protection to help organizations discover, prioritize, govern, and protect privileged access across human, machine, workload, and AI identities. PathfinderAI enables natural-language investigation of identity risk, while the MCP Server allows AI agents like Microsoft Copilot and OpenAI to securely connect to BeyondTrust’s identity intelligence. AI Agent Security enforces real-time controls on what AI coworkers and autonomous agents can do on endpoints, and NHI Governance extends privileged access management to service accounts, API keys, and other non-human identities that often outnumber employees. Workload Credentials replaces static secrets with short-lived, auto-expiring credentials for CI/CD pipelines, Kubernetes services, and AI agents, eliminating the risk of leaked secrets. PathfinderAI, the MCP Server, AI Agent Security, and NHI Governance are available now through the Early Access program, with Workload Credentials early access opening soon.
GlobeNewswire·46dRead more →
Data Security Posture & DLP4

PDPC orders Ministry of Public Health and TSD to submit in-depth evidence on Mor Prom and TSD Investor Portal data leaks

The Office of the Personal Data Protection Committee, or PDPC, has ordered the Ministry of Public Health and Thailand Securities Depository Company Limited, or TSD, to submit additional information and evidence in two major personal data leak cases. The first case involves the Mor Prom system, where over 30 complaints have been filed. The second concerns the leak of TSD Investor Portal user data affecting more than 200,000 records out of approximately 5 million accounts in the system. The PDPC requires in-depth details on the causes, scope of impact, and public notification measures before considering legal action. Police Colonel Surapong Plengkam, Secretary-General of the PDPC, stated that although TSD has issued a press release and notified affected individuals, technical evidence and traceable documents must still be examined to assess whether the organization had appropriate security measures in place and whether it fulfilled its post-incident duties fully and promptly. He stressed that a data leak does not automatically mean the organization is at fault, but if deficiencies are found, the PDPC will exercise its authority, ranging from ordering corrective actions to pursuing legal proceedings.
สำนักข่าวอีไฟแนนซ์ไทย·51dRead more →
Data Security Posture & DLP27

TSD reveals additional personal data accessed in TSD Investor Portal incident

Thailand Securities Depository Company Limited, or TSD, has provided further clarification that after coordinating with the Technology Crime Investigation Division on 27 July 2026, additional personal data affected by the unauthorised access to the TSD Investor Portal system on 25 July 2026 has been identified. This includes full name, date of birth, national ID number, address, phone number, email, securities company name, securities trading account number, bank name, and bank account number. However, TSD confirms that no securities holding data or securities trading transaction data has been found to be affected. It also warns users to be cautious of fraudulent contacts, change passwords regularly, and verify that emails from TSD come only from SETContactCenter@set.or.th and contain no attached links.
Share2Trade·51dRead more →
Data Security Posture & DLP3

Varonis Q2 earnings beat estimates, revenue rises to $180 million

Varonis Systems reported second-quarter 2026 non-GAAP earnings of 4 cents per share, beating the Zacks Consensus Estimate of 1 cent. Revenues reached $180 million, up from $152.2 million a year earlier and surpassing the consensus by 1.7%. The performance was driven by continued SaaS momentum, with SaaS revenues jumping to $171.7 million from $105.9 million, while legacy term license and maintenance revenues declined as customers migrated. The company returned to non-GAAP operating profit of $3.7 million, compared with a loss of $1.9 million in the prior-year quarter, and raised its full-year revenue outlook to between $735 million and $739 million, implying 18-19% year-over-year growth.
Zacks Investment Research·51dRead more →
Data Security Posture & DLP2

Health100 Earns CARIN Code of Conduct Accreditation from DirectTrust

Health100, a CVS Health subsidiary, has earned the CARIN Code of Conduct for Consumer-Facing Applications Accreditation from DirectTrust for its mobile app. The accreditation followed a comprehensive independent third-party review that examined the app's transparency, consent, security, and other criteria to ensure trusted access and exchange of personal health information. DirectTrust President and CEO Scott Stuewe said the achievement gives health care stakeholders full confidence in exchanging private health information via an application that voluntarily sought verification. Tony Ambrozie, Senior Vice President and Chief Digital & Technology Officer at CVS Health and Health100, called the accreditation a milestone reinforcing the company's commitment to data privacy, security, and transparency.
PR Newswire·51dRead more →
Data Security Posture & DLP4

Stock Exchange of Thailand reports TSD data leak affecting 200,000 accounts, rushes to deploy AI for enterprise-wide source code scanning

