-
HKCERT Capture the Flag Challenge 2024 (From 13-September-2024 to 10-November-2024)
“HKCERT Capture The Flag 2024,” organised by the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) and the Hong Kong Productivity Council (HKPC), is now in its fifth edition. It is one of the largest cybersecurity competitions in Hong Kong, featuring four categories: Secondary School, Tertiary, Open, and International.
-
Embracing the e+ Internet Generation Parent Seminar (1): Establishing Home-School Collaboration Cultivate Healthy Internet Habits (26-October-2024)
An IT coordinator from Ling To Catholic Primary School will introduce to parents how to leverage the advantages of e-learning through home-school collaboration to enhance their children’s learning outcomes, nurture their information literacy, and help them master the skills needed to tackle various challenges in the future. Registered social workers of Hong Kong Playground Association will lead parents to understand the Internet usage patterns of the e-Generation and offer insights on how to prevent their children from becoming addicted to the Internet.
-
Cyber Security Summit 2024 (From 23-October-2024 to 24-October-2024)
Over the course of two days, attendees can expect captivating keynote speeches, thought-provoking panel discussions, and interactive workshops. Our theme for this year’s summit is “Cyber Security Fortification – The AI Paradox,” with a subtheme focusing on “Emerging Technologies, Legislation, Regulations, Privacy, and Compliance.”
-
“Together, We Create a Safe Cyberworld” Tram Promotion Campaign and Quiz Game (From 2-September-2024 to 29-September-2024)
The Digital Policy Office, the Hong Kong Police Force, and the Hong Kong Computer Emergency Response Team Coordination Centre jointly organized the "Together, We Create a Safe Cyberworld" tram promotion campaign. The three trams will feature the winning design from the "Together, We Create a Safe Cyberworld" tram body design contest and will be displayed across Hong Kong Island to convey cybersecurity messages. The aims are to arouse public awareness of cybersecurity, so as to prevent them from falling into online traps, and strengthen city-wide defence against cyberattacks.
-
Fraudulent website related to Bank of China (Hong Kong) Limited (27-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website, which has been reported to the HKMA.
-
IoT Security Guideline for Digital Signage (27-September-2024)
Due to network connectivity, digital signage is vulnerable to a series of cybersecurity challenges, which might affect the normal operation of signage, and endanger the network and data security connected to them. To address these challenges, this guideline aims to provide best practices and security measures for digital signage users, operators, advertisers and technology providers, in order to enhance the safety and privacy of the public, also ensure the long-term sustainable development of digital signage technology.
-
Security Alert (A24-09-22): Multiple Vulnerabilities in Google Chrome (26-September-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-09-21): Multiple Vulnerabilities in Cisco Products (26-September-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Transport Department alerts public to fraudulent SMS messages purportedly from HKeToll (26-September-2024)
The Transport Department (TD) today (September 26) alerted members of the public to fraudulent SMS messages purportedly issued by the HKeToll.
-
Two Men Arrested for Suspected Doxxing Arising from Monetary Disputes (26-September-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 37 (the first arrested person) and a Chinese male aged 47 in Kowloon and the New Territories respectively.
-
Phishing emails related to The Hongkong and Shanghai Banking Corporation Limited (25-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing emails, which have been reported to the HKMA.
-
Fraudulent website and social media page related to Dah Sing Bank, Limited (24-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
Transport Department alerts public to fraudulent SMS message purportedly from HKeToll (24-September-2024)
The Transport Department (TD) today (September 24) alerted members of the public to a fraudulent SMS message purportedly issued by the HKeToll.
-
UGC alerts public to fraudulent websites (23-September-2024)
The University Grants Committee (UGC) today (September 23) urged members of the public to remain vigilant against fraudulent websites, which were found to purport to be the website of the UGC.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (23-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which has been reported to the HKMA.
-
Promoting AI Security – PCPD Representatives Speak to Industry Practitioners (23-September-2024)
Representatives from the Office of the Privacy Commissioner for Personal Data (PCPD) attended two events on 20 September and shared with various industry practitioners the key features of the “Artificial Intelligence: Model Personal Data Protection Framework” (the Model Framework) published by the PCPD in June 2024.
-
Counter Cyber and Physical Terrorism Joint Exercise 2024 successfully concludes (21-September-2024)
The Cyber Security and Technology Crime Bureau (CSTCB) of the Hong Kong Police Force held the Counter Cyber and Physical Terrorism Joint Exercise 2024 codenamed BATTLEAIR in collaboration with the INTERPOL and the Macao Judiciary Police today (September 21) to enhance participants’ capabilities in responding to cyber attacks and physical counter terrorism.
-
HKCS Cyber Security Annual Forum 2024: Core Practice of Data Governance in Cyber Security and AI (20-September-2024)
The purpose of this forum is to provide industry practitioner in Hong Kong with latest trend and update on Data Governance and their impact on Cybersecurity in the backdrop of increasing adoption of AI tools.
-
Security Alert (A24-09-20): Multiple Vulnerabilities in Microsoft Edge (20-September-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent mobile application related to Bank of Singapore Limited (20-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Security Alert (A24-09-19): Multiple Vulnerabilities in Google Chrome (19-September-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-09-18): Multiple Vulnerabilities in Apple iOS and iPadOS (19-September-2024)
Apple has released iOS 17.7, iOS 18, iPadOS 17.7 and iPadOS 18 to fix the vulnerabilities in various Apple devices.
-
High Threat Security Alert (A24-09-17): Vulnerability in GitLab (19-September-2024)
GitLab has released 16.11.10, 17.0.8, 17.1.8, 17.2.7 and 17.3.3 to address a security restriction bypass vulnerability in various versions of GitLab.
-
High Threat Security Alert (A24-09-16): Multiple Vulnerabilities in VMware Products (19-September-2024)
VMware has published a security advisory to address multiple vulnerabilities in VMware products.
-
Fraudulent website and social media account related to Public Finance Limited (19-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Public Finance Limited relating to a fraudulent website and a social media account, which has been reported to the HKMA.
-
Privacy Commissioner Urges Job Seekers to Stay Vigilant about “Blind” Recruitment Advertisements Online Doxxing Messages Dropped by 90% on Third Anniversary of Anti-Doxxing Law (19-September-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) held a media briefing today to elaborate on the PCPD’s concern on the placing of “blind” recruitment advertisements (Blind Ads) on online recruitment platforms, as well as to report on its enforcement work in the past three years since the commencement of the provisions criminalising doxxing acts under the Personal Data (Privacy) Ordinance (PDPO).
-
Fraudulent social media account and phishing instant messages related to Shanghai Commercial Bank Limited (17-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Shanghai Commercial Bank Limited relating to a fraudulent social media account and phishing instant messages, which have been reported to the HKMA.
-
Building National Cybersecurity – Privacy Commissioner Attends 2024 China Cybersecurity Week Hong Kong Sub-forum (17-September-2024)
On 13 September, the Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, attended 2024 China Cybersecurity Week Hong Kong Sub-forum (Sub-forum), which was jointly organised by the Digital Policy Office, the Cyber Security and Technology Crime Bureau of the Hong Kong Police Force, and Hong Kong Internet Registration Corporation Limited. At the Sub-forum, the Privacy Commissioner exchanged views with the cybersecurity sector from both the Mainland and Hong Kong to learn about the latest cybersecurity technologies and trends.
-
C&WDO receives report of loss of hirer data by facility management services contractor of Sai Ying Pun Community Complex (16-September-2024)
The Central and Western District Office (C&WDO) received a report of the loss of hirer data by a facility management services contractor today (September 16).
-
網絡安全雲競答 (Chinese Only) (From 5-September-2024 to 15-September-2024)
網絡安全雲競答正式上線啦! (Chinese Only)
-
2024 Cybersecurity Week Fun Day (From 7-September-2024 to 15-September-2024)
In order to raise public awareness of cybersecurity and to strengthen the city's ability to defend against cyber attacks, the "Together, We Create a Safe Cyberworld" Cybersecurity Week Fun Day, organised by the Digital Policy Office (DPO), Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT), and co-organised by the Hong Kong Police Force (HKPF), is scheduled to be held on 7-15 September 2024 at D-Park, Tsuen Wan, Hong Kong.
-
Security Alert (A24-09-15): Multiple Vulnerabilities in Microsoft Edge (13-September-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
High Threat Security Alert (A24-09-14): Multiple Vulnerabilities in GitLab (13-September-2024)
GitLab has released 17.1.7, 17.2.5 and 17.3.2 to address multiple vulnerabilities in various versions of GitLab.
-
Digital Policy Office holds Cybersecurity Technology Forum (with photos) (13-September-2024)
The Digital Policy Office (DPO) held its 20th Technology Forum at the Hong Kong Productivity Council (HKPC) today (September 13). The forum, with the theme "Adopting Innovative Technologies to Cope with Cybersecurity Threats", was held in hybrid mode and attracted about 900 colleagues from nearly 100 government departments and public organisations.
-
創新科技及工業局局長出席「2024國家網絡安全宣傳周--香港分論壇」致辭全文 (Chinese only) (with photos) (13-September-2024)
以下是創新科技及工業局局長孫東教授今日(九月十三日)在「2024國家網絡安全宣傳周—香港分論壇」的致辭全文。 (Chinese only) (with photos)
-
Speech by Mr Kingsley Wong, BBS, Assistant Commissioner (Project Governance and Cybersecurity), at the “2024 China Cybersecurity Week Hong Kong Sub-forum” (with photos) (Chinese only) (13-September-2024)
Only Chinese version is available for this speech / presentation.
-
Opening Remarks by Ir Tony Wong, JP, Commissioner for Digital Policy, at the “Cybersecurity Technology Forum - Adopting Innovative Technologies to Cope with Cybersecurity Threats” (with photos) (Chinese only) (13-September-2024)
Only Chinese version is available for this speech / presentation.
-
Building National Cybersecurity – Privacy Commissioner Delivers Keynote Speech at 2024 China Cybersecurity Week Macao Sub-forum (13-September-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling attended the 2024 China Cybersecurity Week Macao Sub-forum (Sub-forum) on Personal Data Protection on 12 September and delivered a keynote speech.
-
Security Alert (A24-09-13): Multiple Vulnerabilities in Cisco Products (12-September-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Phishing emails related to The Hongkong and Shanghai Banking Corporation Limited (12-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing emails, which have been reported to the HKMA.
-
Security Alert (A24-09-12): Multiple Vulnerabilities in Fortinet Products (11-September-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
High Threat Security Alert (A24-09-11): Multiple Vulnerabilities in Adobe Reader/Acrobat (11-September-2024)
Patches are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
Security Alert (A24-09-10): Multiple Vulnerabilities in Google Chrome (11-September-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-09-09): Multiple Vulnerabilities in Ivanti Products (11-September-2024)
Ivanti has released security advisories to address multiple vulnerabilities in Ivanti products.
-
High Threat Security Alert (A24-09-08): Multiple Vulnerabilities in Microsoft Products (September 2024) (11-September-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Phishing instant messages related to The Hongkong and Shanghai Banking Corporation Limited (11-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Phishing emails related to ZA Bank Limited (10-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by ZA Bank Limited relating to phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Publishes “Personal Data (Privacy) Law in Hong Kong – A Practical Guide on Compliance (Third Edition)”to Echo with 2024 China Cybersecurity Week (10-September-2024)
In support of 2024 China Cybersecurity Week, the Office of the Privacy Commissioner for Personal Data (PCPD) has collaborated with the City University of Hong Kong Press in publishing the third edition of “Personal Data (Privacy) Law in Hong Kong – A Practical Guide on Compliance”.
-
Security Alert (A24-09-07): Multiple Vulnerabilities in QNAP Products (9-September-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Commissioner for Digital Policy attends Cybersecurity Technology Summit (with photos) (9-September-2024)
The Commissioner for Digital Policy, Mr Tony Wong, and a delegation from Hong Kong's cybersecurity industry today (September 9) continued to attend the main venue events of 2024 China Cybersecurity Week in Nansha, Guangzhou.
-
創新科技及工業局局長出席2024年國家網絡安全宣傳周開幕式致辭全文 (Chinese only) (with photos) (8-September-2024)
以下是創新科技及工業局局長孫東教授今日(九月八日)在2024年國家網絡安全宣傳周開幕式的致辭全文。 (Chinese only)
-
SITI attends opening ceremony of 2024 China Cybersecurity Week (with photos) (8-September-2024)
The Secretary for Innovation, Technology and Industry, Professor Sun Dong, attended the opening ceremony of 2024 China Cybersecurity Week this morning (September 8) in the main venue in Nansha, Guangzhou, and witnessed the signing of the memorandum of understanding (MoU) on cybersecurity collaboration among the Digital Policy Office of the Hong Kong Special Administrative Region (SAR) Government, the Cyberspace Administration of Guangdong Province (CAGP), and the Comissão para a Cibersegurança of the Macao SAR Government.
-
2024 Cybersecurity Week Fun Day An Innovative Approach to Promoting Cybersecurity (7-September-2024)
In response to the China Cybersecurity Awareness Week and to enhance public understanding of cybersecurity, the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT), the Digital Policy Office (DPO), and the Hong Kong Police Force (HKPF) officially launched the "2024 Cybersecurity Awareness Campaign" today.
