久久久无码人妻精品无码_6080YYY午夜理论片中无码_性无码专区_无码人妻品一区二区三区精99

Hub for cyber criminals

Updated: 2016-09-27 08:02

By Honey Tsang(HK Edition)

  Print Mail Large Medium  Small

Despite its small size, Hong Kong ranks third in the world and first in Asia as a target for cybercrime. Honey Tsang reports.

The grim picture came clear in the conference room at the Hong Kong Computer Emergency Response Team Coordination Center (HKCERT). Since last year, cases of extortion, using sophisticated "ransomware", to hijack corporate computer data jumped more than a thousand percent. Throughout 2015, the center recorded a scant 18 cases. In the first seven months of this year, 211 reported ransomware cases were investigated, an increase of roughly 1,072 percent year on year.

The causes for unease grew when the next graphic appeared, revealing a pattern of consistent surges in the valuation of bitcoin - the barely traceable digital currency which often figures in the ransom demands of cyber criminals.

Leung Siu-cheong, senior consultant to HKCERT, noted the correlation between jumps in bitcoin valuation and a spate of attacks involving Locky, a strain of ransomware that renames files then scrambles computer data. Victims are forced to pay a price for a key to decrypt and restore their data. Leung's role is to observe the cyber attack terrain in Hong Kong in search of solutions.

"The cases reported to us represent a small part of the cyber threat. There're substantial unreported cases in town, still hanging," Leung told China Daily.

Hub for cyber criminals

"We have reliable sources in local schools, telling us that many academies have fallen prey to ransomware, without ever reporting breaches to us," Leung said.

His colleague Wally Wong, security analyst of HKCERT, once said in a seminar themed "Web Security Starts from Health Check" earlier in August, that many computer systems in schools were infected by someone's clicking a malicious URL (web address), often embedded in ROM discs used as teaching resources.

When valuable files are locked with indestructible encryption, Leung said, most victims have no option but to pay a ransom in bitcoin, so they can be directed to the decryption key that will restore their data.

This year, things are getting more complicated. Along with ransomware attacks, Hong Kong is on the frontlines of another form of cyber-attack, known as the Business Email Compromise scheme, also known to city police as the CEO email scam. BEC scams spread like most others by using an internet ruse to heist a tidy sum and ultimately to cripple a large organization.

At the end of August, data security experts from around the world converged at CLOUDSEC, the annual internet security conference held in Hong Kong. The expert consensus was that ransomware and BEC proved the two most menacing cyber threats during the first half of 2016.

Hub for cyber criminals

"It seems that in Hong Kong, despite its size, they (ransomware and BEC) are emerging as major concerns right now," Myla Pilao, marketing director of TrendLabs at Trend Micro, a global internet content security provider, told China Daily.

True enough, Hong Kong has been the third most affected region hit by email scams attacks, with 226 email scam cases recorded during the first six months of 2016, Trend Micro's findings showed. The United Kingdom placed second with 595 recorded incidents and 2,496 cases in the United States.

Business email scams are a highly sophisticated stratagem for targeting large enterprises. Perpetrators send phishing emails, appearing to be from company executives. Recipients are directed to execute wire transfers to "alternate" accounts. From January 2015 to June 2016, email scammers poached more than $3 billion, affecting 22,000 firms around the world, according to estimates of law enforcement agencies.

Asked why Hong Kong has risen to third place among countries and regions targeted by cyber criminals, Pilao answered: "The email scam targets routine transactions involving trade, commerce and transfer of funds. In Hong Kong, there's plenty of that."

Detective inspector Dicky Wong is in charge of the collaboration team of the Cyber Security and Technology Crime Bureau (CSTCB). The CSTCB is an official watchdog in the fight against cybercrime. Wong suspects that criminals identify email addresses of business executives on social media accounts, like Facebook, Twitter or LinkedIn.

"You put your email on it. Criminals find it. That's how it works," Wong told the guests at CLOUDSEC conference.

The two malign cyber threats mean double trouble for Hong Kong. Police statistics bear that out. The tally of financial losses due to computer crime in the city amounted to about HK$1.83 billion in 2015. That represented a 52 percent increase from the HK$1.2 billion reported in 2014.

"The losses (caused by cybercrime) outweigh any other single crime category in Hong Kong," confirmed Wong. "The figure for 2016 isn't out yet, but I can tell you that the figure is not getting lower."

Ill-prepared local businesses

Over the past two years, HKCERT has attempted to alert the community to the dangers of ransomware. It has held press conferences and mounted public seminars. Despite that, the number of incidents has been growing, reaching two peaks in March and in May, when the city was beset by attacks from the ransomware viruses, Locky in March and CryptXXX in May.

Michael Lai, senior security sales engineer of Rapid7, a global data security company based in Boston, said in a phone interview to China Daily that public awareness of cyber risks in Hong Kong is relatively underdeveloped when compared to other modern metropolises.

Local large enterprises conduct vulnerability scans largely on a sporadic basis - to identify weak points in their systems capable of being exploited by cyber criminals. They seldom adopt these scans into regular, better-guarded infrastructural practice, Lai added. "Many local companies aren't squaring up to cyber threats. When there's damning evidence that cyber hazards have been pervasive, most still turn their backs on it."