Mr. Asadej Kongsiri, Director and Manager of the Stock Exchange of Thailand, issued a formal apology regarding the leak of shareholder data from Thailand Securities Depository Company Limited, or TSD, affecting approximately 200,000 individuals out of a total shareholder base of around 5 million. He confirmed that stock portfolios, back-end systems, and the wiset application remain secure. The leaked data includes full names, dates of birth, national ID numbers, addresses, phone numbers, emails, securities company names, securities trading account numbers, bank names, and bank account numbers, but does not include securities holdings, share quantities, portfolio values, or passwords. The Stock Exchange of Thailand has already closed all vulnerabilities and is deploying artificial intelligence technology to scan source code across the entire organization to enhance security. Investors are warned never to click on suspicious links. Meanwhile, cyber police are working with ThaiCERT to pursue the perpetrators across borders.
HoonSmart·52dRead more →
Data Security Posture & DLPimpact 4

ICE accesses credit card data without a warrant through a $125 million Thomson Reuters deal

U.S. Immigration and Customs Enforcement can access personal data from credit card applications without a warrant through a $125 million Department of Homeland Security contract with Thomson Reuters. An investigation by 404 Media found that when consumers open a credit card or update account information, credit card companies share names, Social Security numbers, phone numbers, addresses, and email addresses with credit bureaus, which then provide the data to Thomson Reuters for its CLEAR investigative product. ICE uses CLEAR to search this information, and the platform is integrated with a tool the agency uses to determine which neighborhoods to raid. The five-year DHS contract is worth $25 million annually, and procurement documents state that Thomson Reuters Special Services is the only contractor able to provide continuous monitoring and alert services for millions of individuals. Senator Ron Wyden called the practice an outrageous privacy violation with no opt-out for Americans.
Moneywise.com under the title·54dRead more →
Data Security Posture & DLP

Darrow Launches Privacy Radar on Microsoft Marketplace

Darrow has made its Privacy Radar solution available in the Microsoft Marketplace. Privacy, compliance, and security teams can now discover and deploy the autonomous AI agent tool, which surfaces gaps between a company's privacy posture and its actual public digital behavior, returning a severity-scored, dollar-quantified exposure report with remediation steps. The listing provides unified integration across Microsoft Azure and other Microsoft products. Darrow's legal exposure detection engine already powers a majority of U.S. trial firms, and its intelligence platform has identified over $22 billion in actionable legal risk to date.
GlobeNewswire·57dRead more →
Data Security Posture & DLP

Synology Says ISO 27001 Becomes Foundation for Cyber Resilience in the AI Era

Synology has revealed that the ISO 27001 standard is shifting from being merely a compliance certificate to a crucial foundation for enterprise risk management, building cyber resilience in an era of intensifying cyber threats. Mr. Rahat Boontanjin, Country Manager for Thailand, stated that 72 percent of organizations worldwide see cyber risk as significantly increasing, and 71 percent of risk executives expect threats to severely impact business operations. He pointed out that the rise of agentic AI is creating new forms of risk, so organizations should use ISO 27001 as a control framework across four key areas: role-based data access permissions, data accuracy governance, rollback systems for AI errors, and continuous security measure improvements. Although a 2025 OpenText survey indicates that 52 percent of global organizations plan to increase investment in backup technology, many still face real-world system recovery failures. Synology has therefore launched the ActiveProtect Appliance, a solution designed to support cyber resilience approaches and the new era of ISO 27001, integrating immutable backup, logical air-gap, and automated backup verification technologies to close recovery gaps and help Thai organizations tackle cyber threats in the AI age.
Money & Banking·57dRead more →
Data Security Posture & DLP2

US and European Banks Sharing Loan Details and Customer Data With Third Parties Without Valid Consent

New research from Jscrambler reveals that banking websites are transmitting sensitive customer information, including hashed identifiers, loan details, and financial intent signals, to third-party advertising, analytics, and personalization platforms without valid consent. The analysis of 14 financial institutions across Europe and the US found that tracking technologies fired without valid user consent on 9 sites, sending data to at least a dozen third parties including Google, Meta, TikTok, LinkedIn, Pinterest, Adobe, and Salesforce. Examples include a Spanish bank's mortgage process sending a customer's hashed email and phone number to TikTok's pixel endpoint, a Portuguese bank's account-opening flow sending email, name, age, and national tax number to Salesforce, and two other Portuguese institutions sharing full loan simulation details including a €27,000 loan with repayment terms to Google Analytics. The research also documented consent failures such as tags firing before cookie banner action, tags continuing after users rejected all, and consent choices not carrying into iframes or subdomains. Jscrambler recommends continuous runtime monitoring, enforcement controls to block unauthorized data exfiltration, and consent enforcement that extends across iframes and subdomains.
PR Newswire·58dRead more →
Data Security Posture & DLP