-
創新科技及工業局局長出席「2024網絡安全宣傳周同樂日」啓動禮致辭全文 (Chinese only) (with photos) (7-September-2024)
以下是創新科技及工業局局長孫東教授今日(九月七日)在「2024網絡安全宣傳周同樂日」啓動禮的致辭全文。 (Chinese only)
-
"2024 Cybersecurity Awareness Campaign" launched (with photos) (7-September-2024)
In support of the China Cybersecurity Week, the "2024 Cybersecurity Awareness Campaign" organised by the Digital Policy Office (DPO) was officially launched today (September 7).
-
Build a Secure Cyberspace 2024 - “Together, We Create a Safe Cyberworld” Seminar and Tram Body Design Contest Award Ceremony (7-September-2024)
The Digital Policy Office (DPO), the Hong Kong Police Force (HKPF) and the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) are co-organising the "Together, We Create a Safe Cyberworld" Seminar and Award Presentation Ceremony. In the seminar, cybersecurity experts will discuss how to prevent from falling into online traps in order to strengthen the public's ability to protect themselves. During the ceremony, awards will be presented to the winners of the Tram Body Design Contest, recognising their active participation in promoting cybersecurity and their outstanding designs.
-
SITI to attend opening ceremony of 2024 China Cybersecurity Week in Guangzhou (6-September-2024)
The Secretary for Innovation, Technology and Industry, Professor Sun Dong, will depart for Nansha, Guangzhou, tomorrow (September 7) to attend the opening ceremony of 2024 China Cybersecurity Week and deliver an opening speech.
-
Security Alert (A24-09-06): Vulnerability in OpenSSL (5-September-2024)
OpenSSL has released 3.0.15, 3.1.7, 3.2.3 and 3.3.2 to fix the vulnerability in various versions of OpenSSL.
-
Security Alert (A24-09-05): Multiple Vulnerabilities in Firefox (5-September-2024)
Mozilla has published the advisories (MFSA2024-39, MFSA2024-40 and MFSA2024-41) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-09-04): Multiple Vulnerabilities in Cisco Products (5-September-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Phishing messages related to WeChat Pay Hong Kong Limited (5-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by WeChat Pay Hong Kong Limited relating to phishing messages.
-
Fraudulent social media page related to Bank of Singapore Limited (5-September-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent social media page, which has been reported to the HKMA.
-
Security Alert (A24-09-03): Multiple Vulnerabilities in Android (4-September-2024)
Google has released Android Security Bulletin September 2024 to fix multiple security vulnerabilities in Android operating system.
-
Security Alert (A24-09-02): Multiple Vulnerabilities in Google Chrome (4-September-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-09-01): Vulnerability in VMware Fusion (4-September-2024)
VMware has published a security advisory to address a vulnerability in VMware Fusion.
-
WSD urges public to be alert to fraudulent SMS message (2-September-2024)
The Water Supplies Department (WSD) today (September 2) alerted the public to a fraudulent SMS message purportedly issued by the department.
-
創新科技及工業局局長出席2024網絡安全宣傳周──電車宣傳啟動禮致辭全文 (Chinese only) (with photos) (2-September-2024)
以下是創新科技及工業局局長孫東教授今日(九月二日)在2024網絡安全宣傳周──電車宣傳啟動禮的致辭全文。 (Chinese only)
-
A 50-year-old Female Arrested for Suspected Doxxing Arising from Monetary Disputes (2-September-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 50 in the New Territories.
-
“Together, We Create a Safe Cyberworld” Tram Promotion Officially Launches HKCERT Urges the Public to Beware of Cyber Attacks and Promotes Cybersecurity (2-September-2024)
The Tram Promotion - "Together, We Create a Safe Cyberworld" ("The Promotion") has been jointly launched by the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT), the Digital Policy Office (DPO), and the Hong Kong Police Force at the Whitty Street Tram Depot. The Promotion, in responding to China Cybersecurity Week, aims to raise public awareness and adaptability regarding cybersecurity.
-
Dataverse Short Video Competition (From 25-May-2024 to 31-August-2024)
Please see Chinese version.
-
Cyber Security Staff Awareness Recognition Scheme (From 8-April-2024 to 31-August-2024)
Promote “Human Firewall” concept among the industry by raising cyber security staff awareness on top of technical protection as a second level defense line.
-
Fraudulent websites related to DBS Bank (Hong Kong) Limited (30-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites, which have been reported to the HKMA.
-
Phishing emails related to Tai Sang Bank Limited (30-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Tai Sang Bank Limited relating to phishing emails, which have been reported to the HKMA.
-
Beware of counterfeit mobile apps purporting to be made by Guangdong-Hong Kong-Macao Greater Bay Area Development Office (30-August-2024)
The Guangdong-Hong Kong-Macao Greater Bay Area Development Office of the Constitutional and Mainland Affairs Bureau today (August 30) again appealed to members of the public for heightened vigilance against counterfeit mobile apps purporting to be made by the Office.
-
Bug Hunting Campaign 2024 (From 24-June-2024 to 30-August-2024)
Many data leaks are caused by unpatched system vulnerabilities or human errors in system configuration. As the protection of personal data is closely related to network security, Cyber Security and Technology Crime Bureau (CSTCB) of the Hong Kong Police Force partners with Cyberbay and Office of the Privacy Commissioner for Personal Data to co-organise the BugHunting Campaign to facilitate protecting your business, and to supercharge your cybersecurity posture via Bug Bounty service.
-
Mastering Multinational Cyber Defense: Lesson Learned and Challenge from Global Red Teaming Initiatives (29-August-2024)
This comprehensive seminar will share invaluable lesson learned from a large-scale, multinational Red Teaming initiative, equipping attendees with a proven playbook for mastering global cyber defence.
-
Security Alert (A24-08-15): Multiple Vulnerabilities in Cisco Products (29-August-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Security Alert (A24-08-14): Multiple Vulnerabilities in Google Chrome (29-August-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Transport Department alerts public to fraudulent SMS message of HKeToll (29-August-2024)
The Transport Department (TD) today (August 29) alerted members of the public to a fraudulent SMS message purportedly issued by the HKeToll.
-
APCERT Cyber Drill 2024 “APT Group Attack Response: Where is Wally?” (29-August-2024)
The Asia Pacific Computer Emergency Response Team (APCERT) today has successfully completed its annual drill to test the response capabilities of leading Computer Security Incident Response Teams (CSIRT) among Asia Pacific economies.
-
Fraudulent mobile application related to Bank of Singapore Limited (28-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Unauthorised websites and mobile applications related to Livi Bank Limited (28-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to unauthorised websites and mobile applications (Apps), which have been reported to the HKMA.
-
Promoting AI Security – PCPD Representative Speaks to the Financial Sector (28-August-2024)
Acting Senior Legal Counsel (Global Affairs & Research) of the Office of the Privacy Commissioner for Personal Data (PCPD), Ms Joyce LIU, spoke on 27 August at a webinar jointly organised by Hong Kong Investment Funds Association and Private Wealth Management Association on the PCPD’s recent guidance titled “Artificial Intelligence: Model Personal Data Protection Framework”(Model Framework).
-
HKMC Alerts Public of Impersonation Scam (27-August-2024)
The Hong Kong Mortgage Corporation Limited (HKMC) has recently received public inquiries about someone calling citizens and claiming to offer personal loans under the 100% Personal Loan Guarantee Scheme (PLGS) or small and medium-sized enterprise (SME) loans under the SME Financing Guarantee Scheme (SFGS).
-
HKCERT 2024「全城攜守 網安在手」網絡安全宣傳周 電車車身設計比賽得獎電車9月2日啟航 同樂日聯乘「DDED」首推「網安小C虎」宣揚網絡安全 (Chinese only) (27-August-2024)
2024年正值網絡強國戰略目標提出十周年的重要節點,為響應國家網絡安全宣傳周及提高公眾對網絡安全的認識,加強全城防禦網絡攻擊的能力,香港網絡安全事故協調中心(HKCERT) 聯同數字政策辦公室、香港警務處及將於9月舉行「全城攜守 網安在手」電車宣傳活動及「2024網絡安全宣傳周同樂日」兩項重點活動,以嶄新方式教育市民網絡安全知識。 (Chinese only)
-
Fraudulent websites and social media accounts related to Airstar Bank Limited (26-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to fraudulent websites and social media accounts, which have been reported to the HKMA.
-
Phishing instant messages related to Bank of China (Hong Kong) Limited (26-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing instant messages, which have been reported to the HKMA.
-
A 45-year-old Man Arrested for Suspected Doxxing of His Former Supervisor (26-August-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 45 in the New Territories.
-
Security Alert (A24-08-13): Vulnerability in SonicWall Products (23-August-2024)
SonicWall released a security advisory to address a vulnerability in SonicWall systems.
-
High Threat Security Alert (A24-08-12): Multiple Vulnerabilities in Microsoft Edge (23-August-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website and phishing emails related to Public Bank (Hong Kong) Limited (23-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Public Bank (Hong Kong) Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites and phishing instant messages related to Industrial and Commercial Bank of China (Asia) Limited (23-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Industrial and Commercial Bank of China (Asia) Limited relating to fraudulent websites and phishing instant messages, which have been reported to the HKMA.
-
Fraudulent mobile application related to Bank of Singapore Limited (23-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Fraudulent websites and phishing instant messages related to Mox Bank Limited (23-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Mox Bank Limited relating to fraudulent websites and phishing instant messages, which have been reported to the HKMA.
-
CSA HKM Knowledge Sharing Event – August 2024 (22-August-2024)
From this session, cybersecurity leaders and defenders will gain insights into the adversary’s playbook, learning about novel vectors such as AI-driven attacks and evolutions in ransomware. The session is designed to empower cybersecurity professionals with knowledge to anticipate and meet the challenge of these advanced threats.
-
High Threat Security Alert (A24-08-11): Multiple Vulnerabilities in Google Chrome (22-August-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-08-10): Multiple Vulnerabilities in Cisco Products (22-August-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Phishing instant messages related to The Hongkong and Shanghai Banking Corporation Limited (22-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Fraudulent websites and phishing instant messages related to Hang Seng Bank, Limited (22-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to fraudulent websites and phishing instant messages, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Issues New Versions of “Code of Practice on the Identity Card Number and other Personal Identifiers: Compliance Guide for Data Users” and Information Leaflet titled “Your Identity Card Number and Your Privacy” (22-August-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today issued a new version of the “Code of Practice on the Identity Card Number and other Personal Identifiers: Compliance Guide for Data Users” (the Compliance Guide) to assist organisations in complying with the requirements under the “Code of Practice on the Identity Card Number and other Personal Identifiers” issued by the PCPD as regards the collection, accuracy, retention, use and security of ID Card numbers, copies of the ID Card and other personal identifiers.
-
Fraudulent websites and phishing instant messages related to Bank of China (Hong Kong) Limited (21-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and phishing instant messages, which have been reported to the HKMA.
-
CFS alerts public to fake social media accounts and website (21-August-2024)
The Centre for Food Safety (CFS) of the Food and Environmental Hygiene Department today (August 21) alerted the public to fake social media accounts and a website of the CFS, which are also suspected of fraudulently using the CFS's logo in the social media accounts' profile picture and on the website.
-
Next-Level Phishing: The Evolving Threat Landscape (21-August-2024)
Phishing have become a common means of cybercrimes, but as technology advances, the methods used by criminals continue to evolve. This article issued by HKCERT explores the techniques of next-level phishing and preventive measures.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (20-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Fraudulent social media account and phishing instant messages related to Bank of Singapore Limited (20-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent social media account and phishing instant messages, which have been reported to the HKMA.
-
Fraudulent websites and phishing instant messages related to The Hongkong and Shanghai Banking Corporation Limited (20-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to fraudulent websites and phishing instant messages, which have been reported to the HKMA.
-
Fraudulent website and phishing emails related to Dah Sing Bank, Limited (19-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Police Anti-Deception Coordination Centre launches Anti-Scam Month campaign (with photos) (19-August-2024)
To mark the opening of the "Anti-Scam Month" campaign, Police Anti-Deception Coordination Centre (ADCC) of the Commercial Crime Bureau (CCB) today (August 19) launched a new series of anti-scam promotional videos to be broadcast on various platforms.
-
A 48-year-old Male Arrested for Suspected Doxxing Acts (16-August-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 48 in the New Territories.
-
Phishing emails related to Dah Sing Bank, Limited (16-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to phishing emails, which have been reported to the HKMA.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (16-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A24-08-09): Multiple Vulnerabilities in Fortinet Products (16-August-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
Phishing instant messages related to Bank of China (Hong Kong) Limited (15-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Fraudulent social media account related to Livi Bank Limited (15-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to a fraudulent social media account, which has been reported to the HKMA.
-
Promoting AI Security – Privacy Commissioner Publishes an Article titled “Artificial Intelligence: The Model Personal Data Protection Framework” on Hong Kong Lawyer (15-August-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article titled “Artificial Intelligence: The Model Personal Data Protection Framework” on Hong Kong Lawyer.
