HomeNewsEconomyHackers attack 'zero day' vulnerability

Hackers attack 'zero day' vulnerability


After more than 2 days of the incident, up to now, the system of VNDirect Securities Joint Stock Company (VNDirect) is still not accessible.

Sharing with the press today, March 26.3, Mr. Nguyen Vu Long, General Director of VNDirect, said that the company's system was attacked by a professional attack group, encrypting all of the company's data.

VNDirect incident: Hackers attack 'zero day' vulnerability - Photo 1.

Status of VNDirect's website at 19:30 p.m. today, March 26.3

The problem was fixed in 2 steps and now the company has decrypted the encrypted data, continuing to the next step to fix the system.

“We are starting the process of fixing the system so we can connect and trade again. It is expected that it will take a while longer because this is a common form of attack but is relatively complicated and takes time," Mr. Long said.

From VNDirect's incident, talk to Youth, Mr. Vu Ngoc Son, Technology Director of Vietnam National Cyber ​​Security Technology Company, analysis: “With my experience, I guess it's almost certainly a software-related vulnerability, meaning a "zero day" vulnerability. This is an unknown manufacturer vulnerability. Hackers somehow found it and exploited it."

Assessing that VNDriect is a large company in Vietnam, certainly its operating procedures have been standardized, Mr. Son further emphasized: "The fact that a hacker can go deep into the system like that can only be explained by having to be intelligent." through an unknown hole. With a "zero day" attack, all systems in the world can be attacked."

Need a high level of cybersecurity

Technology Director of Vietnam National Cyber ​​Security Technology Company said that in the case of VNDirect's incident, the backup system was also attacked, not just the main system.

When putting a service into operation, of course any unit will have to consider redundancy; It is possible that at that time, all possibilities had not been calculated leading to the backup system being attacked at the same time. “This can be said to be a double disaster. In this case, I think the recovery time is long because the backup system has been attacked," Mr. Son emphasized.

This person also shared that the systems of securities companies and financial institutions all have investments and operating procedures that are on the common level of cybersecurity in Vietnam.

World statistics show that financial institutions are always the target of hackers, because when attacking financial institutions, hackers will gain a lot of money. Simply because there is a lot of data and it includes assets.

Obviously, even though securities companies are equipped with better technology and security conditions, incidents still occur. That requires securities companies and financial institutions to have a high level of cybersecurity to ensure this.

Regarding the policy aspect of ensuring customers' rights after troubleshooting, General Director of VNDirect affirmed that in principle, all customers' rights are guaranteed. At the same time, after the recovery process, the company will have policies to ensure additional benefits, helping customers overcome the consequences of non-transaction days.

Meanwhile, Mr. Son advised that as soon as the system works again, users need to change their password to ensure their account is still under their control...

According to VNDirect, the problem with this company's online trading system occurred at 10:24.3 a.m. on March XNUMX at DC Fornix Duy Tan. The system has been attacked by an international hacker organization. The system was attacked by virtual infrastructure, resulting in the company's entire trading platform being temporarily unable to log in.

Late on the morning of March 25.3, the Hanoi Stock Exchange (HNX) announced the temporary disconnection of VNDirect's trading connection to the HNX from March 25.3 until VNDirect completely fixes the problem.

On the afternoon of March 25.3, the Ho Chi Minh City Stock Exchange (HOSE) also said that it has temporarily disconnected VNDirect's trading connection with HOSE since March 25.3 until this company completely fixes the problem.

Late on the night of March 25.3, the State Securities Commission issued an official dispatch warning about the security of the online stock trading system.

The State Securities Commission requires the company to ensure the information technology system and backup database operate safely and continuously according to the provisions of Clause 10, Article 89 of the Securities Law 2019.

In addition, proactively review and immediately check security plans for the company's information technology systems, especially stock trading systems and systems connected to the internet, to promptly resolve issues. Fix security holes (if any)...



Source link

Same topic

Stocks need more support to create an upward trend

Exploding liquidityThe stock market last week witnessed a very strong participation of cash flow, especially in the session of March 18.3.2024, 48.000, the market reached a total matched transaction value of up to 1,8 billion VND, equivalent to XNUMX billion USD. The cash flow spreading strongly in the stock market according to the analysis and assessment of many securities experts mainly comes from the maturity of...

Vietnam - United States promote cooperation on cybersecurity

On the afternoon of March 25, in Hanoi, General To Lam, Politburo member, Minister of Public Security received Professor Thomas J. Vallely, Senior Advisor of Harvard Kennedy School, USA. At the meeting, Minister To Lam expressed his pleasure to see that in recent times, Vietnamese and US authorities have promoted meaningful cooperation activities to concretize and develop. ..

VNDirect can resume operations as early as the morning of March 28

Responding to VTC News on the morning of March 26, VNDirect's media representative said: "Currently the company is continuing to work with partners to fix all system errors that have occurred. The partner said that by Thursday morning (March 3) at the earliest, the problem could be fixed and operations could resume. Regarding the customer support policy, the representative replied: "Currently it is not possible." rated...