In the past six months, small and medium-sized enterprises (SMEs), with limited resources and manpower, have proven most vulnerable. HKCERT's records showed SMEs were the most frequent victims paying ransom to recover data from cyber attacks, Leung confirmed.

Among them, ransomware had taken a heavy toll on the retail and trading sectors. It's natural for users from these sectors, who handle invoices daily, to be less suspicious of attachments in anonymous emails that may contain malicious code, Leung explained.

Knowing isn't enough

The existence of computer threats has become common knowledge. That does not mean, however, that people are taking the steps necessary to protect their businesses from cyber attacks.

A recent cyber security survey released by Trend Micro found that fewer than one in 10 companies in the Asia Pacific region thoroughly grasps how cyber attacks are carried out. Around 50 percent of surveyed companies had failed to install any security awareness programs. In conclusion, the company declared that data security awareness among Asian enterprises was still dangerously undeveloped.

Technical security tools are able to circumvent some threats lurking online but not all of them, said Patrick Ho, principal consultant of Maximus, a corporate-wide information security management firm. "After all, the real crux lies on the alertness of staff."

The way business email scams have played out echoes Ho's remarks.

Among email schemes reported to the police, inspector Dicky Wong said, attackers could cash in on the failure of employees to read fabricated email addresses correctly. Frequently the address would have a single character added or deleted.

Worthwhile investment

Having seen that local SMEs have no surplus capital to invest in web security, HKCERT launched the SME Free Web Security Health Check Pilot Scheme last March. The program offers free vulnerability scanning of websites, as well as remediation advice for 35 participating companies. The first round of scanning revealed that 76 percent of website vulnerabilities identified were classified as "severe".

Leung said most participants have found the scheme useful. Employees, however, are still stuck in the mire of not knowing what to do when a crisis occurs. "Even after the vulnerabilities are identified, some participants confess they have insufficient resources to rectify problems."

On average, the elemental data security measures, including installing anti-spam email filtering software and web proxy to block access to malicious websites, might cost a small company around HK$100,000 a year. This, Leung said, could consume a "significant" portion of an SME's annual revenue.

Data security measure shouldn't be viewed as trivial, however. The cost might be significant but it's not a waste, said Michael Lai. He recommends enterprises set employees' awareness training high on their business agenda. Undercover security drills should be carried out two or three times a year. These entail efforts by ethical hackers sending out fictitious ransomware or phishing emails that test employees' alertness. Lai argued it's a better solution for employers than learning "the hard way".

As e-commerce evolves and expands, traders and their customers will be exposed to a wider range of cyber risks. The information technology research company Gartner predicted that by 2020, 60 percent of digital businesses will experience major service breakdowns as a result of poor management of cyber risks.

"Cyber threats work like an epidemic. When one wave fades, a new wave will surface," Leung called on the public always to be wary of rambunctious cyber perils. "The success of cyber attacks isn't a fluke. The attackers are computer whizzes, prying into people's lives and implementing well-researched shakedowns."

To develop a good practice, Leung suggested an enterprise should make offline backup of computer files and update system software to sew patches into known flaws and to block employees from opening malicious webpages regularly.

It has always been an aphorism across the cyber security industry, which is what inspector Wong described as worth spreading: "Always assume you've been hacked, unless you can prove you haven't."

Contact the writer at

honeytsang@chinadailyhk.com

(HK Edition 09/27/2016 page8)