-
The 2nd Hong Kong Cybersecurity Skills Competition (From 15-July-2024 to 14-August-2024)
With an aim to attract talents from the related fields across different regions, 3 different competition zones will be introduced in the 2nd Hong Kong Cybersecurity Skills Competition: Hong Kong (China), Guangzhou (China), and Australia. The finalists from these 3 zones will gather at HKCT for the final round of competition. They will compete against each other and vie for the championship and various awards.
-
Security Alert (A24-08-08): Multiple Vulnerabilities in Adobe Reader/Acrobat (14-August-2024)
Patches are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
High Threat Security Alert (A24-08-07): Multiple Vulnerabilities in Microsoft Products (August 2024) (14-August-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Alert issued on fake HKPF websites (14-August-2024)
The Hong Kong Police Force (HKPF) alerted members of the public today (August 14) that there were four fraudulent websites purportedly to be the HKPF website.
-
Fraudulent websites related to Bank Julius Baer & Co. Ltd. (13-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to fraudulent websites, which have been reported to the HKMA.
-
Phishing emails related to Tai Sang Bank Limited (13-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Tai Sang Bank Limited relating to phishing emails, which have been reported to the HKMA.
-
WSD urges public to be alert to fraudulent SMS message (12-August-2024)
The Water Supplies Department (WSD) today (August 12) alerted the public to a fraudulent SMS message purportedly issued by the department.
-
Fraudulent website and social media page related to DBS Bank (Hong Kong) Limited (12-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
Government announces appointments to Committee of the Artificial Intelligence Subsidy Scheme (12-August-2024)
The Government announced today (August 12) the appointments to the Committee of the Artificial Intelligence Subsidy Scheme.
-
A 25-year-old Male Arrested for Suspected Doxxing Arising from Relationship Entanglements (12-August-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 25 in Kowloon.
-
Security Alert (A24-08-06): Multiple Vulnerabilities in Microsoft Edge (9-August-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent mobile application related to Bank of Singapore Limited (9-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent application (App), which has been reported to the HKMA.
-
Ransomware's New Front: Uncovering the Latest Threats Facing Hong Kong (9-August-2024)
Ransomware remains a significant threat in the cybersecurity landscape, continuously evolving with new tactics and techniques. HKCERT explored the current attack vectors of ransomware incidents and the latest developments in ransomware and offered practical recommendations based on findings, focusing on the Asia-Pacific region, especially in Hong Kong.
-
High Threat Security Alert (A24-08-05): Multiple Vulnerabilities in Cisco Products (8-August-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
High Threat Security Alert (A24-08-04): Multiple Vulnerabilities in Microsoft Windows (8-August-2024)
Microsoft has released out-of-band security advisories to address the vulnerabilities in Microsoft Windows and Server.
-
Privacy Commissioner Publishes Investigation Findings on the Data Breach Incidents of (1) The Council of the Hong Kong Laureate Forum Limited and (2) The Hong Kong Ballet Limited (8-August-2024)
On completion of its investigation into the data breach incidents of The Council of the Hong Kong Laureate Forum Limited (the Council) and The Hong Kong Ballet Limited (HKB), the Office of the Privacy Commissioner for Personal Data (PCPD) published its findings today.
-
Security Alert (A24-08-03): Multiple Vulnerabilities in Firefox (7-August-2024)
Mozilla has published the advisories (MFSA2024-33, MFSA2024-34 and MFSA2024-35) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-08-02): Multiple Vulnerabilities in Google Chrome (7-August-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-08-01): Multiple Vulnerabilities in Android (7-August-2024)
Google has released Android Security Bulletin August 2024 to address multiple vulnerabilities in Android operating system.
-
Phishing messages and fraudulent websites related to Octopus Cards Limited (7-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to phishing messages and fraudulent websites.
-
Promoting AI Security – Privacy Commissioner Publishes an Article entitled “The Era of AI: A Model Framework for Personal Data Protection for Directors” (7-August-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “The Era of AI: A Model Framework for Personal Data Protection for Directors” on The 21st Century Director, the monthly magazine of The Hong Kong Institute of Directors.
-
Fraudulent website and phishing instant messages related to The Hongkong and Shanghai Banking Corporation Limited (6-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to a fraudulent website and phishing instant messages, which have been reported to the HKMA.
-
Data Security Transition to and Cybersecurity Challenge 2024 (From 19-July-2024 to 6-August-2024)
The cybersecurity competition is a very important event. The "SHIELDtag" aims to raise public awareness of cybersecurity and to promote the development of cybersecurity technology in Hong Kong. Participants will showcase their skills and knowledge in the competition by solving a series of cybersecurity issues to achieve victory.
-
Cyber Attack and Defence Elite Training cum Tournament successfully concludes (with photos) (2-August-2024)
The three-day Cyber Attack and Defence Elite Training cum Tournament (CADET2), co-organised by the Cyber Security and Technology Crime Bureau (CSTCB) of the Hong Kong Police Force, the Digital Policy Office (DPO) and the Hong Kong Internet Registration Corporation Limited (HKIRC), successfully concluded today (August 2).
-
Security Alert (A24-07-26): Multiple Vulnerabilities in Microsoft Edge (2-August-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent websites and internet banking login screens related to Dah Sing Bank, Limited (2-August-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Promoting AI Safety – Privacy Commissioner’s Office Organises a Seminar (1-August-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) organised a seminar on “AI and Privacy Protection: Balancing Innovation and Safety” in hybrid mode on 30 July, which attracted nearly 1,000 participants.
-
Expansion of Suspicious Account Alert for internet banking and physical branches transactions (1-August-2024)
The Hong Kong Monetary Authority (HKMA), in collaboration with the Hong Kong Police Force (the Police) and the Hong Kong Association of Banks (HKAB), announces today (August 1) that 32 banks and 10 stored value facility (SVF) operators (see Annex for the list of participating institutions) will, starting from August 4, 2024, extend the coverage of the Suspicious Account Alert for internet banking and physical branches transactions, for providing enhanced protection to customers against rising fraud risks.
-
Privacy Commissioner’s Office Offers Six Tips to Prevent Fraud (1-August-2024)
The PCPD appeals to members of the public and organisations to beware of various forms of fraudulent tricks, particularly those involving AI deepfake technology, and offers six essential tips to safeguard personal data privacy.
-
Security Alert (A24-07-25): Multiple Vulnerabilities in Google Chrome (31-July-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Fraudulent website and social media page related to Public Finance Limited (31-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Public Finance Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
Opening Remarks by Ir Tony Wong, JP, Commissioner for Digital Policy, at the "Technology Forum - Empower Public Service Development Through National Self-developed Diversified Technologies" (with photos) (Chinese only) (30-July-2024)
Only Chinese version is available for this speech / presentation.
-
Security Alert (A24-07-24): Multiple Vulnerabilities in Apple iOS and iPadOS (30-July-2024)
Apple has released iOS 16.7.9, iOS 17.6, iPadOS 16.7.9 and iPadOS 17.6 to fix the vulnerabilities in various Apple devices.
-
Digital Policy Office holds Technology Forum (with photos) (30-July-2024)
The Digital Policy Office (DPO) held its 19th Technology Forum at the Hong Kong Science Park today (July 30). The Commissioner for Digital Policy, Mr Tony Wong, introduced at the forum the main tasks and future development directions of the DPO.
-
Phishing fraud and counterfeit UnionPay International websites (29-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by UnionPay International on phishing fraud and counterfeit UnionPay International websites, which have been reported to the HKMA.
-
Fraudulent website and phishing emails related to Bank Julius Baer & Co. Ltd. (29-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
CSA HKM Knowledge Sharing Event – July 2024 – Discussion Forum (26-July-2024)
How should "WE" make the CyberSecurity Framework to enhance the Critical Infrastructure protection?
-
Security Alert (A24-07-23): Multiple Vulnerabilities in Microsoft Edge (26-July-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Promoting AI Security – Privacy Commissioner Publishes an Article entitled “City’s AI data guidelines can help firms embrace the future” (25-July-2024)
The Privacy Commissioner pointed out that while organisations in various industries have been exploring ways to integrate artificial intelligence (AI) into their operations to enhance efficiency and diversify business portfolios, they are concerned about difficulties in compliance in the absence of guidance.
-
Digital Policy Office established today (25-July-2024)
The Digital Policy Office (DPO) under the Innovation, Technology and Industry Bureau (ITIB) was officially established today (July 25). The DPO will take the lead in promoting data-driven, people-centric and outcome-based digital policies within the Government and across various sectors for enhancing the Government's efficiency and services, with a view to bringing greater benefits to citizens and business sectors through digital government and smart city development.
-
Beware of Juice Jacking when Charging Mobile Phones at Public Charging Stations (24-July-2024)
In today's world, many shopping malls, coffee shops, and even public facilities offer complimentary charging stations as part of their enhanced customer services. These stations provide a convenient way for patrons to quickly recharge their mobile phones. However, users of such services may not realise that their phones could be subject to cyber attacks.
-
Security Alert (A24-07-22): Multiple Vulnerabilities in Google Chrome (24-July-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Suspicious websites and internet banking login screens related to Mox Bank Limited (24-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Mox Bank Limited relating to suspicious websites and internet banking login screens, which have been reported to the HKMA.
-
Phishing instant messages related to Fubon Bank (Hong Kong) Limited (24-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Fraudulent websites related to Bank Julius Baer & Co. Ltd. (22-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to fraudulent websites, which have been reported to the HKMA.
-
A 40-year-old Male Arrested for Suspected Doxxing Arising from Relationship Entanglements (22-July-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 40 in the New Territories.
-
網絡攻防精英培訓暨攻防大賽 (Chinese Only) (From 20-July-2024 to 21-July-2024)
近日接連發生的網絡攻擊事故,令大小機構的網絡安全問題備受全城關注。為了有效預防同類事件繼續發生,並提高網絡安全的預警和應對能力,香港互聯網註冊管理有限公司(HKIRC)聯同網絡安全及科技罪案調查科(CSTCB)及政府電腦保安事故協調中心(GovCERT.HK)攜手合辦第三季網絡安全旗艦活動。(Chinese Only)
-
Security Alert (A24-07-21): Multiple Vulnerabilities in Microsoft Edge (19-July-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
High Threat Security Alert (A24-07-20): Multiple Vulnerabilities in Ivanti Products (19-July-2024)
Ivanti has released security advisories to address multiple vulnerabilities in Ivanti products.
-
Home Affairs Department urges public to be aware of fraudulent Facebook page "Bloomy The Tree" (19-July-2024)
A spokesman for the Home Affairs Department (HAD) today (July 19) alerted members of the public to a fraudulent Facebook page purported to be the "社企友建樹 Bloomy The Tree" Facebook page.
-
Fraudulent websites and social media accounts related to The Hongkong and Shanghai Banking Corporation Limited (19-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to fraudulent websites and social media accounts, which have been reported to the HKMA.
-
Security Alert (A24-07-19): Multiple Vulnerabilities in SonicWall Products (18-July-2024)
SonicWall released security advisories to address multiple vulnerabilities in SonicWall systems.
-
Security Alert (A24-07-18): Multiple Vulnerabilities in Oracle Java and Oracle Products (July 2024) (18-July-2024)
Oracle has released the Critical Patch Update (CPU) Advisory with collections of patches for multiple vulnerabilities found in Java SE and various Oracle products.
-
Security Alert (A24-07-17): Multiple Vulnerabilities in Apache HTTP Server (18-July-2024)
The Apache Software Foundation released a security update to address multiple vulnerabilities in the HTTP Server and its modules.
-
High Threat Security Alert (A24-07-16): Multiple Vulnerabilities in Cisco Products (18-July-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Security Alert (A24-07-15): Multiple Vulnerabilities in Google Chrome (17-July-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
DH alerts public to fraudulent EatSmart Restaurant Star + website and social media page (17-July-2024)
The Department of Health (DH) today (July 17) alerted members of the public to a suspected fraudulent website and Facebook page of the DH's "EatSmart Restaurant Star +" Campaign, and urged the public to avoid providing any personal information through hyperlinks from unknown sources at suspicious websites.
-
Security Alert (A24-07-14): Multiple Vulnerabilities in Juniper Networks Junos OS and Junos OS Evolved (16-July-2024)
Juniper Networks has published security advisories to address multiple vulnerabilities in Junos OS and Junos OS Evolved.
-
High Threat Security Alert (A24-07-13): Vulnerability in Cisco Products (16-July-2024)
Cisco released security advisories to address a remote code execution vulnerability (CVE-2024-6387) in Cisco devices and software.
-
Alert issued on fake HKPF Website of Online Booking System (16-July-2024)
The Hong Kong Police Force (HKPF) alerted members of the public today (July 16) that there was a fraudulent website purportedly to be the Online Booking System developed by the HKPF.
-
Welcome Remarks by Mr Daniel Cheung, JP, Assistant Government Chief Information Officer (Cyber Security and Digital Identity), at the “2nd Hong Kong Cybersecurity Quiz Competition for Primary School Students” (with photos) (Chinese only) (15-July-2024)
Only Chinese version is available for this speech
-
Response of the Privacy Commissioner's Office to the Consumer Council's Study Report on Home Removal Companies (15-July-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) noted that the Consumer Council published a study report on the services of home removal companies, in which 10 companies were reported to have failed to establish a privacy policy, and one company was reported to state that the longest retention period for photos and videos used for quotation was 10 years.
