Skip to content
CityAM
Main navigation
  • News
    • News
      • Latest Business News
      • Economics
      • Politics
      • Tech
      • Banking
      • FTSE 100 Live
      • Retail
      • Insurance
      • Legal
      • Property
      • Transport
      • Markets
    • From our partners
      • AON
      • Bayes Business School
      • Canada BIDs
      • Central London Alliance CIC
      • Destination City
      • Halkin
      • Olympia
      • Inside Saudi
      • Tottenham Hotspur Stadium
      • Santander X
      • YEAR SIX Dividend
    • Featured

      Strait of Hormuz closed over ceasefire violations, says Iran

      Aerial view of ships navigating the strategic Strait of Hormuz, highlighting its importance to global maritime trade routes

      Submit a story

      Tell us your story.

      Submit
  • Opinion
  • Sport
    • Latest Sports News
      • Sport
      • Sport Business
    • From our partners
      • The Morning Briefing: SBS x CityAM
      • Aramco Team Series
      • LIV Golf
    • Featured

      Platitudes in women’s sport are empty, patronising and offensive

      Business professionals in a conference room discussing strategy with a presentation screen displaying key market trends.

      Submit a story

      Tell us your story.

      Submit
  • Life&Style
    • Life&Style
      • Life&Style
      • Toast the City Awards
      • The Magazine
      • Travel
      • Culture
      • Motoring
      • Wellness
      • The RED BULLETiN
      • Do it with Shared Ownership
      • Media Speak Hub
    • Featured

      Fogo de Chao nominated for Best Casual Dining Toast award

      Fogo de Chão restaurant exterior with vibrant signage and bustling entrance at popular city location

      Submit a story

      Tell us your story.

      Submit
  • Investec
  • Events
  • Latest Paper
Thursday 15 December 2016 12:37 pm

Experts say Yahoo attack raises serious questions about the business and global cyber security

By: Oliver Gill

Add as a preferred source on Google

Yahoo's year has gone from bad to worse in the last 24 hours after revealing it had broken records and been the victim of the biggest hack of all time.

Just a couple of months after it revealed a similar attack – but one that impacted 500m accounts rather than 1bn in the latest revelation – the timing could hardly have been worse.

US telecoms giant Verizon is in the process of buying Yahoo in a deal worth $4.8bn (£3.8bn). After the last attack, Verizon said it was considering its options. This time, Yahoo said Verizon was fully aware of what had gone on and wasn't going to be pulling out as a result.

Read more: Yah-what?: 1bn Yahoo user accounts hacked… will Verizon walk?

The hack stretched back to August 2013 and although no bank account details were pinched, a range of other data such as birthdays and email addresses were nabbed.

Nevertheless, experts stress it is distinctly embarrassing for the internet firm. Here's what some of them have to say on the matter…

The EU won't be happy

Sarah Stephens, head of cyber at insurer JLT Specialty, said:

"It is fairly extraordinary that a delay of several years could have occurred before the scale of the attack was uncovered. A sophisticated and well-established tech behemoth such as Yahoo is likely to have best in class intrusion detection and escalation capabilities, and the fact that this discovery comes only a few months after its previous discovery in September, raises serious questions about the company's security."

It's critical for companies in the EU – who will be facing data breach reporting requirements in less than 18 months – to ramp up their detection capabilities now.

EU regulators will not look favourably on three year delays in detection when determining how severe fines should be.

Read more: Yahoo hack: What to do if you're affected (and how to find out if you are)

R.E.S.P.E.C.T

Jane Frost CBE, CEO of the Market Research Society said:

Adequate data protection comes down to fundamental respect for people and their personal data.

"This latest breach highlights how businesses can fall foul to having inadequate data protection policies in place. It’s fundamental to good business practice to embed the right data structures to safeguard the data we all rely on for commercial and public services. Safeguarding tools already exist to help organisations protect data

"Unless action is taken these breaches will not only continue to happen, but happen with increasing frequency; sadly it’s just not enough of a board-level priority in many cases."

Read more: Most "Yahooed" in 2016: Featuring Brexit, Bowie, Mourinho and… Yahoo

You're once, twice…

Ashley Winton, chairman of the UK Data Protection Forum, said:

The adage ‘once bitten, twice shy’ doesn’t appear to be working for Yahoo. Although we don’t know the full details, a number of important lessons can be inferred from news of one of the largest hacks in history. Firstly, hacking is no longer a game but if it were, the hackers would be winning.

Read more: Yahoo hack hit 500m user accounts – putting pressure on its Verizon deal

"Again we can see that the Yahoo systems had suffered a historic compromise without Yahoo!’s existing and sophisticated security systems detecting the intrusion.

"In October, Verizon’s general counsel told reporters that it was reasonable that the first breach may be a material change to the plans for the $4.8bn acquisition. It has become clear that good cyber security due diligence is now an essential step for M&A or PE activity, especially if you are the acquirer or investor seeking a discount.”

 

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech

Trending Articles

  • As it happened: Stocks sink after Fed and Bank of England opt for hawkish hold; Oil price tumbles

  • FTSE 100 Live: Pound dips and stocks slip as Andy Burnham victory triggers political uncertainty

  • City investors raise alarm on Burnham’s Chancellor pick

  • Inheritance tax enquiries surge to six-year high after HMRC clampdown

  • More Big Four blues as Deloitte plans to slash UK audit roles

More from CityAM

  • M&S profit slumps in fallout from cyber attack

    Retail
    Microsoft headquarters building with company logo prominently displayed against a clear blue sky
  • M&S eyes up Brits’ weekly shops as food arm set to expand

    Retail
    News article image related to a general topic, possibly showcasing a relevant scene or event for a business website.
  • Losses widen at UK fintech Monese in eight month delayed accounts

    Fintech
    Monese was founded in 2015 and is based in London.
  • Manchester City now worth £7.5bn, says chairman Al Mubarak

    Sport Business
    Getty Images logo on a digital screen, representing stock photography service for news and media platforms
  • Jaguar Land Rover eyes cost-cutting and wealthy buyers in cyber attack recovery

    Retail
    JLR logo prominently displayed in an automotive business setting, highlighting the companys brand presence and identity
  • Gone for good: UK distributor behind Take That film goes bust

    Media
    Due to the lack of specific article content or context, I am unable to generate a precise alt text. Please provide more in...
  • ‘Banker’ arrested in connection with ‘Putney pusher’ attack

    London
    Person pushing another individual off a Putney bridge, capturing the infamous incident known as the Putney Pusher事件
  • Klarna swings back to profit after delivering second $1bn quarter

    Fintech
    Klarna IPO trading buzz with stock charts and investors analyzing market trends in a professional setting

CityAM Canada — business, markets and opinion for Canadian readers.

Sections

  • Business
  • Markets
  • Tech
  • AI
  • Economics
  • Opinion
  • Cities

Company

  • About
  • Contact

Legal

  • Terms of Use
  • Privacy Policy
  • Cookie Policy
© 2026 CityAM Canada. All rights reserved.
Terms · Privacy · Cookies