Threat Intelligence, Phishing Testing, and Monitoring

Protect your company from cyber attacks with our phishing threat intelligence.

Cyber threats are constantly evolving, so it’s important to stay on top of new threats and address them as quickly as possible. We provide cyber alerts and ongoing monitoring to help protect your company from cyber attacks. We also offer phishing testing and monitoring services to protect your business.

CONNECT WITH US


CONNECT WITH US


Our solutions

Phishing Testing and Training

One of the simplest ways a hacker can penetrate your network is via email using a tactic called phishing, or, in a targeted effort, spear-phishing.  Successful phishing, vishing (telephone-based phishing), and spearphishing can lead to ransomware, payment fraud, and other cyber crimes. The FBI has reported that people lost $57 million to phishing schemes in 2019.

We deploy targeted email campaigns that are designed to test your employee’s ability to identify phishing threats. We use the results of our phishing assessments as part of our staff security training, which covers phishing identification and other essential skills and tools for identifying threats and preventing data breaches.

We periodically issue timely alerts on cyber events and technology concerns that may be relevant to your business. Our alerts provide strategic guidance to help you protect your company and understand how to best prevent or remediate issues.

Subscribe to receive our cyber alerts

Domain Registration Monitoring & Paste Site Monitoring

Over 100,000 domains are registered every day, many for malicious purposes. We monitor newly registered domain names and alert you when a domain name that resembles your firm’s domain is registered so that your firm can take action to combat attempts to steal sensitive information or infringe on your firm’s intellectual property.

Hackers often post sensitive data about their victims or targets on anonymous paste sites to share with the broader hacker community. We monitor select anonymous paste sites for mentions of your firm’s domain or IP addresses, as these could be indicators of an upcoming or ongoing attack.

1 of
Solution Spotlight

Aponix Protect™ comprehensive cybersecurity and technology risk solution

Aponix Protect helps firms address evolving cyber risks and threats to ensure that their cybersecurity needs are covered year-round. This phishing threat intelligence testing service and monitoring solution is available in three tiers, each one designed to provide firms with a flexible, robust, responsive, and cost-effective cybersecurity program. 

Latest insights

cyber code

The Microsoft® Exchange® Server Breach: What’s Next and What To Do

​​​​​​​When Microsoft announced patches for the four “zero-days” that were revealed on March 2, 2021, the full extent of the vulnerability was not known. Security experts continue to notify victims, coordinate remediation, and suggest remaining vigilant for “stage 2” of this attack, i.e., further exploitation of the backdoors left on the already-compromised servers.

Article
  • Cybersecurity
abstract image with a lock and shield

Urgent Update for Apple iOS

Apple has issued urgent updates for its iPhone, iPad, and iWatch devices. According to Apple, these updates patch a discovered “cross site scripting” vulnerability that allows bad actors to inject malicious code into web pages. The code could be enabled when users access these pages using browsers on Apple devices. This vulnerability may already have been exploited.

Cyber Alert
  • Cybersecurity
abstract blue shapes connected by dots of light

Fake Regulatory Emails Received from "IFMR"

Multiple firms have reported receiving emails from an organization posing as the International Fund Manager Regulator (IFMR). There is no legitimate international global regulatory authority for fund managers. This email is a phishing attempt.

Cyber Alert
  • Cybersecurity
  • Phishing
ACA Threat Intelligence Alert Blog Image

FINRA Warns of Fake Emails

The Financial Industry Regulatory Authority (FINRA) has issued an alert warning of reported phishing attempts using fake FINRA credentials. Per the notice, an ongoing email phishing campaign has been reported, in which the fake FINRA domain name of supports @finra-online.com is being used.

Cyber Alert
  • Cybersecurity
ACA Threat Intelligence Alert Blog Image

NFA Warns of Fake Emails

The NFA issued a notice to members warning of reported phishing attempts using fake NFA credentials. The phishing campaign includes emails using a fake domain that mimics the NFA’s domain name.

Cyber Alert
  • Cybersecurity
ACA Threat Intelligence Alert Blog Image

Microsoft® Exchange® Servers Suffer Multiple “Zero-Day” Attacks

Microsoft has reported that it has suffered four “zero-day” attacks targeting its on-premises email and calendaring Exchange Server products. The reported vulnerabilities apply to on-premises versions of Microsoft Exchange Server. Learn what steps to take to protect your firm.

Cyber Alert
  • Cybersecurity

News

ACA Group Acquires Financial Compliance Firm, FINOP Consulting

Acquisition strengthens ACA’s outsourced financial operations offering for broker-dealers.

ACA Group Recognized on ESGFinTech100 Among Top Industry Innovators

We are thrilled to announce that ACA Group has earned a spot on the prestigious 2024 ESGFinTech100 list, joining the ranks of the world's most innovative ESG technology providers.

Financial Services Firms Lag in AI Governance and Compliance Readiness, Survey Reveals

The 2024 AI Benchmarking Survey by ACA Aponix and NSCP reveals that, despite enthusiasm for AI, financial firms lack formal AI governance frameworks, testing protocols, and third-party oversight.

Upcoming events