-
High Threat Security Alert (A24-07-12): Multiple Vulnerabilities in Palo Alto Products (12-July-2024)
Palo Alto has published security advisories to address multiple vulnerabilities in PAN-OS, Expedition and Cortex XDR Agent.
-
High Threat Security Alert (A24-07-11): Vulnerability in RADIUS protocol (12-July-2024)
A critical privilege escalation vulnerability (CVE-2024-3596) was found in RADIUS network authentication protocol.
-
Transport Department alerts public to fraudulent SMS message of HKeToll (12-July-2024)
The Transport Department (TD) today (July 12) alerted members of the public to fraudulent SMS messages purportedly issued by the HKeToll.
-
A 21-year-old Male Arrested for Suspected Doxxing Arising from Relationship Entanglements (12-July-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 21 in Kowloon.
-
Security Alert (A24-07-10): Multiple Vulnerabilities in Juniper Networks Junos OS and Junos OS Evolved (11-July-2024)
Juniper Networks has published security advisories to address multiple vulnerabilities in Junos OS and Junos OS Evolved.
-
High Threat Security Alert (A24-07-09): Multiple Vulnerabilities in GitLab (11-July-2024)
GitLab has released 16.11.6, 17.0.4 and 17.1.2 to address multiple vulnerabilities in various versions of GitLab.
-
CyberSecurity Tips for Travelling (11-July-2024)
It's the summertime travel season. While you are on holiday, remember that hackers don't take time off. HKCERT has prepared the following travel tips to help you enjoy your trip and keep your network safe.
-
Security Alert (A24-07-08): Multiple Vulnerabilities in Fortinet Products (10-July-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
Security Alert (A24-07-07): Multiple Vulnerabilities in Citrix Products (10-July-2024)
Citrix released security advisories to address multiple vulnerabilities in Citrix products.
-
Security Alert (A24-07-06): Multiple Vulnerabilities in Firefox (10-July-2024)
Mozilla has published the advisories (MFSA2024-29 and MFSA2024-30) to address multiple vulnerabilities in Firefox browser.
-
High Threat Security Alert (A24-07-05): Multiple Vulnerabilities in Microsoft Products (July 2024) (10-July-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Transport Department alerts public to fraudulent SMS message of HKeToll (10-July-2024)
The Transport Department (TD) today (July 10) alerted members of the public to fraudulent SMS message purportedly issued by the HKeToll.
-
Enhancing Data Security – Privacy Commissioner’s Office Reruns the Seminar on “Lessons from Data Breach Cases and Recommended Data Security Measures” (10-July-2024)
Owing to the overwhelming response of the seminar held earlier, the Office of the Privacy Commissioner for Personal Data re-organised the seminar on “Lessons from Data Breach Cases and Recommended Data Security Measures” in hybrid mode on 9 July, which attracted over 620 participants.
-
Weaponisation of AI: The New Frontier in Cybersecurity (10-July-2024)
The advent of artificial intelligence (AI) ushers in an era of unprecedented technological advancements, assisting various industries for further development. However, alongside these benefits, the misuse of artificial intelligence has also facilitated hackers and been "weaponised" by them to carry out cyber attacks, become a significant concern, particularly in the field of cybersecurity.
-
Fraudulent website and phishing emails related to China CITIC Bank International Limited (8-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
A 38-year-old Female Arrested for Suspected Doxxing Arising from Relationship and Monetary Disputes (5-July-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 38 in the New Territories.
-
Security Alert (A24-07-04): Vulnerability in Apache Tomcat (4-July-2024)
The Apache Software Foundation released security updates to address a vulnerability in the Apache Tomcat.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (4-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Fraudulent website and internet banking login screen related to DBS Bank (Hong Kong) Limited (4-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-07-03): Multiple Vulnerabilities in Android (3-July-2024)
Google has released Android Security Bulletin July 2024 to address multiple vulnerabilities in Android operating system.
-
High Threat Security Alert (A24-07-02): Vulnerability in OpenSSH (2-July-2024)
OpenSSH has released a new version to address a vulnerability in various versions of OpenSSH.
-
Security Alert (A24-07-01): Multiple Vulnerabilities in Apache HTTP Server (2-July-2024)
The Apache Software Foundation released a security update to address multiple vulnerabilities in the HTTP Server and its modules.
-
Fraudulent social media account and phishing instant messages related to Royal Bank of Canada (2-July-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Royal Bank of Canada relating to a fraudulent social media account and phishing instant messages, which have been reported to the HKMA.
-
保安局局長在立法會保安事務委員會會議就加強保護關鍵基礎設施電腦系統安全──建議立法框架開場發言 (Chinese only) (2-July-2024)
以下是保安局局長鄧炳強今日(七月二日)出席立法會保安事務委員會會議就加強保護關鍵基礎設施電腦系統安全──建議立法框架的開場發言。 (Chinese only)
-
OFNAA encourages young people to stay away from online objectionable materials through "Healthy Student Video Contest 2024" (with photos) (29-June-2024)
The Office for Film, Newspaper and Article Administration (OFNAA) earlier organised the "Healthy Student Video Contest 2024" under the theme "Healthy Media, Infinite Creativity" to enhance youngsters' understanding of the Control of Obscene and Indecent Articles Ordinance (Cap. 390) (COIAO) through video production activities, and to encourage them to stay away from objectionable materials on the Internet.
-
Security Alert (A24-06-15): Multiple Vulnerabilities in VMware Products (28-June-2024)
VMware has published security advisories to address multiple vulnerabilities in VMware products.
-
Security Alert (A24-06-14): Multiple Vulnerabilities in Microsoft Edge (28-June-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Hong Kong Talent Engage themed seminar raises incoming talent's awareness of anti-corruption and anti-deception (with photos) (27-June-2024)
Hong Kong Talent Engage (HKTE) hosted a themed seminar this afternoon (June 27) to brief incoming talent on corruption prevention and anti-deception practices to raise their awareness of the relevant crimes.
-
Speech by Mr Kingsley Wong, Deputy Government Chief Information Officer, at the “HKCNSA Symposium 2024” (with photos) (Chinese Only) (26-June-2024)
Only Chinese version is available for this speech / presentation.
-
Phishing instant messages related to China Construction Bank (Asia) Corporation Limited (26-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China Construction Bank (Asia) Corporation Limited relating to phishing instant messages, which have been reported to the HKMA.
-
LCQ9: Combating frauds involving deepfake (26-June-2024)
Following is a question by Dr the Hon Tan Yueheng and a written reply by the Secretary for Security, Mr Tang Ping-keung, in the Legislative Council today (June 26).
-
Enhancing Cybersecurity - Privacy Commissioner Gives Keynote Speech at HKCNSA Symposium 2024 (26-June-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, delivered a keynote speech at the inaugural HKCNSA Symposium 2024 organised by the Hong Kong China Network Security Association on 26 June.
-
Security Alert (A24-06-13): Multiple Vulnerabilities in Google Chrom (25-June-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Phishing emails related to Bank of China (Hong Kong) Limited (25-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Phishing instant messages related to Ant Bank (Hong Kong) Limited (25-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Ant Bank (Hong Kong) Limited relating to phishing instant messages, which have been reported to the HKMA.
-
HKCERT Rebrands for a New Paradigm of Cyber Security with AI-Driven Cyber Threat Alerts Strengthens International Collaboration for Cyber Attacks (25-June-2024)
The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) today unveiled its new Chinese name and the launch of its cutting-edge technologies in the fight against cyber attacks.
-
Enhancing Cybersecurity – PCPD Participates in the “Bug Hunting Campaign 2024” as a Strategic Partner (24-June-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) participates in the “Bug Hunting Campaign 2024” (Campaign) as a Strategic Partner.
-
Security Alert (A24-06-12): Multiple Vulnerabilities in SonicWall Products (21-June-2024)
SonicWall released security advisories to address multiple vulnerabilities in SonicWall systems.
-
Security Alert (A24-06-11): Multiple Vulnerabilities in Microsoft Edge (21-June-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A24-06-10): Multiple Vulnerabilities in Google Chrome (19-June-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-06-09): Multiple Vulnerabilities in VMware Products (19-June-2024)
VMware has published a security advisory to address multiple vulnerabilities in VMware products.
-
A 54-year-old Male Arrested for Suspected Doxxing Arising from Monetary Disputes (18-June-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 54 in the New Territories.
-
Security Alert (A24-06-08): Multiple Vulnerabilities in Fortinet Products (14-June-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
Security Alert (A24-06-07): Multiple Vulnerabilities in Microsoft Edge (14-June-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website related to Ant Bank (Hong Kong) Limited (14-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Ant Bank (Hong Kong) Limited relating to a fraudulent website, which has been reported to the HKMA.
-
A 31-year-old Female Arrested for Suspected Doxxing Arising from Personal Disputes (13-June-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 31 in Kowloon.
-
Security Alert (A24-06-06): Multiple Vulnerabilities in Firefox (12-June-2024)
Mozilla has published the advisories (MFSA2024-25 and MFSA2024-26) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-06-05): Multiple Vulnerabilities in Google Chrome (12-June-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-06-04): Multiple Vulnerabilities in Microsoft Products (June 2024) (12-June-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Fraudulent websites related to Mizuho Bank, Ltd. (12-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Mizuho Bank, Ltd. relating to fraudulent websites, which have been reported to the HKMA.
-
High Threat Security Alert (A24-06-03): Multiple Vulnerabilities in PHP (11-June-2024)
PHP has released security advisories to address multiple vulnerabilities in PHP.
-
Privacy Commissioner’s Office Publishes “Artificial Intelligence: Model Personal Data Protection Framework” (11-June-2024)
As AI technology rapidly develops, the application of AI has become increasingly prevalent. To address the challenges posed by AI to personal data privacy and to support the “Global AI Governance Initiative” of the Motherland, the Office of the Privacy Commissioner for Personal Data (PCPD) today issued the “Artificial Intelligence: Model Personal Data Protection Framework”.
-
OFCA and IMDA sign MOU to strengthen collaboration in tackling scam and spam communications (with photo) (11-June-2024)
The Office of the Communications Authority (OFCA) of Hong Kong and the Infocomm Media Development Authority (IMDA) of Singapore signed a Memorandum of Understanding (MOU) in Singapore today (June 11) to further strengthen co-operation in combating scam calls and messages as well as managing spam communications.
-
‘e-Generation Joyful Internet Surfing’ Parent Seminar (5): Know more about Myopia Management under e-Learning & Recognising Online Pitfalls (8-June-2024)
The Education Bureau (EDB), Hong Kong Education City, and Committee on Home-School Co-operation will co-organise a seminar on ‘e-Generation Joyful Internet Surfing’ Parent Seminar (5): Know more about Myopia Management under e-Learning & Probe into Online Pitfalls‘.
-
Fraudulent website purporting to be HKMA's official website, platform claimed to be regulated by HKMA and bogus documents and emails (7-June-2024)
The Hong Kong Monetary Authority (HKMA) would like to alert members of the public to a fraudulent website purporting to be HKMA's official website, a platform claimed to be regulated by HKMA, and bogus documents and emails.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (7-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Phishing instant messages related to China Construction Bank (Asia) Corporation Limited (7-June-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China Construction Bank (Asia) Corporation Limited relating to phishing instant messages, which have been reported to the HKMA.
-
CSA HKM Knowledge Sharing Event – June 2024 (6-June-2024)
Pull up your SOC – thoughts on logging strategy in a heterogeneous network environment
-
Security Alert (A24-06-02): Multiple Vulnerabilities in Android (5-June-2024)
Google has released Android Security Bulletin June 2024 to address multiple vulnerabilities in Android operating system.
-
Security Alert (A24-06-01): Multiple Vulnerabilities in Microsoft Edge (4-June-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
“Together, We Create a Safe Cyberworld” Tram Body Design Contest (From 8-February-2024 to 31-May-2024)
The Tram Body Design Contest - “Together, We Create a Safe Cyberworld” (“the Contest”) is jointly organised by the Digital Policy Office, the Hong Kong Police Force and the Hong Kong Computer Emergency Response Team Coordination Centre. The Contest aims to arouse the public awareness of cybersecurity, so as to prevent them from falling into online traps, and strengthen city-wide defence against cyberattacks.
-
DH alerts public to fraudulent advertisements on government medical insurance (31-May-2024)
The Department of Health (DH) today (May 31) alerted members of the public to fraudulent advertisements published on social media and online platforms about free medical insurance provided by the Hong Kong Government.
-
Fraudulent social media account related to Airstar Bank Limited (31-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to a fraudulent social media account, which has been reported to the HKMA.