AvePoint adds first-to-market Copilot Studio agent backup and expands governance across Salesforce, Azure, and ServiceNow

AvePoint announced new capabilities for its Confidence Platform that extend governance, security, and backup to agentic AI, enterprise applications, and multicloud infrastructure. The platform now offers backup and recoverability for Microsoft Copilot Studio agents, a first-to-market development that lets organizations restore an agent's configuration, logic, prompts, and flows to a known-good state. Governance controls have been broadened to include discovery and observability of Salesforce Agentforce agents, alongside new policy-driven guardrails for assigning ownership and enforcing data sensitivity context. Data protection coverage has been expanded with new sources including ServiceNow, AWS S3 storage, Azure Kubernetes, and Entra External ID, while the Elements Edition for managed service providers gains multi-tenant baseline deployment, expanded Azure security assessments, and centralized application lifecycle management.
GlobeNewswire·59dRead more →
Data Security Posture & DLP

AutoRABIT Urges Salesforce Teams to Review Six Security Areas After Breach Claims

AutoRABIT issued guidance for organizations to review controls governing Salesforce data access, exposure, monitoring, governance, and recovery, following recent high-profile breach claims including those linked to the ShinyHunters group. The company recommends that Salesforce teams immediately review guest-user access, permissions and least privilege, configuration risk, secure code and custom logic, monitoring and audit visibility, and recovery readiness. AutoRABIT CISO Jason Lord stated that risk lives across access, configuration, custom code, connected apps, release activity, and recovery readiness, and that enterprise leaders need precise security controls to govern that complexity. Deputy CISO Justin Hazard added that teams should actively verify guest access, tighten permissions, review configurations, scan custom code, confirm monitoring, and test recovery readiness now, rather than waiting for a breach.
PR Newswire·59dRead more →
Data Security Posture & DLP

DATAMYTE earns ISO/IEC 27001:2022 certification for its Digital Clipboard platform

DATAMYTE has achieved ISO/IEC 27001:2022 certification for the information security management system supporting Digital Clipboard, its cloud-based, no-code manufacturing workflow platform. The certification, awarded by an independent body, validates that the ISMS meets the international standard, reinforcing the company's commitment to protecting operational, production, quality, and compliance data for over 1000 manufacturers including Ford, Boston Scientific, Northrop Grumman, CS Wind, Stellantis, Boeing, Tesla, Gillette, Borg Warner, Cabinetworks Group, Foxconn, Pepsico, and GM. CEO Joel Ronning stated that the certification provides independent confirmation of rigorous data protection standards, scaling with the platform and clients' evolving needs. Digital Clipboard enables organizations to digitize production workflows, inspections, audits, electronic work instructions, and other shop floor processes within a secure cloud environment, addressing the growing importance of cloud data security as manufacturers move away from paper-based quality processes.
PR Newswire·60dRead more →
Data Security Posture & DLPimpact 4

Craneware says hackers stole significant volume of customer data

U.K.-based healthcare billing software maker Craneware disclosed that hackers stole a significant volume of customer data from its systems. The company said the attackers appear to have been expelled, but its investigation is ongoing. Craneware's flagship accounting and billing software is used by thousands of clinics, hospitals, and pharmacies across the United States, and the company handles large amounts of medical records and patient data. The breach is the latest in a series of cyberattacks targeting tech companies that supply the U.S. healthcare sector, following incidents at TriZetto, CareCloud, Episource, and Change Healthcare.
TechCrunch·60dRead more →
Data Security Posture & DLP

Boundeal launches controlled-disclosure data room for financial-sector M&A

Boundeal announced a controlled-disclosure data room configured for financial-sector mergers and acquisitions, responding to a rebound in dealmaking that saw global buyout-backed exit value rise 47 percent to $717 billion in 2025 and global M&A volume surge about 40 percent to roughly $4 trillion. The environment uses permission groups to separate strategic buyers, financial sponsors, lenders, legal advisers, and clean teams, with staged disclosure that expands access as a bidder advances and granular least-privilege controls at the folder and document level. Time-stamped audit trails, mandatory confidentiality agreements, and purpose-based access aim to prevent uncontrolled disclosure of fund economics, asset-level valuations, regulatory correspondence, and other sensitive data that can expose sellers to competitive harm, legal privilege loss, or supervisory risk. Boundeal is a virtual data room provider for M&A, due diligence, IPOs, fundraising, private credit, and restructurings, serving advisers, financial sponsors, corporate teams, and regulated institutions.
GlobeNewswire·60dRead more →
Data Security Posture & DLP

