cyber security information portal - build a secure cyberspace … · 2019. 5. 21. · pisa...

23
Build a Secure Cyberspace 2019 Phishing Attack and Data Protection Frank Chow Program Director Professional Information Security Association <[email protected]>

Upload: others

Post on 30-Aug-2020

0 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Build a Secure Cyberspace 2019 –Phishing Attack and Data Protection

Frank ChowProgram DirectorProfessional Information Security Association<[email protected]>

Page 2: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

PISA (專業資訊保安協會) • Not-for-profit organization

• Facilitate knowledge and information sharing among the PISA members

• Promote the highest quality of technical and ethical standards to the

information security profession,

• Promote best-practices in information security control,

• Promote security awareness to the IT industry and general public in Hong

Kong,

• Be the de facto representative body of local information security professionals

• https://www.pisa.org.hk

Page 3: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

What are the Common Threats?

Source: Techterms.com, Lloyds of London, Forbes

Page 4: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

What is a Phishing Attack?

Source:Cloudflare

Page 6: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Top Social Media Email Subject

Source: https://www.securitybrigade.com

Page 7: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Top 10 General Email Subjects

Source: https://www.securitybrigade.com

Page 8: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Common "in the wild" Attacks

Source: https://www.securitybrigade.com

Page 9: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Phishing Email Sample (1)

• Too good to be true

Source: ISC2 HK

Page 10: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Phishing Email Sample (2)

Source: VISA

Page 11: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Phishing Email Sample (3)

Source: OUHK

Page 12: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Phishing Email Sample (4)

Source: OUHK

Page 13: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Watch Out for Emotions

Source: TheOrion

Page 14: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

How to Spot Phishing Email?

Source: SANS.

Page 16: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Data Protection (1)

Source: HackerCombat.com

Page 17: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Data Protection (2)

Source: HackerCombat.com

Page 18: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Data Protection (3)

Source: HackerCombat.com

Page 19: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Data Protection (4)

Source: HackerCombat.com

Page 20: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Last but not least … Spear Phishing

Source: The Star Graphics

Page 21: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Last but not least … Smartphone

Source: Digital Trends

Page 22: Cyber Security Information Portal - Build a Secure Cyberspace … · 2019. 5. 21. · PISA (專業資訊保安協會) • Not-for-profit organization • Facilitate knowledge and

Last but not least … Phishing+Ransomware

Source: Wall Street Journal