Security experts warn of the possibility of continued hacker attacks.

July 30, 2016 20:53

Cybersecurity experts consider the attacks on the information systems of Noi Bai and Tan Son Nhat airports to be particularly serious, and they do not rule out the possibility of further attacks.

According to security expert Nguyen Minh Duc, the attack on Vietnam Airlines' website was a very serious and terrifying event, and it was even more alarming when the notification systems at the country's two largest airports were also compromised.

chuyen-gia-bao-mat-canh-bao-kha-nang-tin-tac-tiep-tuc-tan-cong

Security experts believe the cyberattack at Noi Bai and Tan Son Nhat airports was meticulously planned in advance by hackers. (Illustrative image.)

"To transmit audio and change the display screens at both Noi Bai and Tan Son Nhat airports, hackers must have a thorough understanding of every detail within the network system, knowing which server performs which task. Furthermore, they must have been 'lying low' for a very long time beforehand without the administrators knowing," Mr. Duc emphasized.

According to him, the attack plan was meticulously and systematically prepared by the hackers. Meanwhile, Vietnam Airlines lacked a systematic approach to security. "It's not enough to just rely on brightly lit security equipment; it requires a team and a monitoring system to detect any unusual activity 24/7," Mr. Duc said.

Security expert Nguyen Hong Phuc shares the same view.It was stated that to achieve this level of penetration, the hacker would need to be highly skilled."The air attack didn't happen overnight; it may have been going on silently for some time, typical of a professional attack."

Mr. Phuc warned that, following reports of attacks on Noi Bai and Tan Son Nhat airports, there is a high possibility of further hacking incidents targeting Vietnamese websites and network systems. He suggested that network administrators and system operators should thoroughly review their systems and strengthen security measures during this period.

According to Mr. Ngo Tuan Anh, Vice President in charge of Cybersecurity at BKAV, the simple attack scenario often used by those behind this underground network to spread spyware is to send emails with attached text files containing a real document from the target organization, along with a real email address. Opening the file reveals the real content, but it also infects the computer with a virus because the file already contains spyware. When these text files are opened, the spyware infiltrates and takes control of the computer. They hide by disguising themselves as popular software such as Windows Update, Adobe Flash, Unikey input method editor, dictionaries, etc. They only operate when commanded by the attackers, making them very difficult to detect. These malicious codes silently steal information and send it to a control server, and through the control server, they receive commands to carry out other destructive acts.

Today, July 29th, numerous flight information display screens at Noi Bai and Tan Son Nhat airports, along with the airport's public address system, were unexpectedly infiltrated with inflammatory and distorted content regarding the East Sea. On the Vietnam Airlines website, users received a message stating that the website had been hacked, with the homepage content completely altered. The site displayed inflammatory language and information claiming that the hacker group 1937cn was responsible for the attack.

Additionally, a file containing a list of over 400,000 customer accounts of Vietnam Airlines, including full names, dates of birth, and addresses, has appeared on the internet.

1937cn is known as a notorious Chinese hacking group. According to hack-cn.com, a Chinese hacker statistics and ranking website, 1937cn has carried out over 40,000 attacks in the past.

According to VNE

RELATED NEWS

0 0 0
x
Security experts warn of the possibility of continued hacker attacks.
Google News
POWERED BYFREECMS- A PRODUCT OFNEKO