Teleskope Launches Native Slack Integration for Automated Data Remediation

Teleskope has launched a native integration on the Slack App Marketplace that discovers, classifies, and remediates sensitive data across messages, files, canvases, and lists in real time. The integration, called Teleskope for Slack, applies the same automated remediation the platform provides elsewhere, including tombstoning content or requiring business justification before release, all within Slack itself. It also scans historical content that existed before installation, and guarantees detection and remediation in under two seconds. The company, founded in 2022 by former Airbnb data security engineer Elizabeth Nammour, raised a $25 million Series A in 2026 and counts Ramp, Chevron Phillips, and Notion among its customers.
GlobeNewswire·65dRead more →
Data Security Posture & DLP

Flush, China Great Wall Securities, Ping An Securities among those named for illegal personal data collection

The National Cybersecurity Notification Center has reported that testing by the National Computer Virus Emergency Response Center found 72 mobile apps illegally collecting and using personal information. Securities apps including Flush, China Great Wall Securities, and Ping An Securities were among those listed. The Flush stock WeChat mini program and the China Great Wall Securities WeChat mini program were cited for issues such as failing to clearly present privacy policies, default consent to privacy policies, and privacy policies that are difficult to access. Flush was also found to have provided personal information to third parties without informing users of the recipients or obtaining separate consent, while China Great Wall Securities failed to offer a way to withdraw consent. The Ping An Securities WeChat mini program was cited for not listing the purposes, methods, and scope of personal information collection and use one by one in its privacy policy. A reporter from Blue Whale News called the relevant companies. The board secretary offices of Flush and China Great Wall Securities said they were not yet aware of the specifics, while Ping An Securities customer service stated they would verify and respond.
蓝鲸财经·71dRead more →
Data Security Posture & DLP

Varonis Named a Gartner Peer Insights Customers’ Choice for Third Consecutive Year

Varonis Systems has been recognized as a Gartner Peer Insights Customers’ Choice for Data Security Posture Management for the third consecutive year, making it the only company to earn this distinction three years in a row in the DSPM category. The recognition is based on customer reviews, with 97% of users saying they would recommend Varonis, and the company receiving a 4.7 out of 5 rating for Product Capabilities, Sales Expertise, and Deployment Experience, as well as a 4.9 out of 5 rating for Support Experience. Customers highlighted Varonis’ breadth of coverage, ease of value realization, and quality of support. Chief Marketing Officer Rob Sobers stated that data security is critical as organizations adopt AI, and Varonis helps customers secure and govern the data that fuels AI initiatives.
GlobeNewswire·78dRead more →
Data Security Posture & DLP3impact 4

Microsoft Makes Commvault a Native Azure Service

Commvault Systems has signed a multiyear strategic agreement with Microsoft that will offer Commvault's AI and cyber-resilience technologies as a native independent software vendor service directly on Microsoft Azure. The deal enables Azure customers to integrate Commvault's data recovery, application restoration, and identity-resilience capabilities without complex third-party integrations, effectively making the platform plug-and-play for Microsoft's vast enterprise customer base. Commvault recently reported fourth-quarter revenue of $312 million, beating analyst estimates of $306.5 million, with adjusted EPS of $1.28 versus the $1.09 estimate. Total annual recurring revenue grew 21% year-over-year to $1.12 billion, while SaaS revenue increased 43% to $93 million. The stock has rebounded 71% in the past three months amid the Microsoft partnership and takeover interest from private equity firm Thoma Bravo, which is exploring options with Goldman Sachs.
Barchart·84dRead more →
Data Security Posture & DLP2

Varonis Systems Climbs 7% on Report of Potential Sale

Varonis Systems shares rose 7.09 percent on Tuesday to close at $35.03 after Bloomberg reported the company is exploring a potential sale. The data security firm is reviewing options with financial advisers following takeover interest from financial buyers including Blackstone, Thoma Bravo, and Vista Equity Partners. The report cited rapidly growing demand for data solutions and cybersecurity products. Separately, Varonis last month integrated its security platform with Anthropic's Claude AI to help organizations monitor AI usage and detect misuse.
Bloomberg·87dRead more →
Data Security Posture & DLP

Texas AG investigates Carnival over data breach affecting 6 million people

Texas Attorney General Ken Paxton is opening an investigation into Carnival Corporation over an April data breach that compromised the personal data of more than 6 million people. The Civil Investigative Demand will determine if Carnival adequately safeguarded the personal information of the 800,000 Texans impacted by the breach and whether the company maintained reasonable procedures to protect this sensitive information as required by Texas law. In mid-April, Carnival’s information technology security team identified a breach in which an employee account was compromised, exposing names, contact information, dates of birth, payment information, passport and driver’s license information, and health information. Carnival officially reported the event on May 27 and began sending notifications to impacted passengers offering two free years of credit monitoring.
Seeking Alpha·88dRead more →