Skip to main content

Security Blog

Filter by:

Mind your Webcam, Protect your Privacy

Among all IoT devices, webcam is one of the most popular IoT devices used in Hong Kong. However, these devices may not be installed securely in household.   In August 2016, there was a public uproar over an exhibition in the UK showing still images of...
Release Date: 24 Jan 2019 3990 Views

HKPC Urges Enterprises to Adopt "Security by Design" to Sharpen IT Security

  The Hong Kong Productivity Council (HKPC) today urged enterprises to adopt “security by design” in IT security to stem data breaches and fend off cyber attacks targeting personal and financial data.   HKPC issued the advice after its Hong Kong Computer Emergency Response Team Coordination...
Release Date: 22 Jan 2019 3845 Views

Favourite Security Reads of the Fortnight (18 Jan 2019)

 Favourite Security Reads of the Fortnight (18 Jan 2019) .  "Favourite Security Reads of the Fortnight". Every two weeks we share news or articles that we like. We hope you will love this column and we welcome your comment via email to [email protected].  Below is the favourite security reads of this fortnight. Article written by HKCERT on Hong Kong Economic Times: 黑客勒索求財 網民兩招自保 (2019-01-11, Chinese) Articles that we like:  A photo will unlock many Android phones using facial recognition (Naked Security, 2019-01-08) Does A Board...
Release Date: 18 Jan 2019 2671 Views

Security Advisory: Online Account Security

A security researcher, Troy Hunt, found that 87GB dump of user credential data were recently posted to an underground forum. The data included 773 million unique email addresses and 21 million unique passwords, and some passwords were in plain text. There was indeed no...
Release Date: 18 Jan 2019 4290 Views

Favourite Security Reads of the Fortnight (4 Jan 2019)

  Favourite Security Reads of the Fortnight (4 Jan 2019) .   "Favourite Security Reads of the Fortnight". Every two weeks we share news or articles that we like. We hope you will love this column and we welcome your comment via email to [email protected].   Below is the favourite security reads of this fortnight.   Article written by HKCERT on Hong Kong Economic Times: 網絡安全7攻略 助中小企評估 (2018-12-07, Chinese) 身份監察服務 無助防洩私隱 (2018-12-14, Chinese) 加強網絡保安...
Release Date: 4 Jan 2019 3372 Views

Advice to Email Administrators for Preventing Extortion Email

Recently, HKCERT received a number of reports from students and alumni of a local university who received extortion emails asking for ransom. The content of the extortion email is similar to the one we seen before. The email sender pretends to be the recipient's email...
Release Date: 21 Dec 2018 4372 Views

Favourite Security Reads of the Fortnight (21 Dec 2018)

  Favourite Security Reads of the Fortnight (21 Dec 2018) .   "Favourite Security Reads of the Fortnight". Every two weeks we share news or articles that we like. We hope you will love this column and we welcome your comment via email to hkcert@hkcert....
Release Date: 21 Dec 2018 3383 Views

Favourite Security Reads of the Fortnight (7 Dec 2018)

  Favourite Security Reads of the Fortnight (7 Dec 2018) .   "Favourite Security Reads of the Fortnight". Every two weeks we share news or articles that we like. We hope you will love this column and we welcome your comment via email to [email protected].   Below is the favourite security reads of this fortnight.   Article written by HKCERT on Hong Kong Economic Times: 杜絕保安漏洞 由設計程式開始 (2018-11-16, Chinese) 遠端桌面連綫 4招確保安全 (2018-11-23, Chinese) 網上漏洞多 慎...
Release Date: 7 Dec 2018 3505 Views

Best Practice Guide of Remote Desktop (for corporate administrator)

Remote Desktop is a useful tool for remote control a computer, but misconfigured Remote Desktop is risky. Using weak password to protect Internet accessible remote desktop and sharing password to the technical support vendor are some of these examples. They could lead to server...
Release Date: 5 Dec 2018 3709 Views

The die was cast: Always handle customer information with caution

Again, another data leakage incident was found from a famous credit scoring company in Hong Kong. Someone might obtain your credit scoring report by abusing your personal information e.g. HKID, and pass the authentication process easily.    Failed to protect customer information is a...
Release Date: 29 Nov 2018 3247 Views