


Table of Contents
Share with network
Related Insights
The Securities and Exchange Commission (SEC) has finalized a rule updating its Electronic Data Gathering, Analysis, and Retrieval (EDGAR) system, now called EDGAR Next. Key features include mandatory multi-factor authentication, individual user credentials, and a centralized account system.
All EDGAR users and filing agents must enroll by September 15, 2025, or lose access until registration is complete. Enrolling by September 12 is recommended to avoid disruptions. Filers are encouraged to coordinate with their EDGAR service providers for a smooth transition.
The information provided in this communication is of a general nature and should not be considered professional advice. You should not act upon the information provided without obtaining specific professional advice. The information above is subject to change.


Credential overlap, often mistaken for credential stuffing, is a major cybersecurity risk caused by password reuse across multiple accounts. This article explores how attackers exploit this weakness, insights from Elliott Davis penetration tests, and practical strategies to strengthen security and prevent unauthorized access.


The SEC’s new cybersecurity disclosure rules now require public companies to report material cybersecurity incidents within four business days and provide detailed risk management disclosures in annual reports. Organizations must assess the materiality of cyber threats, outline board oversight, and describe management’s role in mitigating risks to ensure transparency for investors.


Cyber threats are constantly evolving, and one often-overlooked vulnerability is clear text password storage. This article explores the risks of storing passwords in plain text, how attackers exploit this weakness, and practical solutions—including password managers, user awareness, and professional cybersecurity assistance—to strengthen your security posture.