Review of economic information on April 25

The central exchange rate increased by 12 VND, the VN-Index decreased sharply by 13,94 points or the State Bank withdrew a net 7.200 billion VND from the market... are some notable economic information on March 25. Review of economic information on March 3 Review of economic information for the week of March 21-3...

Highlights

New Posts

Same author

Much read

What did you see from the incident where VNDirect was attacked?

Trillions of dong were stuck unable to be traded when VNDirect was attacked. This shows the security "vulnerability" of financial services. What should investors do? ...

Proposal to adjust the minimum wage to increase by 6% from July 1, 7

Proposal to adjust the minimum wage to increase by 6% from July 1, 7. The Ministry of Labor, War Invalids and Social Affairs is drafting a Decree regulating the minimum wage for employees working under labor contracts. Accordingly, the Ministry proposes to adjust the minimum wage by 2024% compared to the current level to apply from July 6, 1. ...

VNDirect "falls" - It's a matter of ensuring information security

VNDirect "falls" - It is vital to ensure information security. Compared to the attack that occurred at a securities company nearly 3 years ago, the attack incident that occurred at VNDirect was more serious when the entire attack stopped. system and service recovery times are longer. VNDirect's anti-attack fence...

Arrange three branches into three new companies in 2024

Biwase General Meeting of Shareholders: Arrange three branches into three new companies in 2024 On the morning of March 25, Joint Stock Company - Binh Duong Water - Environment Corporation (Biwase, code BWE - HoSE floor) held the Annual General Meeting of Shareholders 3. In addition to the Report of the Board of Directors and the General Director on business results in the year...

Same category

Electricity prices are increased and decreased every 3 months

The above information is stated in the Decision stipulating the mechanism for adjusting the average retail electricity price, replacing Decision 24/2017/QD-TTg approved by the Prime Minister on March 26. Accordingly, the average electricity selling price is established on the basis of the cost of generating electricity, the cost of purchasing electricity transmission services, electricity distribution - retail, electricity system dispatching and market transaction management...

Nearly 10.700 gasoline and oil stores issue electronic invoices

Nearly 10.700 gasoline and oil stores issue electronic invoices. The General Department of Taxation said that as of March 15, 3, the total number of gasoline and oil stores that issue electronic invoices for each sale across the country is 2024. stores, so there are still nearly 10.649 stores that have not implemented this regulation. As of March 5.000, 15, the whole country...

HoSE is about to delist APC shares

HoSE has just issued a document stating that it will delist APC shares of An Phu Irradiation Joint Stock Company because the new business reported a loss after tax for the third consecutive year. Ho Chi Minh City Stock Exchange (HoSE) has just sent a document to An Phu Irradiation Joint Stock Company to announce the cancellation...

Viettel ranks 2nd in the world in terms of brand strength in the telecommunications field

Brand Strength Index (BSI) is determined based on survey results, analysis and evaluation of attributes including customer feelings about the brand (awareness, love...) and Customer behavior with the brand (using products and services, willing to recommend to others, willing to pay high prices...). This is the most important factor that creates...

The Prime Minister approved the mechanism to adjust the average retail electricity price

On March 26, 3, Deputy Prime Minister Le Minh Khai signed and promulgated Decision No. 2024/05/QD-TTg regulating the mechanism for adjusting the average retail electricity price. This Decision takes effect from May 2024, 15, replacing Decision No. 5/2024/QD-TTg dated June 24, 2017 of the Prime Minister regulating the mechanism for adjusting the average retail electricity price. According to Accordingly, the average electricity selling price is considered for adjustment...

New Posts

Prime Minister Pham Minh Chinh chaired the meeting of the Socio-Economic Subcommittee of the 14th Party Congress

On the afternoon of March 26, at the Government headquarters, comrade Pham Minh Chinh, Politburo member, Prime Minister, Head of the Socio-Economic Subcommittee of the 3th National Congress of the Party chaired the session. Second meeting of the Subcommittee. The meeting focused on discussing the Report Outline...

Congratulations on the founding anniversary of the Lao People's Revolutionary Party

The content of the congratulatory message reads: "During the historical journey of the past 69 years, especially after 37 years of implementing the comprehensive reform policy, under the wise leadership of the Lao People's Revolutionary Party, the country and the fraternal Lao people have promoted the heroic tradition...

[Photo] The colorful Hindu Holi festival

NDO - The Hindu festival of Holi, also known as the Festival of Colors, is one of the largest Hindu festivals celebrating the victory of good over evil, and is also held to mark the beginning of spring. As one of...

3 works worth reading in March 3.2024

Wuxiang Street - Tan TuyetTant Tuyet is a contemporary Chinese writer whose books have been translated into the most foreign languages ​​in recent years. Author Tan Tuyet's literature is very difficult to access, even as the number of her translated works is increasing. With "Pho Ngu...

Belarus announced that it would respond to all provocations with force; North Korea bluntly rejected Japan; China is "hot" because...

World & Vietnam Newspaper highlights some outstanding international events in the past 24 hours.

New Posts