-
Security Alert (A24-05-24): Multiple Vulnerabilities in Google Chrome (31-May-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Speech by Mr Michael Chan, Chief Systems Manager (Cyber Security), at the “PolyU x NuttyShell Cybersecurity CTF 2024 Prize Presentation Ceremony” (with photos) (29-May-2024)
Mr Michael Chan, Chief Systems Manager (Cyber Security), presented trophy and award certificates to Tertiary Category Champion team at the “PolyU x NuttyShell Cybersecurity CTF 2024 Prize Presentation Ceremony”.
-
Hong Kong Customs clarifies no public auction ever arranged through external parties after noticing suspicious social media pages and websites (29-May-2024)
Hong Kong Customs made a clarification today (May 29) that it has never arranged any public auctions for confiscated items through any social media pages or websites.
-
LCQ18: Cybersecurity of government departments and other public organisations (29-May-2024)
Following is a question by the Hon Chan Hak-kan and a written reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (May 29).
-
Bogus emails, advertisement and phone calls purportedly associated with HKMA (29-May-2024)
The Hong Kong Monetary Authority (HKMA) has recently received public enquiries regarding emails, advertisement and phone calls claiming to be associated with the HKMA.
-
LCQ6: Protection of personal data privacy (29-May-2024)
Following is a question by the Hon Elizabeth Quat and a reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (May 29).
-
Public urged to stay alert to WhatsApp messages purported to be sent by Student Finance Office (28-May-2024)
A spokesman for the Working Family and Student Financial Assistance Agency (WFSFAA) today (May 28) urged members of the public to stay alert to fraudulent WhatsApp messages purported to be sent by the Student Finance Office.
-
Phishing instant messages related to Industrial and Commercial Bank of China (Asia) Limited (28-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Industrial and Commercial Bank of China (Asia) Limited relating to phishing instant messages, which have been reported to the HKMA.
-
High Threat Security Alert (A24-05-23): Multiple Vulnerabilities in Microsoft Edge (27-May-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Home Affairs Department clarifies alleged data leakage on internet (25-May-2024)
A spokesman for the Home Affairs Department (HAD) today (May 25) said that the Department had noticed someone from an online platform claimed data of the members of the public obtained from the HAD's system were put on sale.
-
Fraudulent website and phishing emails related to Tai Sang Bank Limited (24-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Tai Sang Bank Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (24-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Bogus calls related to WeChat Pay Hong Kong Limited (24-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by WeChat Pay Hong Kong Limited relating to bogus calls.
-
High Threat Security Alert (A24-05-22): Vulnerability in Google Chrome (24-May-2024)
Google released a security update to address a vulnerability in Google Chrome.
-
High Threat Security Alert (A24-05-21): Multiple Vulnerabilities in Git (24-May-2024)
Git has released security advisories to address multiple vulnerabilities in Git products.
-
High Threat Security Alert (A24-05-20): Multiple Vulnerabilities in Ivanti Products (24-May-2024)
Ivanti has released security advisories to address multiple vulnerabilities in Ivanti products.
-
Security Alert (A24-05-19): Multiple Vulnerabilities in Cisco Products (23-May-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Public urged to stay alert to WhatsApp messages purported to be sent by District Officers (23-May-2024)
A spokesman for the Home Affairs Department (HAD) today (May 23) appealed to members of the public to stay alert to fraudulent WhatsApp messages purported to be sent by the District Officers (DOs).
-
Security Alert (A24-05-18): Multiple Vulnerabilities in QNAP Products (22-May-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A24-05-17): Multiple Vulnerabilities in Google Chrome (22-May-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (22-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Phishing emails related to Bank of China (Hong Kong) Limited (22-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Finds that the Operation of the Worldcoin Project in Hong Kong Contravenes the Personal Data (Privacy) Ordinance (22-May-2024)
On completion of its investigation into the Worldcoin project, the Office of the Privacy Commissioner for Personal Data (PCPD) publishes its findings today.
-
Phishing emails related to Tai Sang Bank Limited (21-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Tai Sang Bank Limited relating to phishing emails, which have been reported to the HKMA.
-
Suspicious website related to Tai Yau Bank, Limited (21-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Tai Yau Bank, Limited relating to a suspicious website, which has been reported to the HKMA.
-
Public urged to stay alert to WhatsApp messages purported to be sent by SCED (20-May-2024)
A spokesman for the Commerce and Economic Development Bureau (CEDB) today (May 20) appealed to members of the public to stay alert to fraudulent WhatsApp messages purported to be sent by the Secretary for Commerce and Economic Development (SCED).
-
Fraudulent social media posts related to Hang Seng Bank, Limited (20-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to fraudulent social media posts, which have been reported to the HKMA.
-
Security Alert (A24-05-16): Multiple Vulnerabilities in Fortinet Products (17-May-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
High Threat Security Alert (A24-05-15): Multiple Vulnerabilities in Microsoft Edge (17-May-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A24-05-14): Multiple Vulnerabilities in Cisco Products (16-May-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Security Alert (A24-05-13): Multiple Vulnerabilities in Firefox (16-May-2024)
Mozilla has published the advisories (MFSA2024-21 and MFSA2024-22) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-05-12): Multiple Vulnerabilities in Adobe Reader/Acrobat (16-May-2024)
Patches are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
High Threat Security Alert (A24-05-11): Vulnerability in Microsoft Edge (16-May-2024)
Microsoft released a security update to address a vulnerability in Microsoft Edge.
-
High Threat Security Alert (A24-05-10): Multiple Vulnerabilities in Google Chrome (16-May-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-05-09): Multiple Vulnerabilities in Microsoft Products (May 2024) (16-May-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
High Threat Security Alert (A24-05-08): Vulnerability in Google Chrome (14-May-2024)
Google released a security update to address the vulnerability in Google Chrome.
-
High Threat Security Alert (A24-05-07): Multiple Vulnerabilities in Apple iOS and iPadOS (14-May-2024)
Apple has released iOS 16.7.8, iOS 17.5, iPadOS 16.7.8 and iPadOS 17.5 to fix the vulnerabilities in various Apple devices.
-
Fraudulent website and social media page related to DBS Bank (Hong Kong) Limited (14-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Urges Users of Cloud Platforms to Ensure Data Security (14-May-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) noticed from the data breach notifications recently received from different organisations, including the Electrical and Mechanical Services Department, the Fire Services Department and the Urban Renewal Authority, that in all three incidents, the personal data was stored on the online platform ArcGIS Online (the Platform).
-
High Threat Security Alert (A24-05-06): Multiple Vulnerabilities in Microsoft Edge (13-May-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Build a Secure Cyberspace 2024 - “Together, We Create a Safe Cyberworld” Webinar (10-May-2024)
To help the public identify online traps and prevent fraud, the Office of the Government Chief Information Officer (OGCIO), the Hong Kong Police Force (HKPF) and the Hong Kong Computer Emergency Response Coordination Centre (HKCERT) co-organised the “Together, We Create a Safe Cyberworld” Webinar, in which information security experts will share insights on the hidden threats in cyberworld and the cybersecurity measures that can be adopted.
-
High Threat Security Alert (A24-05-05): Vulnerability in Google Chrome (10-May-2024)
Google released a security update to address the vulnerability in Google Chrome.
-
HKMA alerts public to frauds purportedly associated with Wealth Management Connect Scheme (10-May-2024)
The Hong Kong Monetary Authority (HKMA) has received public enquiries recently on suspected frauds associated with the Cross-boundary Wealth Management Connect Scheme (Scheme).
-
Fraudulent website and internet banking login screen related to Fubon Bank (Hong Kong) Limited (10-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
A 40-year-old Male Arrested for Suspected Doxxing Arising from Monetary Disputes (10-May-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 40 in the New Territories.
-
Enhancing Data Security – PCPD's Representative Speaks at the Webinar Entitled “Together, We Create a Safe Cyberworld” (10-May-2024)
Mr Tamson TAM, Personal Data Officer (Information Technology), Office of the Privacy Commissioner for Personal Data (PCPD), spoke at the Build a Secure Cyberspace 2024 “Together, We Create a Safe Cyberworld” Webinar on 10 May. Mr. Tam shared some tips with the participants on enhancing cyber security for organisations and on how to prevent and handle data breach incidents.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (9-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-05-04): Multiple Vulnerabilities in Google Chrome (8-May-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-05-03): Multiple Vulnerabilities in Android (7-May-2024)
Google has released Android Security Bulletin May 2024 to address multiple vulnerabilities in Android operating system.
-
Fraudulent website and social media page related to DBS Bank (Hong Kong) Limited (7-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
FSD follows up on IT system security incident (6-May-2024)
A spokesman for the Fire Services Department (FSD) said today (May 6) that the department discovered a potential personal data leakage incident on one of the IT system on May 3, while there is no evidence that relevant data have been released.
-
Security Alert (A24-05-02): Multiple Vulnerabilities in Microsoft Edge (3-May-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Companies Registry's e-services maintained after earlier incident of personal data leakage (3-May-2024)
The Companies Registry (CR) said today (May 3) that urgent maintenance of its e-Services Portal to block any risk of further leakage of personal data had been completed.
-
Phishing emails related to Bank of China (Hong Kong) Limited (3-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Judiciary alerts public to phishing email (3-May-2024)
The Judiciary today (May 3) called on the public again to stay vigilant to a phishing email sent from the email account "Hong Kong High Court - noreply[@]judiciary[.]hk
". The email falsely claims that it was issued by the High Court of the Hong Kong Special Administrative Region, and is suspected of containing a malicious link. -
Fraudulent website and internet banking login screen related to Fubon Bank (Hong Kong) Limited (3-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Publishes Findings on the Data Breach Incident of Consumer Council (2-May-2024)
On completion of its investigation into a data breach incident of the Consumer Council (the Council), the Office of the Privacy Commissioner for Personal Data (PCPD) published its findings today.
-
Security Alert (A24-05-01): Multiple Vulnerabilities in Google Chrome (2-May-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
EMSD follows up on system security incident of online server platform (2-May-2024)
A spokesman for the Electrical and Mechanical Services Department (EMSD) said today (May 2) that the department is following up on a system security incident of an online server platform, which involved data collected by the EMSD in "restriction-testing declaration" (RTD) operations conducted between March and July of 2022 in combating COVID-19.
-
Judiciary alerts public to phishing email (2-May-2024)
The Judiciary today (May 2) called on the public to stay vigilant to a phishing email sent from the email account "noreply-hk-judiciary-comm-autonotifservice-f4904c-89ae0[@]dagnote[.]com". The email falsely claims that it was issued by the High Court of the Hong Kong Special Administrative Region, and is suspected of containing a malicious link.
-
Inland Revenue Department alerts public to fraudulent emails (2-May-2024)
The Inland Revenue Department today (May 2) alerted members of the public to fraudulent emails purportedly issued by the department, which invite recipients to claim tax refunds.
-
HKMA alerts public to entities claiming to assist in recovery of fraud losses (2-May-2024)
The Hong Kong Monetary Authority (HKMA) has received public enquiries regarding the following entities and their offers or claims to assist in the recovery of losses from financial fraud.
-
Fraudulent website related to Dah Sing Bank, Limited (2-May-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Fraudulent website and internet banking login screen related to Fubon Bank (Hong Kong) Limited (30-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Fraudulent website related to Nanyang Commercial Bank, Limited (30-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Nanyang Commercial Bank, Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A24-04-20): Multiple Vulnerabilities in QNAP Products (29-April-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A24-04-19): Multiple Vulnerabilities in Microsoft Edge (29-April-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
HKCERT Annual Report 2023 (26-April-2024)
HKCERT Annual Report 2023
-
High Threat Security Alert (A24-04-18): Multiple Vulnerabilities in Cisco Products (25-April-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Security Alert (A24-04-17): Multiple Vulnerabilities in Google Chrome (25-April-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
8th Inter-departmental Cyber Security Drill held to enhance cyber defence capability of government departments (with photos) (25-April-2024)
The Government Computer Emergency Response Team Hong Kong (GovCERT.HK) under the Office of the Government Chief Information Officer (OGCIO) and the Cyber Security and Technology Crime Bureau (CSTCB) of the Hong Kong Police Force co-organised the 8th Inter-departmental Cyber Security Drill today (April 25). The Drill aimed to strengthen the preparedness and the overall incident response capability of government departments to cyberattacks.
-
OFCA calls for participation in SMS Sender Registration Scheme by all sectors to help combat SMS scams (25-April-2024)
The Office of the Communications Authority (OFCA) today (April 25) announced the latest implementation status of the SMS Sender Registration Scheme (the Scheme), and encouraged more industries to actively participate in the Scheme.
-
A 65-year-old Man Arrested for Suspected Doxxing of His Former Colleague (25-April-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 65 in the New Territories. The arrested person was suspected to have disclosed the personal data of a data subject without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Fraudulent website and mobile application related to Chong Hing Bank Limited (23-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to a fraudulent website and a mobile application (App), which have been reported to the HKMA.
-
DH alerts public to bogus phone call and email (22-April-2024)
The Department of Health (DH) today (April 22) called on healthcare and clinic staff members as well as the public to stay vigilant against a bogus phone call and email that falsely claimed to be made by staff members of the DH.
-
Phishing emails related to Hang Seng Bank, Limited (22-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to phishing emails, which have been reported to the HKMA.
