Advertisement
Australia markets closed
  • ALL ORDS

    7,974.80
    -27.70 (-0.35%)
     
  • ASX 200

    7,724.30
    -25.40 (-0.33%)
     
  • AUD/USD

    0.6618
    -0.0020 (-0.30%)
     
  • OIL

    78.49
    -0.13 (-0.17%)
     
  • GOLD

    2,348.40
    +30.40 (+1.31%)
     
  • Bitcoin AUD

    100,117.93
    -85.79 (-0.09%)
     
  • CMC Crypto 200

    1,405.09
    -12.78 (-0.90%)
     
  • AUD/EUR

    0.6178
    +0.0005 (+0.09%)
     
  • AUD/NZD

    1.0765
    +0.0012 (+0.12%)
     
  • NZX 50

    11,864.89
    -7.75 (-0.07%)
     
  • NASDAQ

    19,659.80
    +82.88 (+0.42%)
     
  • FTSE

    8,146.86
    -16.81 (-0.21%)
     
  • Dow Jones

    38,589.16
    -57.94 (-0.15%)
     
  • DAX

    18,002.02
    -263.66 (-1.44%)
     
  • Hang Seng

    17,941.78
    -170.85 (-0.94%)
     
  • NIKKEI 225

    38,814.56
    +94.09 (+0.24%)
     

SEC Fines NYSE Owner $10 Million for Not Quickly Reporting Hack

(Bloomberg) -- Intercontinental Exchange, Inc., which owns the New York Stock Exchange, agreed to pay $10 million to settle Securities and Exchange Commission allegations that the exchange giant failed to immediately tell the SEC about a hack of its systems in 2021.

Most Read from Bloomberg

The SEC said that in April 2021 ICE learned that its virtual private network had been hacked by a “threat actor.” ICE did not alert the legal and compliance staff at its subsidiaries, which include many of the world’s largest trading platforms, for several days, according to the SEC. The agency’s rules require ICE to immediately tell SEC staff about such incidents.

ADVERTISEMENT

“This settlement involves an unsuccessful attempt to access our network more than three years ago,” ICE, which did not admit to or deny the SEC’s findings, said in a statement. “The failed incursion had zero impact on market operations. At issue was the time frame for reporting this type of event under Regulation SCI,” the company added, referring to the SEC rule that covers such reporting.

After investigating the issue, ICE found that the intrusion was limited and did not pose a major risk, according to the SEC.

“When it comes to cybersecurity, especially events at critical market intermediaries, every second counts and four days can be an eternity,” SEC enforcement chief Gurbir Grewal said in a statement. “Today’s order and penalty not only reflect the seriousness of the respondents’ violations, but also that several of them have been the subject of a number of prior SEC enforcement actions.”

--With assistance from Katherine Doherty.

Most Read from Bloomberg Businessweek

©2024 Bloomberg L.P.