久久久无码人妻精品无码_6080YYY午夜理论片中无码_性无码专区_无码人妻品一区二区三区精99

    狠狠色丁香婷婷综合| 奇米四色…亚洲| 欧美熟乱第一页| 亚洲成人免费在线| 欧美一级欧美三级在线观看 | 亚洲国产一区二区三区| 欧美日韩在线电影| 麻豆精品视频在线观看免费 | 国产精品久久毛片a| 色香蕉成人二区免费| 三级久久三级久久久| 久久这里都是精品| 色视频成人在线观看免| 日韩av一级片| 中文字幕电影一区| 欧美性做爰猛烈叫床潮| 激情av综合网| 亚洲欧美视频在线观看| 欧美一区二区三区不卡| 成人精品在线视频观看| 日韩av成人高清| 成人高清av在线| 亚洲国产va精品久久久不卡综合| 日韩午夜小视频| 成人av电影在线观看| 天堂资源在线中文精品| 国产婷婷色一区二区三区四区| 色综合咪咪久久| 久久不见久久见免费视频1| 中文字幕一区不卡| 精品一区二区三区蜜桃| 国产精品久久99| 欧美一区二区三区日韩| av在线一区二区| 免费人成在线不卡| 亚洲欧美另类小说| 亚洲精品一区二区三区四区高清| 色婷婷久久久亚洲一区二区三区| 久久99精品一区二区三区| 亚洲精品老司机| 久久亚洲一级片| 欧美丝袜丝交足nylons图片| 国产成人aaaa| 奇米在线7777在线精品| 综合久久国产九一剧情麻豆| 欧美xxxx老人做受| 91麻豆免费视频| 国产精品亚洲综合一区在线观看| 亚洲午夜激情av| 国产精品久久久久久久蜜臀| 日韩精品一区二区三区在线 | 欧美xxxxxxxxx| 欧美性生活大片视频| 粉嫩av一区二区三区| 免费成人在线网站| 一区二区免费视频| 国产精品私房写真福利视频| 日韩欧美精品三级| 欧美日韩国产另类一区| 97se亚洲国产综合自在线 | 欧美日韩国产综合视频在线观看| 成人精品小蝌蚪| 久久99九九99精品| 日韩国产一二三区| 亚洲一区二区四区蜜桃| 国产精品美女www爽爽爽| 精品sm捆绑视频| 欧美一级午夜免费电影| 欧美日韩国产综合草草| 色激情天天射综合网| 成人精品一区二区三区四区| 国产精品自拍网站| 美女视频一区二区三区| 婷婷综合久久一区二区三区| 一区二区三区色| 亚洲日穴在线视频| 国产精品美女久久久久久久久久久| 26uuu另类欧美| 日韩欧美一级特黄在线播放| 欧美精品色综合| 欧美日韩国产美| 欧美日韩国产首页| 在线观看一区二区精品视频| 91麻豆国产精品久久| 9i在线看片成人免费| 成人av免费观看| 成人一级视频在线观看| 国产91精品精华液一区二区三区| 韩国av一区二区三区四区| 另类小说图片综合网| 蜜桃精品视频在线| 秋霞电影网一区二区| 日本麻豆一区二区三区视频| 日韩国产欧美视频| 免费不卡在线视频| 老司机一区二区| 精品无人区卡一卡二卡三乱码免费卡| 免费xxxx性欧美18vr| 美脚の诱脚舐め脚责91| 美女一区二区久久| 韩国一区二区在线观看| 国产中文字幕精品| 国产大陆a不卡| 成人精品高清在线| 97精品超碰一区二区三区| 91论坛在线播放| 欧洲一区在线观看| 欧美日韩国产乱码电影| 91精品国产乱| 亚洲精品一区二区三区精华液| 久久综合久久综合亚洲| 欧美经典三级视频一区二区三区| 欧美激情在线一区二区| 最新日韩在线视频| 亚洲一区二区三区三| 日韩主播视频在线| 精品系列免费在线观看| 风间由美一区二区三区在线观看 | 三级久久三级久久久| 另类小说色综合网站| 国产精品亚洲人在线观看| 成人不卡免费av| 色呦呦一区二区三区| 在线观看不卡一区| 欧美一卡二卡在线| 国产人成一区二区三区影院| 亚洲天堂a在线| 香蕉影视欧美成人| 激情小说欧美图片| 不卡区在线中文字幕| 欧美影视一区在线| 日韩欧美亚洲国产精品字幕久久久| 精品国产污污免费网站入口| 国产精品视频观看| 亚洲一区二区三区四区在线观看| 奇米精品一区二区三区在线观看| 国产剧情一区在线| 一本一道波多野结衣一区二区| 欧美精品tushy高清| 久久久久久免费网| 亚洲欧美日韩国产综合在线| 日韩综合在线视频| 国产成人av一区二区| 日本精品裸体写真集在线观看| 成人av电影在线网| 欧美二区三区的天堂| 国产三级欧美三级日产三级99| 亚洲精品视频自拍| 麻豆传媒一区二区三区| 北条麻妃一区二区三区| 欧美日韩国产成人在线免费| 久久精品视频一区二区三区| 夜夜亚洲天天久久| 国产一区三区三区| 欧美中文字幕一二三区视频| 久久综合九色综合97婷婷女人| 亚洲色图欧洲色图| 精品一区二区三区欧美| 色噜噜夜夜夜综合网| 精品精品欲导航| 亚洲综合无码一区二区| 国产一区二区三区电影在线观看| 色婷婷狠狠综合| 久久精品亚洲麻豆av一区二区| 亚洲在线免费播放| 国产99久久久国产精品潘金网站| 精品视频1区2区3区| 国产三级精品在线| 日本一不卡视频| 色综合中文字幕国产 | 欧美中文字幕一区| 国产无一区二区| 日韩二区三区在线观看| av男人天堂一区| 精品第一国产综合精品aⅴ| 亚洲国产一区在线观看| 成人性色生活片| 日韩欧美一区二区久久婷婷| 亚洲综合自拍偷拍| 高清不卡在线观看| 日韩欧美国产一区二区三区| 夜夜操天天操亚洲| 成人免费视频app| 欧美www视频| 石原莉奈在线亚洲三区| 一本大道av伊人久久综合| 国产亚洲成aⅴ人片在线观看 | 欧美高清视频一二三区| 亚洲丝袜自拍清纯另类| 国产精品亚洲午夜一区二区三区 | 欧美电视剧免费全集观看| 亚洲自拍偷拍欧美| av高清久久久| 欧美国产乱子伦 | 国产清纯白嫩初高生在线观看91 | 精品国产一区二区三区久久久蜜月 | 一区二区三区自拍| 成人丝袜视频网| 久久久午夜精品| 久久aⅴ国产欧美74aaa|