-
Security Alert (A24-04-16): Multiple Vulnerabilities in Microsoft Edge (19-April-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (19-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A24-04-15): Multiple Vulnerabilities in Cisco Products (18-April-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
HKMA alerts public to bogus messages and documents (18-April-2024)
The Hong Kong Monetary Authority (HKMA) has received enquiries from members of the public regarding messages received on the instant messaging application WhatsApp or documents purportedly issued in the name of the HKMA.
-
Security Alert (A24-04-14): Multiple Vulnerabilities in Firefox (17-April-2024)
Mozilla has published the advisories (MFSA2024-18 and MFSA2024-19) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-04-13): Multiple Vulnerabilities in Google Chrome (17-April-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-04-12): Multiple Vulnerabilities in Oracle Java and Oracle Products (April 2024) (17-April-2024)
Oracle has released the Critical Patch Update (CPU) Advisory with collections of patches for multiple vulnerabilities found in Java SE and various Oracle products.
-
Security Alert (A24-04-11): Multiple Vulnerabilities in Microsoft Edge (15-April-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
High Threat Security Alert (A24-04-10): Multiple Vulnerabilities in Palo Alto Products (15-April-2024)
Palo Alto has published security advisories to address multiple vulnerabilities in PAN-OS and Prisma Access.
-
Phishing messages and fraudulent websites related to UnionPay App (12-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by UnionPay International on UnionPay App-related phishing messages and fraudulent websites, which have been reported to the HKMA.
-
Fraudulent website and internet banking login screen related to Airstar Bank Limited (12-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
A 22-year-old Female Arrested for Suspected Doxxing Offence Relating to Emotional Entanglements (12-April-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 22 in the New Territories.
-
Security Alert (A24-04-09): Multiple Vulnerabilities in Google Chrome (11-April-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-04-08): Multiple Vulnerabilities in Fortinet Products (10-April-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
High Threat Security Alert (A24-04-07): Multiple Vulnerabilities in Microsoft Products (April 2024) (10-April-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
SWD urges public to be alert to fraudulent job advertisement (10-April-2024)
The Social Welfare Department (SWD) today (April 10) alerted members of the public to a fraudulent job advertisement published on a social media platform.
-
LCQ9: Prevention of telephone fraud (10-April-2024)
Following is a question by the Hon Sunny Tan and a written reply by the Secretary for Commerce and Economic Development, Mr Algernon Yau, in the Legislative Council today (April 10).
-
Anti-Scam Consumer Protection Charter 2.0 (with photos) (10-April-2024)
Following the launch of the Anti-Scam Consumer Protection Charter last year, the Hong Kong Monetary Authority (HKMA) announced today (April 10), in collaboration with the Hong Kong Association of Banks (HKAB), the launch of the Anti-Scam Consumer Protection Charter 2.0 (the Charter 2.0).
-
Fraudulent website and internet banking login screen related to Dah Sing Bank, Limited (9-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-04-06): Multiple Vulnerabilities in Cisco Product (5-April-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Security Alert (A24-04-05): Multiple Vulnerabilities in Microsoft Edge (5-April-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A24-04-04): Multiple Vulnerabilities in Ivanti Products (5-April-2024)
Ivanti has released a security advisory to address multiple vulnerabilities in Ivanti products.
-
Security Alert (A24-04-03): Multiple Vulnerabilities in Apache HTTP Server (5-April-2024)
The Apache Software Foundation released a security update to address multiple vulnerabilities in the HTTP Server and its modules.
-
Security Alert (A24-04-02): Multiple Vulnerabilities in Google Chrome (3-April-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Phishing emails related to Bank of China (Hong Kong) Limited (3-April-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Security Alert (A24-04-01): Multiple Vulnerabilities in Android (2-April-2024)
Google has released Android Security Bulletin April 2024 to address multiple vulnerabilities in Android operating system.
-
High Threat Security Alert (A24-03-24): Vulnerability in XZ Utils (2-April-2024)
A malicious backdoor is found embedded in versions 5.6.0 and 5.6.1 of XZ Utils.
-
Privacy Commissioner’s Office Publishes an Investigation Report on the Data Breach Incident of Cyberport (2-April-2024)
On completion of its investigation into a data breach incident of the Hong Kong Cyberport Management Company Limited (Cyberport), the Office of the Privacy Commissioner for Personal Data (PCPD) published an investigation report today.
-
Security Alert (A24-03-23): Multiple Vulnerabilities in Cisco Products (28-March-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Security Alert (A24-03-22): Multiple Vulnerabilities in Microsoft Edge (28-March-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Phishing messages and fraudulent websites related to Octopus Cards Limited (28-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to phishing messages and fraudulent websites.
-
Security Alert (A24-03-21): Multiple Vulnerabilities in Google Chrome (27-March-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Education Bureau alerts public to fraudulent WhatsApp message (27-March-2024)
The Education Bureau (EDB) today (March 27) called on the public to stay vigilant against a fraudulent WhatsApp message that falsely claims to be issued by school personnel.
-
Fraudulent website related to Bank of Singapore Limited (27-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A24-03-20): Vulnerability in Apple iOS and iPadOS (26-March-2024)
Apple has released iOS 16.7.7, iOS 17.4.1, iPadOS 16.7.7 and iPadOS 17.4.1 to fix the vulnerability in various Apple devices.
-
Fraudulent website related to Bank of Singapore Limited (26-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent website, which has been reported to the HKMA.
-
A 32-year-old Male Arrested for Suspected Doxxing Acts (26-March-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 32 on Hong Kong Island. The arrested person was suspected to have disclosed the personal data of a data subject without her consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A24-03-19): Multiple Vulnerabilities in Firefox (25-March-2024)
Mozilla has published the advisories (MFSA2024-15 and MFSA2024-16) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-03-18): Multiple Vulnerabilities in Microsoft Edge (25-March-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Privacy Commissioner’s Office Issues Two Leaflets on the Smart Use of Smartphones and Social Media to Protect Personal Data Privacy (25-March-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today published two leaflets entitled (1) “Protect Your Personal Data - Smart Use of Smartphones” and (2) “Protect Your Personal Data - Be Smart on Social Media” respectively to provide tips for users on the smart use of smartphones and social media to help them protect their privacy.
-
Fraudulent website and internet banking login screen related to Bank of China (Hong Kong) Limited (22-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Hong Kong Police Force holds multi-disciplinary seminar on Child Sexual Abuse in the Cyber World (with photos) (21-March-2024)
The Hong Kong Police Force (HKPF) held a multi-disciplinary seminar on Child Sexual Abuse in the Cyber World today (March 21). Experts and representatives from relevant sectors jointly explored how to more effectively protect children from online sexual threats from multiple perspectives.
-
Public urged to stay alert to emails purported to be issued by SCED office (21-March-2024)
A spokesman for the Commerce and Economic Development Bureau (CEDB) today (March 21) appealed to members of the public to stay alert to fraudulent emails purported to be issued by the office of the Secretary for Commerce and Economic Development (SCED).
-
Public should beware of scam video about investment plan purported to be recommended by CE (21-March-2024)
A Government spokesman today (March 21) again advised members of the public to stay vigilant about forged video clips created by artificial intelligence circulating online about an investment plan purported to be recommended by the Chief Executive.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (21-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
A 30-year-old Male Arrested for Suspected Doxxing of Former Friend (21-March-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 30 in Kowloon. The arrested person was suspected to have disclosed the personal data of a data subject without her consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A24-03-17): Multiple Vulnerabilities in Firefox (20-March-2024)
Mozilla has published the advisories (MFSA2024-12 and MFSA2024-13) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-03-16): Multiple Vulnerabilities in Google Chrome (20-March-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Enhancing Data Security – Privacy Commissioner’s Office and Hong Kong Internet Registration Corporation Limited Jointly Organise a Seminar on Cybersecurity and Data Breach Handling (20-March-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) and Hong Kong Internet Registration Corporation Limited (HKIRC) co-organised a seminar on “Responding to Cyber Security Threats and Data Breaches” in hybrid mode on 19 March, which attracted over 880 participants.
-
Defacement Attacks: Understanding and Prevention (20-March-2024)
Defacement attacks occur when malicious actors infiltrate a website online or a digital advertising panel device hardware, and replace its content with their own messages.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (19-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (19-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Eighty citizens and seven organisations commended for helping Police fight crime (with photos) (17-March-2024)
The “Good Citizen Award (GCA) Presentation Ceremony 2023”, organised by the Hong Kong Police Force, was held today (March 17) at the Hong Kong Convention and Exhibition Centre. Eighty citizens were commended for assisting the Force in fighting crime and upholding the rule of law.
-
HKIB Cybersecurity Solutions Day 2024 (15-March-2024)
Ensuring Vigilance: AI-Powered Cybersecurity for a Changing Landscape
-
Security Alert (A24-03-15): Multiple Vulnerabilities in Microsoft Edge (15-March-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website and internet banking login screen related to Bank of China (Hong Kong) Limited (15-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-03-14): Multiple Vulnerabilities in Cisco IOS XR Software (14-March-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco IOS XR Software.
-
Security Alert (A24-03-13): Multiple Vulnerabilities in Apache Tomcat (14-March-2024)
The Apache Software Foundation released security updates to address multiple vulnerabilities in the Apache Tomcat.
-
Security Alert (A24-03-12): Multiple Vulnerabilities in SonicWall Products (13-March-2024)
SonicWall released security advisories to address multiple vulnerabilities in SonicWall products.
-
Security Alert (A24-03-11): Vulnerability in Google Chrome (13-March-2024)
Google released a security update to address a vulnerability in Google Chrome.
-
High Threat Security Alert (A24-03-10): Multiple Vulnerabilities in Fortinet Products (13-March-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
High Threat Security Alert (A24-03-09): Multiple Vulnerabilities in Microsoft Products (March 2024) (13-March-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (13-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Security Alert (A24-03-08): Multiple Vulnerabilities in QNAP Products (11-March-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Deepfake: Where Images Don't Always Speak Truth (11-March-2024)
"Deepfake" is the combination of "Deep learning" and "Fake".
-
Phishing Alert - Phishing Campaigns Targeting Users in Various Platforms on the Rise (8-March-2024)
There is threat intelligence indicating an increasing trend of phishing attacks targeting users on various platforms.
-
Security Alert (A24-03-07): Multiple Vulnerabilities in Microsoft Edge (8-March-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent social media page and phishing emails related to China CITIC Bank International Limited (8-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent social media page and phishing emails, which have been reported to the HKMA.
-
How To Protect Your Data in Quantum Age (7-March-2024)
A quantum computer represents a groundbreaking paradigm shift in computing, leveraging the intricate principles of quantum mechanics to execute certain computations exponentially faster than their classical counterparts.
-
Security Alert (A24-03-06): Multiple Vulnerabilities in Cisco Products (7-March-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Fraudulent website and internet banking login screen related to Bank of China (Hong Kong) Limited (7-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Fraudulent website related to Bank of Singapore Limited (7-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A24-03-05): Multiple Vulnerabilities in Google Chrome (6-March-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-03-04): Multiple Vulnerabilities in VMware Products (6-March-2024)
VMware has published a security advisory to address multiple vulnerabilities in VMware products.
-
High Threat Security Alert (A24-03-03): Multiple Vulnerabilities in Apple iOS and iPadOS (6-March-2024)
Apple has released iOS 16.7.6, iOS 17.4, iPadOS 16.7.6 and iPadOS 17.4 to fix the vulnerabilities in various Apple devices.
-
Inland Revenue Department alerts public to fraudulent emails (6-March-2024)
The Inland Revenue Department today (March 6) alerted members of the public to fraudulent emails purportedly issued by the department, which invite recipients to claim tax refunds.
-
Suspicious websites related to Mox Bank Limited (6-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Mox Bank Limited relating to suspicious websites, which have been reported to the HKMA.
-
Fraudulent websites and mobile applications related to CMB Wing Lung Bank Limited (6-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by CMB Wing Lung Bank Limited relating to fraudulent websites and mobile applications (apps), which have been reported to the HKMA.
-
Security Alert (A24-03-02): Multiple Vulnerabilities in Android (5-March-2024)
Google has released Android Security Bulletin March 2024 to address multiple vulnerabilities in Android operating system.
-
Fraudulent website and phishing emails related to Public Bank (Hong Kong) Limited (5-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Public Bank (Hong Kong) Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent website and phishing instant messages related to Fubon Bank (Hong Kong) Limited (4-March-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to a fraudulent website and phishing instant messages, which have been reported to the HKMA.
-
Security Alert (A24-03-01): Multiple Vulnerabilities in Microsoft Edge (1-March-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Inland Revenue Department alerts public to fraudulent emails (1-March-2024)
The Inland Revenue Department today (March 1) alerted members of the public to fraudulent emails purportedly issued by the department, which invite recipients to claim tax refunds.
-
Cyber Security Professional Awards 2023 (29-February-2024)
The Cyber Security Professional Awards is co-organised by the Hong Kong Police Force, the Government Computer Emergency Response Team Hong Kong (GovCERT.HK) and the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT).
