Financial data being held hostage by hackers

    Updated: 2015-08-12 09:23

    By Timothy Chui in Hong Kong(HK Edition)

      Print Mail Large Medium  Small 分享按鈕 0

    IT experts urge firms to be vigilant on malware and update security patches

    Financial institutions are increasingly finding their data is being held hostage by hackers - and the number of digital ransom cases may be higher than official tallies.

    Information sector lawmaker Charles Mok Nai-kwong told a cloud computing security conference on Tuesday that many financial institutions had approached him. This was after learning hackers were demanding ransoms in bitcoin - a digital currency created and exchanged independently of banks or governments - after encrypting sensitive and confidential business data.

    "The financial services industry wants to make sure consumers see them as secure," Mok told the conference of information security officers.

    "But in fact, in the last couple of years there has been quite a number of these crypto lockers targeting their servers and systems and injecting the malware into the system and then locking out the system and calling you for ransom," he said.

    "I have to say that many of those that are being targeted don't want their names to be leaked out, so I can't even say who they are," he added.

    Mok said that once targeted, organizations were confronted with the dilemma of paying either a lot of money or letting their company services stop - and suffering a huge loss to their reputations.

    The Hong Kong Computer Emergency Response Team (HKCERT) said in its latest security note there was an increasing trend of crypto ransom ware targeting the city. It reported an average of five incidents per month from February to April this year.

    The Bank of China and Bank of East Asia were reportedly hit with crypto locker ransom ware attacks in May. Both banks claimed customer data and services were not affected.

    HKCERT began detecting random ware affecting network storage less than two years ago, according to senior consultant Leung Siu-cheong, who advised targeted companies not to pay ransoms.

    "They will come back asking for more," he said, noting ransoms were kept relatively low to encourage compliance. Some ransoms were in the thousands for individuals, the tens of thousands for small businesses. But millions were demanded from larger entities which were threatened with denial-of-service (DoS) attacks.

    The solution for the attacks is not cheap. Companies are recommended to make multiple daily or hourly offline backups of their data in the event of an infection.

    Ransom ware attacks are started through phishing emails, encrypting not only files located in affected machines but all files shared on connected networks. An extortion message on infected computers typically demands a specified ransom in bitcoin in exchange for the decryption key, otherwise the unique decryption key will be deleted, HKCERT said.

    International Information Systems Security Certification Consortium Asia-Pacific technical adviser Chuan-Wei Hoo said that cities such as Hong Kong and Singapore are lucrative targets - given the concentration of large financial institutions, data centers, and small and medium enterprises.

    On average, a 10th of workers in companies with more than 100 employees clicked on infected links in phishing emails, former chief technology officer of the US Central Intelligence Agency (CIA) and President of IT consulting company Applicology Bob Flores said.

    HKCERT recommends that users keep up to date with patches in its 2015 security outlook. Some 96 percent of patchable vulnerabilities being exploited were more than two years old, Flores said.

    tim@chinadailyhk.com

    (HK Edition 08/12/2015 page10)

    欧美日韩中文字幕| 欧洲精品无码一区二区三区在线播放 | 日韩中文字幕在线| 无码一区二区三区在线观看| 亚洲人成无码久久电影网站| 亚洲中文字幕无码久久2017| 中文字幕Av一区乱码| 欧日韩国产无码专区| 国产精品无码av在线播放| 亚洲中文字幕无码一区| 亚洲欧美日韩另类中文字幕组| 欧美日韩国产中文高清视频| 18禁网站免费无遮挡无码中文| 无码人妻熟妇AV又粗又大| 超清无码熟妇人妻AV在线电影| 欧美日韩亚洲中文字幕二区| 中文精品久久久久人妻不卡| 中文在线中文A| 国产无码网页在线观看| 久久午夜伦鲁片免费无码| 中文字幕乱码人妻无码久久| 在线天堂中文在线资源网| 中文字幕一区二区人妻| 久久亚洲中文字幕精品一区| 久久亚洲av无码精品浪潮| 蜜桃成人无码区免费视频网站 | 99精品久久久久中文字幕| 精品无码国产污污污免费网站国产| 中文字幕在线观看国产| 中文字幕一区二区三区在线不卡| 日韩欧美一区二区三区中文精品| 一区二区三区观看免费中文视频在线播放| 久久99久久无码毛片一区二区| 国产成人无码a区在线视频| 久久久久久亚洲精品无码| av无码专区| 亚洲午夜AV无码专区在线播放| 欧美 亚洲 日韩 中文2019| 亚洲中文字幕无码爆乳AV| 最近2019好看的中文字幕| 丝袜无码一区二区三区|