Techcrunch Delve Faces Allegations of Fraudulent Compliance Practices
Article Content
- •Delve is accused of providing fake compliance evidence to clients.
- •The allegations could expose clients to legal liabilities under HIPAA and GDPR.
- •Delve denies the accusations, calling them misleading and inaccurate.
Compliance startup Delve is accused of misleading hundreds of customers about their compliance with privacy and security regulations, potentially exposing them to criminal liability under HIPAA and hefty fines under GDPR. An anonymous post by a former client, known as 'DeepDelver,' claims that Delve provided fabricated evidence of compliance and manipulated auditor conclusions. The accusations suggest that Delve's practices included generating false documentation and using questionable audit firms, which undermined the integrity of compliance certifications. Delve has publicly denied these claims, labeling the post as misleading and inaccurate. The allegations raise significant concerns about the validity of compliance claims made by Delve and the potential risks faced by its clients. The situation is ongoing, with Delve attempting to refute the claims while affected customers may need to reassess their compliance status.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…