-
Security Alert (A24-02-18): Multiple Vulnerabilities in Cisco Products (29-February-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Security Alert (A24-02-17): Multiple Vulnerabilities in Google Chrome (29-February-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Cyber Security Professionals Awards 2023 (with photos) (29-February-2024)
The Cyber Security Professional Awards (CSPA) 2023 presentation ceremony was successfully concluded today (February 29), with a total of 52 winners and organisations commended for their outstanding achievements in the cyber security field.
-
"Report on the Survey on Information Technology Usage and Penetration in the Business Sector for 2023" published (29-February-2024)
The Census and Statistics Department (C&SD) released today (February 29) the "Report on the Survey on Information Technology Usage and Penetration in the Business Sector for 2023".
-
A 64-year-old Male Arrested for Suspected Doxxing Arising from Monetary Disputes (29-February-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 64 in Kowloon. The arrested person was suspected to have disclosed the personal data of a data subject without her consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A24-02-16): Vulnerability in VMware Products (28-February-2024)
VMware has published a security advisory to address a vulnerability in VMware products.
-
保安局局長在立法會保安事務委員會就為持續擴展數碼警政而推出的主要資訊科技項目開場發言 (Chinese only) (27-February-2024)
以下是保安局局長鄧炳強今日(二月二十七日)出席立法會保安事務委員會就為持續擴展數碼警政而推出的主要資訊科技項目的開場發言。 (Chinese only)
-
Security Alert (A24-02-15): Multiple Vulnerabilities in Microsoft Edge (26-February-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent websites related to CMB Wing Lung Bank Limited (26-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by CMB Wing Lung Bank Limited relating to fraudulent websites, which have been reported to the HKMA.
-
Hong Kong Customs urges public to be alert to fraudulent Customs WeChat account (23-February-2024)
Hong Kong Customs today (February 23) appealed to members of the public to stay alert to a fraudulent Hong Kong Customs' WeChat official account to avoid being scammed.
-
Phishing emails and fraudulent websites related to Alipay Financial Services (HK) Limited (23-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to phishing emails and fraudulent websites.
-
Security Alert (A24-02-14): Multiple Vulnerabilities in Firefox (21-February-2024)
Mozilla has published the advisories (MFSA2024-05 and MFSA2024-06) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-02-13): Multiple Vulnerabilities in Google Chrome (21-February-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (21-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
SMS Sender Registration Scheme open to all sectors to further combat SMS fraud (21-February-2024)
The Office of the Communications Authority (OFCA) today (February 21) announced that the SMS Sender Registration Scheme is now open for application by all sectors to further help members of the public verify the identities of SMS senders, with a view to combating SMS fraud.
-
Implications of the Development or Use of Artificial Intelligence on Personal Data Privacy. The Privacy Commissioner’s Office has Completed Compliance Checks on 28 Organisations. (21-February-2024)
With the development and use of Artificial Intelligence (AI) becoming increasingly common in Hong Kong, organisations may collect, use or process personal data when they develop or use AI systems, thereby posing risks to personal data privacy.
-
Resource Centre - Leaflet on "The Do's and Don'ts of Using Instant Messaging" (20-February-2024)
Leaflet on "Information Security Guide - The Do's and Don'ts of Using Instant Messaging" is now available at the Resource Centre
-
High Threat Security Alert (A24-02-12): Multiple Vulnerabilities in Zoom Products (15-February-2024)
Zoom has published a security advisory to address multiple vulnerabilities in Zoom products.
-
A 27-year-old Female Convicted and Sentenced for Doxxing a Pet Seller (15-February-2024)
The West Kowloon Magistrates’ Court today convicted a 27-year old female, Miss CHAN Tung-ching (defendant), of one charge of a doxxing offence upon her guilty plea. The Court on the same day sentenced the defendant to two weeks’ imprisonment, suspended for 3 years, and a fine of HK$500.
-
Security Alert (A24-02-11): Multiple Vulnerabilities in Adobe Reader/Acrobat (14-February-2024)
Patches are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
Security Alert (A24-02-10): Multiple Vulnerabilities in QNAP Products (14-February-2024)
QNAP has published a security advisory to address multiple vulnerabilities in QNAP products.
-
High Threat Security Alert (A24-02-09): Multiple Vulnerabilities in Microsoft Products (February 2024) (14-February-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Reaching Out to the Community – Privacy Commissioner Interviewed by the Media to Explain PCPD’s Work on Data Security (9-February-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, was interviewed by Metro Radio’s “Roadmap to Knowledge Economy” on 9 February to give an account of her Office’s follow-up work on the data breach incident relating to the Faculty of Education of the University of Hong Kong. The Privacy Commissioner also explained the work of the Office of the Privacy Commissioner for Personal Data (PCPD) on data security.
-
Fraudulent websites and internet banking login screens related to DBS Bank (Hong Kong) Limited (9-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Phishing emails related to China Minsheng Banking Corp., Ltd. (9-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China Minsheng Banking Corp., Ltd. relating to phishing emails, which have been reported to the HKMA.
-
High Threat Security Alert (A24-02-08): Vulnerability in Ivanti Products (9-February-2024)
Ivanti has published a security advisory to address a vulnerability in Ivanti systems.
-
High Threat Security Alert (A24-02-07): Multiple Vulnerabilities in Fortinet Products (9-February-2024)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet systems.
-
Security Alert (A24-02-06): Multiple Vulnerabilities in Microsoft Edge (9-February-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A24-02-05): Multiple Vulnerabilities in Cisco Products (8-February-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
CSA HKM Knowledge Sharing Event – February 2024 (7-February-2024)
CSA Knowledge Sharing Event provides an excellent opportunity for cybersecurity professionals to discuss the latest trends and developments in IT and in the process build a close-knitted cybersecurity community in Hong Kong and Macau.
-
Response of the Privacy Commissioner’s Office on the HKU Faculty of Education’s Data Breach Incident (7-February-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) received a data breach notification from the Faculty of Education of the University of Hong Kong (HKU) yesterday (7 February), reporting that about 7,400 data subjects had been affected by the data breach incident.
-
OGCIO launches multipronged measures to assist departments in strengthening IT project governance (7-February-2024)
All bureaux and departments (B/Ds) of the Hong Kong Special Administrative Region Government are committed to promoting the digital transformation of government services and actively making use of information technology (IT) to provide more convenient e-government services for people and business.
-
Security Alert (A24-02-04): Multiple Vulnerabilities in Google Chrome (7-February-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-02-03): Multiple Vulnerabilities in Android (7-February-2024)
Google has released Android Security Bulletin February 2024 to fix multiple vulnerabilities in Android operating system.
-
Suspicious website related to Mox Bank Limited (6-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Mox Bank Limited relating to a suspicious website, which has been reported to the HKMA.
-
Fraudulent website and phishing emails related to Public Bank (Hong Kong) Limited (6-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Public Bank (Hong Kong) Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent social media accounts and phishing instant messages related to Airstar Bank Limited (5-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to fraudulent social media accounts and phishing instant messages, which have been reported to the HKMA.
-
Phishing emails related to DBS Bank (Hong Kong) Limited (5-February-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Security Alert (A24-02-02): Multiple Vulnerabilities in QNAP Products (5-February-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
‘e-Generation Joyful Internet Surfing’ Parent Seminar (3): Protecting Personal Data Privacy Online & Effective Use of Library e-Resources (2-February-2024)
The Education Bureau, Hong Kong Education City, and Committee on Home-School Co-operation will co-organise a seminar on ‘e-Generation Joyful Internet Surfing’ Parent Seminar (3): Protecting Personal Data Privacy Online & Effective Use of Library e-Resources.
-
Security Alert (A24-02-01): Multiple Vulnerabilities in Microsoft Edge (2-February-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
HKCERT Releases Annual Information Security Outlook and Forecast Next Level Phishing Attacks Difficult to Distinguish Hackers Exploit AI for Crimes Could Become a New Normal (1-February-2024)
The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) held a briefing today, and summarised the information security situation in Hong Kong in 2023 as well as released a security outlook for 2024.
-
Privacy Commissioner Urges the Public to Stay Vigilant about the Worldcoin Project and Not to Disclose Biometric Data Arbitrarily (31-January-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) executed court warrants this afternoon and entered six premises of the Worldcoin project located at Yau Ma Tei, Kwun Tong, Wan Chai, Cyperport, Central and Causeway Bay to carry out investigations.
-
Security Alert (A24-01-29): Multiple Vulnerabilities in Linux Operating Systems (31-January-2024)
Multiple vulnerabilities are found in all versions of the Linux GNU C Library (glibc) from version 1.04 to the latest release version 2.38.
-
Security Alert (A24-01-28): Multiple Vulnerabilities in Google Chrome (31-January-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A24-01-27): Multiple Vulnerabilities in GitLab (31-January-2024)
GitLab has released 16.5.8, 16.6.6, 16.7.4 and 16.8.1 to address multiple vulnerabilities in various versions of GitLab.
-
Judiciary alerts public to fraudulent summonses (30-January-2024)
The Judiciary today (January 30) urged the public to stay alert to fraudulent summonses purportedly issued by the Judiciary.
-
Security Alert (A24-01-26): Multiple Vulnerabilities in Juniper Networks Junos OS and Junos OS Evolved (30-January-2024)
Juniper Networks has published security advisories to address multiple vulnerabilities in Junos OS and Junos OS Evolved.
-
Privacy Commissioner’s Office Reports on its Work in 2023 and Publishes a Report on “Privacy Concerns on Electronic Food Ordering at Restaurants” (29-January-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) today reported on its work in 2023 and released a report on “Privacy Concerns on Electronic Food Ordering at Restaurants”.
-
Fraudulent website and internet banking login screen related to DBS Bank (Hong Kong) Limited (29-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-01-25): Multiple Vulnerabilities in Synology DiskStation Manager (29-January-2024)
Synology has published security advisories to address multiple vulnerabilities in various versions of DiskStation Manager (DSM).
-
Security Alert (A24-01-24): Multiple Vulnerabilities in Microsoft Edge (29-January-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website and phishing emails related to China CITIC Bank International Limited (26-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent website and social media page related to DBS Bank (Hong Kong) Limited (26-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and a social media page, which have been reported to the HKMA.
-
A 31-year-old Male Arrested for Suspected Doxxing of a Taxi Driver (26-January-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) last night arrested a Chinese male aged 31 in the New Territories.
-
Promoting Responsible Sharenting – Privacy Commissioner Publishes an Article entitled “Think Twice Before Sharing Your Children’s Lives Online” (25-January-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Think Twice Before Sharing Your Children’s Lives Online”.
-
Security Alert (A24-01-23): Multiple Vulnerabilities in Cisco Products (25-January-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
Global Data Breach Involving Various Social Media and Online Platforms Privacy Commissioner’s Office Reminds Platform Users to Stay Vigilant (24-January-2024)
The Office of the Privacy Commissioner for Personal Data (PCPD) noted reports of overseas media that researchers of cybersecurity information websites uncovered global data breach incidents affecting various online platforms.
-
LCQ20: Combating online and phone fraud (24-January-2024)
Following is a question by the Hon Chan Kin-por and a written reply by the Secretary for Security, Mr Tang Ping-keung, in the Legislative Council today (January 24).
-
LCQ18: Development and application of artificial intelligence (24-January-2024)
Following is a question by the Hon Elizabeth Quat and a written reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (January 24).
-
Public should beware of scam video about investment plan purported to be recommended by CE (24-January-2024)
A Government spokesman today (January 24) advised members of the public to stay vigilant about forged TV programme clips created by artificial intelligence circulating online about an investment plan purported to be recommended by the Chief Executive.
-
Security Alert (A24-01-22): Multiple Vulnerabilities in Firefox (24-January-2024)
Mozilla has published the advisories (MFSA2024-01 and MFSA2024-02) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A24-01-21): Multiple Vulnerabilities in Google Chrome (24-January-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Resource Centre - Leaflet on "Misinformation and Disinformation" (23-January-2024)
Leaflet on "Information Security Guide - Misinformation and Disinformation" is now available at the Resource Centre
-
SWD urges public to be alert to fraudulent job advertisements (23-January-2024)
The Social Welfare Department (SWD) today (January 23) alerted members of the public to fraudulent job advertisements published on a social media platform.
-
High Threat Security Alert (A24-01-20): Multiple Vulnerabilities in Apple iOS and iPadOS (23-January-2024)
Apple has released iOS 15.8.1, iOS 16.7.5, iOS 17.3, iPadOS 15.8.1, iPadOS 16.7.5 and iPadOS 17.3 to fix the vulnerabilities in various Apple devices.
-
High Threat Security Alert (A24-01-19): Vulnerability in Ivanti Endpoint Manager Mobile (MobileIron Core) (22-January-2024)
Ivanti has published a security advisory to address a vulnerability in Ivanti Endpoint Manager Mobile.
-
Transport Department alerts public to fraudulent SMS messages of HKeToll (21-January-2024)
The Transport Department (TD) today (January 21) alerted members of the public to fraudulent SMS messages purportedly issued by the HKeToll.
-
Police hold CyberDefenders' Carnival 2024 (with photos) (20-January-2024)
The Cyber Security and Technology Crime Bureau (CSTCB) of the Hong Kong Police Force held the "CyberDefenders’ Carnival 2024" at HarbourChill, Wan Chai today (January 20) to educate the public about cyber threats and digital security through entertaining performances and interactive game booths, attracting 8,000 participants.
