logo

SEC fines four companies $7M for ‘misleading cyber disclosures’ regarding SolarWinds hack

ID: 9c8aba0a-45d9-51a0-9ea0-9084cb2f5048

STIX ID: report--9c8aba0a-45d9-51a0-9ea0-9084cb2f5048

Feed Name: TechCrunch Security News

Date Published: 2024-10-22

Date Updated: 2026-04-23

Author: Lorenzo Franceschi-Bicchierai

...
...

The SEC announced civil penalties against Check Point ($995,000), Mimecast ($990,000), Unisys ($4 million), and Avaya ($1 million) for providing misleading disclosures about their exposure to the 2019 SolarWinds espionage attack, alleging they downplayed scope or framed known incidents as hypothetical risks. The companies cooperated and settled without admitting or denying the findings, while the SEC continues to tighten cyber incident disclosure obligations for public companies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.