The US Securities and Exchange Commission (SEC) waited until Wednesday to disclose a hack of its corporate filing system that occurred last year, raising questions about the agency’s ability to protect important financial information and comes as Americans are still weighing the consequences of the massive hack at Equifax Inc.
While the SEC discovered the breach to its corporate filing system last year, the agency said it only became aware last month that information obtained by the intruders might have been used for illegal trading profits.
Experts question the length of time taken to disclose the breach and why the SEC is not meeting the same security standards it demands of corporate America.
Photo: Reuters
“It took quite a while,” said Robert Cattanach, an attorney at Dorsey & Whitney and former trial attorney for the US Department of Justice, whose work includes cybersecurity and data breaches. “The integrity of our whole trading system is dependent on keeping this information secure... People have got some ‘splaining to do.”
The SEC did not explain why the initial hack was not revealed sooner, or which individuals or companies may have been affected. The disclosure came two months after a government watchdog said deficiencies in the corporate filing system put the system, and the information it contains, at risk.
The SEC also did not disclose any information about who might have carried out the breach. A hack by Chinese or Russian actors cannot be ruled out, experts say.
“Certainly state actors would be on the list of suspects that come to mind,” said Marcus Christian, a former federal prosecutor who is an attorney working in Mayer Brown’s cybersecurity and national security practices.
Still, the list would also include “regular old criminal actors,” Christian added.
SEC Chairman Jay Clayton disclosed the hack in a statement posted to the agency’s Web site. It came just two weeks after the credit agency Equifax revealed a stunning cyberattack that exposed highly sensitive personal information of 143 million people.
Clayton is to appear on Tuesday before the US Senate Banking Committee, and he is certain to be questioned about the hack.
US Senator and committee member Mark Warner said in a statement on Thursday that the disclosures by the SEC and Equifax show “that government and businesses need to step up their efforts to protect our most sensitive personal and commercial information.”
Clayton blamed the breach on “a software vulnerability” in the filing system known as EDGAR —Electronic Data Gathering, Analysis and Retrieval system.
EDGAR processes more than 1.7 million electronic filings a year. Those documents can cause enormous movements in the stock market, sending billions of US dollars into motion in fractions of a second.
The hack of EDGAR is especially concerning because of how widely investors have used and trusted the system, which first came online in the early 1990s.
Companies periodically file earnings and a range of financial information, and they alert investors to important developments that could affect their share prices, like government investigations, executive shake-ups and approaches for a takeover.
The New Taiwan dollar is on the verge of overtaking the yuan as Asia’s best carry-trade target given its lower risk of interest-rate and currency volatility. A strategy of borrowing the New Taiwan dollar to invest in higher-yielding alternatives has generated the second-highest return over the past month among Asian currencies behind the yuan, based on the Sharpe ratio that measures risk-adjusted relative returns. The New Taiwan dollar may soon replace its Chinese peer as the region’s favored carry trade tool, analysts say, citing Beijing’s efforts to support the yuan that can create wild swings in borrowing costs. In contrast,
Nvidia Corp’s demand for advanced packaging from Taiwan Semiconductor Manufacturing Co (TSMC, 台積電) remains strong though the kind of technology it needs is changing, Nvidia CEO Jensen Huang (黃仁勳) said yesterday, after he was asked whether the company was cutting orders. Nvidia’s most advanced artificial intelligence (AI) chip, Blackwell, consists of multiple chips glued together using a complex chip-on-wafer-on-substrate (CoWoS) advanced packaging technology offered by TSMC, Nvidia’s main contract chipmaker. “As we move into Blackwell, we will use largely CoWoS-L. Of course, we’re still manufacturing Hopper, and Hopper will use CowoS-S. We will also transition the CoWoS-S capacity to CoWos-L,” Huang said
VERTICAL INTEGRATION: The US fabless company’s acquisition of the data center manufacturer would not affect market competition, the Fair Trade Commission said The Fair Trade Commission has approved Advanced Micro Devices Inc’s (AMD) bid to fully acquire ZT International Group Inc for US$4.9 billion, saying it would not hamper market competition. As AMD is a fabless company that designs central processing units (CPUs) used in consumer electronics and servers, while ZT is a data center manufacturer, the vertical integration would not affect market competition, the commission said in a statement yesterday. ZT counts hyperscalers such as Microsoft Corp, Amazon.com Inc and Google among its major clients and plays a minor role in deciding the specifications of data centers, given the strong bargaining power of
TARIFF SURGE: The strong performance could be attributed to the growing artificial intelligence device market and mass orders ahead of potential US tariffs, analysts said The combined revenue of companies listed on the Taiwan Stock Exchange and the Taipei Exchange for the whole of last year totaled NT$44.66 trillion (US$1.35 trillion), up 12.8 percent year-on-year and hit a record high, data compiled by investment consulting firm CMoney showed on Saturday. The result came after listed firms reported a 23.92 percent annual increase in combined revenue for last month at NT$4.1 trillion, the second-highest for the month of December on record, and posted a 15.63 percent rise in combined revenue for the December quarter at NT$12.25 billion, the highest quarterly figure ever, the data showed. Analysts attributed the