• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar

VietNam Breaking News

Update latest news from Vietnam

  • Home
  • About Us
  • Contact Us
  • Disclaimers
  • DMCA
  • Privacy Policy
  • Submit your story

Phishing

Set a former thief to catch new thieves: a cybercrime story

February 18, 2021 by e.vnexpress.net

Earlier this month, Ngo Minh Hieu published a long article on his personal page, sharing information about a cyber-safety software that took him “three nights to complete.”

Hieu doing such good, useful work is the stuff of Hollywood or Bollywood scripts about redemption of erstwhile criminals and/or convicts.

As a teen and a youth, from 2007 until 2013, Hieu stole personal data, including names, birth dates, social security numbers, and bank account information from online marketplaces, according to the U.S. Department of Justice. He sold the information for nearly $2 million, the department said.

On his release, Hieu said he regretted his action and hoped that he would land a cybersecurity job to make amends.

His hope has been realized. He returned to Vietnam in August and works currently for Vietnam’s National Cybersecurity Center (NCSC).

Hieu’s new initiative, “Chong Lua Dao” (Fighting scam), can be installed on Chrome, Coc Coc, Brave and Kiwi browsers. It will rate the safety level of websites and social media accounts. For instance, if a page is flagged as a phishing or otherwise unsuitable site, the software add-on will block the computer from accessing it. The software had more than 3,500 downloads a day after it was launched.

For real?

The anti-phishing article on Hieu’s personal account has received tens of thousands of comments and interactions, mostly of encouragement. But there were some who expressed doubts about an information security tool built by someone who used to be a hacker.

“I know that people won’t stop talking about at my past,” said Hieu. However, he has moved on and does not care about his history, Hieu said, he is focused on creating benefits for the community at large.

The idea of creating a software to protect users from phishing sites crossed his mind when he was serving his sentence in the U.S. and deployed after he returned to Vietnam.

He said that he has learned his lessons from past mistakes and now considers them “assets” that help him build a project against phishing.

“I understand the nature of the matter since I once was a hacker going around deceiving people and spreading malicious codes. So I want to contribute my understanding to help the community.”

In the anti-phishing development team, Hieu is responsible for evaluating the safety of a website. His previous experience helps him tell at just a glance if a site is a scam or not.

The anti-phishing tool is built on the idea of MyWOT – a tool that evaluates the reputation of websites with more than 6 million users around the world, sharing a similar working mechanism. The add-on evaluates the security of a website based on technical analysis, such as IP, URL length and SSL certificate, combined with user ratings, which are combined to create an overall rating on a 1 to 5 scale for each site.

However, the development team must review each report to avoid errors in their judgment, since there are safe websites getting bad reviews from competitors or malicious websites that get good reviews from people “with bad intentions.”

Thanks to Hieu’s experience as well as the contribution of two other security experts, the tool has added 1,000 websites to the “blacklist” after reviewing 1,400 reports from users just one day after its launch. Once it is blacklisted, a website will be “locked,” preventing users from accessing it. The browser displays warnings when certain users want to access such phishing websites.

‘Bamboo curtain’

The “Chong Lua Dao” add-on has been launched in the context of increasing instances of fraud in Vietnam’s internet environment.

Hieu said a phishing website is one that mimics a reputable page in order to attract traffic and takes advantage of the users’ personal information, spreads malicious codes or carries out direct scams for money.

With the rapid rise in internet and mobile users in Vietnam, cybercriminals are also using increasingly sophisticated tricks. For example, a hacker buys a domain name that is similar to that of an airline in order to impersonate it. For this, a professional interface is built and money spent on pushing the website up in the Google search results.

Recently, cybercriminals invested hundreds of millions of dong in equipment to fake a mobile broadcasting station and use the “brand message” to urge people to click on fraudulent websites.

“Cybercriminals in Vietnam are investing more and more money on upgrading their scamming tactics,” Hieu said.

The former hacker said new internet users with little knowledge about information technology are most likely to become victims of these scams.

“Even my parents regularly visit such websites,” Hieu said, adding that this motivates him and his team further in completing their projects.

“In the past, bamboo forests helped protect rural people from enemy attacks and natural disasters, now I want to build an anti-phishing barrier to protect everyone from internet fraud.”

The logo of the new software add-on has the image of a bamboo cluster forming a fence, protecting the “green” sides on the internet. Hieu’s nine member team want to see the small green bamboo icon on as many users’ browsers as possible.

Hieu admitted that the project was not perfect because, as a non-profit initiative, it faces human resource limitations. The team is advocating the application of artificial intelligence for faster and more accurate identification, incorporating the open source code of a tool specialized in phishing websites detection to give the best results for the Vietnamese market.

The larger the number of users, the more fake websites will be reported and the more accurate the tool becomes, thus reducing the amount of people needed to moderate internet traffic.

