Skip to content
  • Home
  • About
  • Contact
  • Page
  • ​Master SEO Tactics
  • Top 9 Finance News Websites Ranking
wikifx

wikifx

  • Home
  • About
  • Contact
  • Page
  • ​Master SEO Tactics
  • Top 9 Finance News Websites Ranking
  • Toggle search form
  • Tsega Gebreyes acquires 1,200 shares in LSEG forex news
  • SEC considers revoking registration of ParagonCoin securities forex news
  • CFTC reaches settlement in principle with head of $10M fraudulent trading scheme forex news
  • German Court imposes prison sentence in insider trading case forex news
  • Tradeweb names Sara Furber its new CFO forex news
  • Exclusive: BDSwiss hires FXPrimus exec Natale Mastoroudes as Head of HR forex news
  • Compagnie Financière Tradition reports drop in profits in H1 2021 forex news
  • Compagnie Financière Tradition registers growth in revenue in Q4 2021 forex news

FINRA alerts firms to “Log4Shell” cyber vulnerability

Posted on 2021-12-16 By admin No Comments on FINRA alerts firms to “Log4Shell” cyber vulnerability

The United States Financial Industry Regulatory Authority (FINRA) has added its voice to the growing chorus of regulators and institutions warning of the “Log4Shell” vulnerability in Apache Log4j software.

FINRA has issued an alert to member firms about a recently identified vulnerability in Apache Log4J software, which is an open-source, Java-based logging utility widely used by enterprise applications and cloud services. The “Log4Shell” vulnerability presents risk for member firms because they may be using this software in internal applications, or the software may be embedded in third-party software packages.

In addition, many applications written in Java are potentially vulnerable.

Bad actors may take advantage of this vulnerability to compromise systems to potentially steal information or engage in fraudulent activities. For example, a remote attacker can exploit this vulnerability to take control of an affected system.

FINRA reminds firms that the U. S. Securities and Exchange Commission’s (SEC) Regulation S-P Rule 30 requires firms to have written policies and procedures that are reasonably designed to safeguard customer records and information and FINRA Rule 4370 (Business Continuity Plans and Emergency Contact Information) also applies to denials of service and other interruptions to members’ operations. I

n addition to firms’ compliance with SEC regulations, FINRA expects firms to develop reasonably designed cybersecurity programs and controls that are consistent with their risk profile, business model and scale of operations.

FINRA recommends member firms consider engaging their Technology staff along with third-party vendors, including any IT service providers, and taking the following steps:

  • Leverage indicators of compromise (IOCs) associated with the vulnerability;
  • Consider evaluating firm (and, if applicable, vendors’) firewalls to address additional risks relating to the vulnerability;
  • Review firms’ internally maintained application systems to determine if any are at risk from the vulnerability;
  • Evaluate third-party vendors’ systems to determine whether they have been impacted by the vulnerability;
  • Continue monitoring threat information and updates through multiple intelligence sources.

The UK Financial Conduct Authority (FCA) has also issued a similar notice to firms it regulates.

forex news Tags:forex-news

Post navigation

Previous Post: Schwab introduces Schwab Starter Kit to support first-time investors
Next Post: FCA warns of Apache Log4j cyber vulnerability

Related Posts

  • TriOptima now offers integration via SWIFT to major tri-party agents forex news
  • ASIC secures cancellation of registration of Halifax Investment Services’ auditor forex news
  • FCA issues final notice to Finablr forex news
  • Saxo Bank presents Outrageous Predictions 2022: Here comes a revolution! forex news
  • TP ICAP appoints Louise Murray as non-exec director forex news
  • DNB: The climate impact per bitcoin transaction is rising forex news

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • EUR/USD Holds Near 1.05 as Fed, ECB Policies Shape Market Sentiment
  • Gold Prices Hold Steady Amid Global Economic Uncertainty
  • Australian Dollar: How RBA Policies, Commodity Prices, and Global Tensions Are Shaping the AUD’s Market Performance
  • EUR/USD: Understanding the Currency Pair’s Trends
  • USD Under Pressure: Navigating Economic Data and Global Uncertainties

TAG

Axiory Review 2022 B2B B2Broker News Basic Forex Knowledge broker brokers brokers in the UK Brokersview Broker tools CFDs coin News cryptocurrency Cryptocurrency News Crypto News dogecoin FCA news finance forex forex-news Forex Broker Forex Brokers Forex Demo Account Forex market forex news forex scams forex time Forex trading fx fxtrader fxtrading Global Forex Gold Analysis HotForex InstaForex LiteForex Review 2022 markets work MT4 MT5 news OctaFX Review Samtrade FX South Africa trade Forex traders Trading Forex
  • OctaFX Releases List of Top 2021 Events that Affected the Financial Market forex news
  • ICE announces passing of longtime Exchange Member James A. Calcagnini forex news
  • Investors accuse Robinhood CEO Vlad Tenev of unjust enrichment forex news
  • NAGA Pay launches in Appstore and Google Play forex news
  • 24 Exchange receives Bermuda license, begins spot crypto trading forex news
  • Playtech resets Finalto sale shareholder vote, calling competing offer “uncertain” forex news
  • CMC Markets plans £30 million share buyback program forex news
  • Exclusive: Axiance launches, replacing EverFX forex news

Copyright © 2025 wikifx.

Powered by PressBook News WordPress theme