The Chong Lua Dao project plans to develop more applications on smartphones, adding the ability to prevent malicious YouTube and Facebook pages.

Hieu said he also plans to organize small competitions on using the tool in order to help users access security knowledge in newer ways.

He added: “This project is for the community and also develops through the community.”

Filed Under: english, news Vietnam, hacker, Ngo Minh Hieu, cybercrime, add-on, Chong Lua Dao, phishing sites, Set a former thief to catch new thieves: a cybercrime story - VnExpress..., deadliest catch new season, when deadliest catch new season, catch new york restaurant, catches new port richey, deadliest catch new season 2017, cybercrime stories, new school love story, new jersey ghost stories, new zealand learning stories, new york love story, catch new york reservations, catch new york restaurant menu

Experts warn of high risks for information security in 2021

November 2, 2021 by vietnamnet.vn

Still coping with difficulties caused by Covid-19, small and medium enterprises (SMEs) also face risks in information and data security in 2021.

Experts warn of high risks for information security in 2021

Kaspersky’s report on the impact of Covid-19 on SMEs in 2020 pointed out that as the pandemic has caused serious damage to businesses, many of them cut their budgets for information technology and information security solutions in 2021. Micro businesses and business households do not have enough money to hire workers in charge of information security.

Ransomware

Experts said ransomeware of different types ‘mushroomed’ in 2020, targeting more subjects and increasing the level of danger. They have targeted hospitals, medical and financial institutions, important agencies, factories and infrastructure items in order to increase the pressure and require ransoms.

Meanwhile, the level of awareness and vigilance of SMEs about the malware remains modest.

A report from Coveware showed that ransomware ‘favors’ SMEs with fewer than 100 officers with 55 percent of attacks targeting this group of businesses.

The majority of SMEs that are victims of ransomeware pay ransoms in exchange to get back for their important data.

A new characteristic of Ransomware 2.0 is that they not only encrypt data and require ransoms, but also blackmail victims in exchange for not making public the data.

Scamming via emails, mobile messages

Hackers exploit mistakes by officers and key personnel in enterprises and organizations to penetrate into their systems, and steal financial information and enterprises’ data.

Abnormal Security reported that the number of phishing emails disguised as invoices and payments has increased by 81 percent, causing a loss of $81,000 on average for every attack.

Experts found that it is easier to cheat people via mobile messages associated with links that people click on. This type of phishing has become favored by hackers.

Response

Ngo Tran Vu, CEO of NTS Security, said the Covid-19 pandemic has forcef SMEs to run a remote working regime, which is a high risk for businesses’ information safety.

“Officers working from a distance tend to be (careless) when accessing enterprises’ secret information. They may access businesses’ accounts from public wifi networks which can be hacked easily,” he said.

The devices they use, such as computers and smartphones, also cannot be protected well like devices at office which are protected by professional IT officers. Therefore, businesses need to set principles for information access to protect data.

“A plan for safe remote work and scenarios to respond to emergency cases are necessary for SMEs,” Vu said.

He went on to say that backup, both offline and online, on clouds will help reduce risks from ransomware.

Trong Dat

Ensuring information security for cloud computing a key national goal

Ensuring information security for cloud computing a key national goal

The Ministry of Information and Communications has determined that the cloud computing platform is a key part of telecommunications infrastructure to focus on in the coming years.

Vietnamese team tops qualifying round of ASEAN information security contest

Vietnamese team tops qualifying round of ASEAN information security contest

Pawsitive of the University of Engineering and Technology under the Vietnam National University, Hanoi excellently surpassed rivals to gain the first place at the ASEAN Student Contest on Information Security 2020’s qualifier on October 31.

Filed Under: Uncategorized information security, BKAV, ransomware, IT news, sci-tech news, vietnamnet bridge, english news, Vietnam news, vietnamnet news, Vietnam latest news, Vietnam..., information security risk, Managing Information Security Risk, Information Security Risk Management, Information Security Governance and Risk Management

Primary Sidebar

RSS Recent Stories

  • White sand inspires artist to imagine and create
  • Tiền Giang irrigation projects protect crops in dry season
  • Investment funds in Việt Nam remain optimistic despite poor performance
  • Gia Lai rapidly expands forest cover
  • Việt Nam is ready support Vietnamese citizens affected by storms in US: Foreign Ministry
  • GDP of first quarter to be lower than target: MPI

Sponsored Links

  • Google Home Mini at Rs 499: Here’s how to get discount
  • LG may deliver displays for Apple’s foldable iPhones: Report
  • Flipkart quiz February 19, 2021: Get answers to these five questions to win gifts, discount coupons and Flipkart Super coins
  • Call of Duty: Black Ops Cold War to get new zombies mode ‘Outbreak’
  • Why Amazon Echo is the AirPods of smart speakers in India
Copyright © 2021 VietNam Breaking News. Power by Wordpress.