-
HKMA alerts public to an online video purported to be interview with HKMA Chief Executive (18-January-2024)
The Hong Kong Monetary Authority (HKMA) today (January 18) urged members of the public to remain vigilant against an online video purported to be a media interview with the Chief Executive of the HKMA, Mr Eddie Yue, on an investment item.
-
Security Alert (A24-01-18): Vulnerability in Drupal (18-January-2024)
Drupal published a security advisory to address a vulnerability in the Drupal products.
-
High Threat Security Alert (A24-01-17): Multiple Vulnerabilities in Microsoft Edge (18-January-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
LCQ3: Ensuring the normal operation of government electronic systems (17-January-2024)
Following is a question by the Hon Yung Hoi-yan and a reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (January 17).
-
Phishing instant messages related to The Hongkong and Shanghai Banking Corporation Limited (17-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Security Alert (A24-01-16): Multiple Vulnerabilities in Oracle Java and Oracle Products (January 2024) (17-January-2024)
Oracle released a Critical Patch Update (CPU) Advisory with collections of patches to address multiple vulnerabilities in Java SE and various Oracle products.
-
High Threat Security Alert (A24-01-15): Vulnerability in VMware Aria Automation (17-January-2024)
VMware published a security advisory to address a vulnerability in VMware Aria Automation.
-
High Threat Security Alert (A24-01-14): Multiple Vulnerabilities in Citrix Product (17-January-2024)
Citrix published security advisories to address multiple vulnerabilities in Citrix products.
-
High Threat Security Alert (A24-01-13): Multiple Vulnerabilities in Google Chrome (17-January-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Reaching Out to the Community – PCPD Representative attends the Press Conference on the Release of “Survey on ‘Sharenting’ and Protecting Children’s Digital Privacy” (16-January-2024)
The Assistant Privacy Commissioner for Personal Data (Complaints and Criminal Investigation) (Acting) of the Office of the Privacy Commissioner for Personal Data (PCPD), Ms Hermina NG, attended the press conference on the release of “Survey on ‘Sharenting’ and Protecting Children’s Digital Privacy” held by the Chinese YMCA of Hong Kong on 14 January. Ms NG shared with participants what parents should watch out before they publish any post regarding their children’s daily lives online, so as to safeguard children privacy.
-
High Threat Security Alert (A24-01-12): Multiple Vulnerabilities in GitLab (16-January-2024)
GitLab has released 16.5.6, 16.6.4 and 16.7.2 to address multiple vulnerabilities in various versions of GitLab.
-
High Threat Security Alert (A24-01-11): Multiple Vulnerabilities in Juniper Networks Junos OS and Junos OS Evolved (16-January-2024)
Juniper Networks has published security advisories to address multiple vulnerabilities in Junos OS and Junos OS Evolved.
-
FSO alerts public to deceptive content purported to be interviews with FS (15-January-2024)
The Financial Secretary's Office (FSO) today (January 15) appealed to members of the public for heightened vigilance against online deceptive advertisements purported to be interviews with the Financial Secretary (FS).
-
A 42-year-old Male Convicted and Sentenced for Doxxing another person because of Monetary Dispute (12-January-2024)
The Shatin Magistrates’ Court today convicted a 42-year old male, Mr WONG Ho-loon (defendant), of two charges of a doxxing offence upon his guilty plea.
-
Fraudulent website, internet banking login screen and phishing instant messages related to Fubon Bank (Hong Kong) Limited (12-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Fubon Bank (Hong Kong) Limited relating to a fraudulent website, an internet banking login screen and phishing instant messages, which have been reported to the HKMA.
-
Security Alert (A24-01-10): Multiple Vulnerabilities in Microsoft Edge (12-January-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A24-01-09): Multiple Vulnerabilities in Cisco Products (11-January-2024)
Cisco released security advisories to address multiple vulnerabilities in Cisco products.
-
High Threat Security Alert (A24-01-08): Multiple Vulnerabilities in Ivanti Products (11-January-2024)
Ivanti released a security advisory to address multiple vulnerabilities in Ivanti products.
-
Security Alert (A24-01-07): Vulnerability in Fortinet Products (10-January-2024)
Fortinet released a security advisory to address a vulnerability in Fortinet products.
-
Security Alert (A24-01-06): Vulnerability in Google Chrome (10-January-2024)
Google released a security update to address a vulnerability in Google Chrome.
-
Security Alert (A24-01-05): Multiple Vulnerabilities in Microsoft Products (January 2024) (10-January-2024)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Promoting Ethical and Responsible Use of AI – Privacy Commissioner Publishes an Article in Banking Today (9-January-2024)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “AI and Ethics: Ensuring the Responsible Use of Generative AI in Banking” in Banking Today, a bi-monthly journal of the Hong Kong Institute of Bankers, where she outlined the potential benefits of generative AI on the banking industry, analysed the technology’s associated privacy and ethical risks, and introduced the evolving regulatory landscape of AI.
-
Fraudulent mobile application related to Hang Seng Bank, Limited (9-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to a fraudulent mobile application (app), which has been reported to the HKMA.
-
Government cautions public on online video about investment plan purported to be recommended by CE (9-January-2024)
A Government spokesman today (January 9) cautioned the public not to believe in a forged video created by artificial intelligence circulating online about an investment plan with high returns purported to be recommended by the Chief Executive.
-
Phishing messages and fraudulent websites related to Alipay Financial Services (HK) Limited (9-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to phishing messages and fraudulent websites.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (8-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-01-04): Multiple Vulnerabilities in QNAP Products (8-January-2024)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A24-01-03): Multiple Vulnerabilities in Microsoft Edge (8-January-2024)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website, internet banking login screen and social media account related to Hang Seng Bank, Limited (5-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to a fraudulent website, an internet banking login screen and a social media account, which have been reported to the HKMA.
-
Phishing email and fraudulent website related to Alipay Financial Services (HK) Limited (5-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to a phishing email and a fraudulent website.
-
Fraudulent website and internet banking login screen related to DBS Bank (Hong Kong) Limited (5-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A24-01-02): Multiple Vulnerabilities in Google Chrome (4-January-2024)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A24-01-01): Multiple Vulnerabilities in Android (4-January-2024)
Google has released Android Security Bulletin January 2024 to fix multiple security vulnerabilities in Android operating system.
-
Fraudulent websites and internet banking login screens related to China CITIC Bank International Limited (3-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (2-January-2024)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Anti-Deception Coordination Centre to enhance scam intervention through SMS communications (with photo) (1-January-2024)
The Anti-Deception Coordination Centre (ADCC) of the Hong Kong Police Force will expand its scheme of “Upstream Scam Intervention” starting tomorrow (January 2) to include sending SMS messages to potential scam victims as a means to provide timely alerts and advice.
-
Fraudulent websites, phishing instant messages and social media accounts related to Airstar Bank Limited (29-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to fraudulent websites, phishing instant messages and social media accounts, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to China CITIC Bank International Limited (28-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
High Threat Security Alert (A23-12-17): Vulnerability in Microsoft Edge (22-December-2023)
Microsoft released a security update to address a vulnerability in Microsoft Edge.
-
Privacy Commissioner’s Office Publishes Two Investigation Reports (21-December-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today published two investigation reports. The first report relates to four cases of improper retention and use of personal data of employees / former employees by employers and the second report relates to unauthorised scraping of the personal data of Carousell users.
-
High Threat Security Alert (A23-12-16): Vulnerability in Google Chrome (21-December-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
財政司司長在香港Web 3.0安全科技峰會暨Web 3.0年度頒獎典禮致辭 (with photos / video) (Chinese only) (21-December-2023)
以下是財政司司長陳茂波今日(十二月二十一日)在香港Web3.0安全科技峰會暨Web3.0年度頒獎典禮的致辭全文。 (Chinese only)
-
Security Alert (A23-12-15): Vulnerability in OpenSSH (20-December-2023)
OpenSSH has released a new version to address a vulnerability in various versions of OpenSSH.
-
Security Alert (A23-12-14): Multiple Vulnerabilities in Firefox (20-December-2023)
Mozilla has published the advisories (MFSA2023-54 and MFSA2023-56) to address multiple vulnerabilities in various versions of Firefox browser.
-
Phishing instant messages related to Nanyang Commercial Bank, Limited (20-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Nanyang Commercial Bank, Limited relating to phishing instant messages, which have been reported to the HKMA.
-
SMS Sender Registration Scheme to be launched on December 28 to assist in combating SMS scams (20-December-2023)
The Office of the Communications Authority (OFCA) today (December 20) announced that the SMS Sender Registration Scheme will first be implemented in the telecommunications sector from December 28, with a view to helping members of the public verify the identities of SMS senders and beware of call and SMS scams.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (20-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Phishing emails related to DBS Bank (Hong Kong) Limited (20-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Hong Kong Cyber Security New Generation Capture the Flag Challenge 2023 Seminar & Award Presentation Ceremony (19-December-2023)
The award presentation ceremony will be held on 19 December 2023. Apart from presenting the awards to the winners, cyber security experts will also be on hand to share their views on cyber security and how to leverage vulnerability management solutions to improve security and security risk management. Besides, there will be two panel discussions on attack and defense techniques.
-
Fraudulent website and internet banking login screen related to China CITIC Bank International Limited (19-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A23-12-13): Multiple Vulnerabilities in Fortinet Products (18-December-2023)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet products.
-
Security Alert (A23-12-12): Multiple Vulnerabilities in Microsoft Edge (18-December-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge
-
Promoting Data Security – Privacy Commissioner Publishes an Article entitled “Safeguarding Data Security in Hong Kong: A Call to Action” on Hong Kong Lawyer (18-December-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Safeguarding Data Security in Hong Kong: A Call to Action” on Hong Kong Lawyer.
-
Fraudulent websites, mobile applications and internet banking login screens related to ZA Bank Limited (18-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by ZA Bank Limited relating to fraudulent websites, mobile applications (Apps) and internet banking login screens, which have been reported to the HKMA.
-
“All-Out Anti-Phishing” Moving Showroom Campaign Season 3 (From 11-December-2023 to 17-December-2023)
The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) will be hosting the third season of "All-Out Anti-Phishing" Moving Showroom Campaign with DinDong from 11 to 17 Dec 2023. Public is welcome to visit.
-
Inter-school Cybersecurity Competition 2023 (From 18-November-2023 to 16-December-2023)
In order to promote and foster cybersecurity education, raise youngsters' interest in cybersecurity and develop the talents needed for 21st century, Institute of Vocational Education (IVE) Chai Wan Information Technology CyberSecurity Centre collaborated with AiTLE and Check Point to organise Inter-school Cybersecurity Competition 2023.
-
CSA HKM Knowledge Sharing Event – December 2023 (15-December-2023)
In the last CSA HKM Knowledge Sharing Event of the year, our expert speaker will share his experience on how to infiltrate US DoD.
-
Phishing message and fraudulent website related to Alipay Financial Services (HK) Limited (15-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to a phishing message and a fraudulent website.
-
InfoSec Tour: “Beware of Phishing Attacks” (14-December-2023)
An InfoSec Tour, which was jointly organised by OGCIO and RTHK Radio 2, had invited cyber security expert Mr Ben and DJ Miss Lu to give useful tips and share personal experience on beware of phishing attacks. You can now watch the video of the InfoSec Tour through this hyperlink.
-
Cybersecurity Symposium 2023 (14-December-2023)
The Cybersecurity Symposium 2023 aims to unite quangos, enterprises and other local organisations in Hong Kong to address the cybersecurity challenge in the digital era and explore how the industry can collaborate to enhance the overall cybersecurity resilience of Hong Kong.
-
保安局局長出席撲滅罪行委員會會議後會見傳媒開場發言 (with video) (Chinese only) (14-December-2023)
以下是保安局局長鄧炳強今日(十二月十四日)下午出席撲滅罪行委員會會議後,在添馬政府總部會見傳媒的開場發言。 (Chinese only)
-
創新科技及工業局局長會見傳媒談話全文 (Chinese only) (14-December-2023)
以下是創新科技及工業局局長孫東教授今日(十二月十四日)下午出席「網絡安全技術論壇2023」後會見傳媒的談話內容。
-
SITI attends Cybersecurity Symposium 2023 (with photos) (14-December-2023)
The Secretary for Innovation, Technology and Industry, Professor Sun Dong, officiated at the Cybersecurity Symposium 2023 today (December 14) and shared the latest efforts of the Government in safeguarding cybersecurity and facilitating data flow in Hong Kong. The symposium is co-organised by the Office of the Government Chief Information Officer (OGCIO) and the Hong Kong Internet Registration Corporation Limited.
-
創新科技及工業局局長出席「網絡安全技術論壇2023」致辭全文 (with photos) (Chinese only) (14-December-2023)
以下是創新科技及工業局局長孫東教授今日(十二月十四日)出席「網絡安全技術論壇2023」的致辭全文。 (Chinese only)
-
Fraudulent websites related to Chong Hing Bank Limited (14-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to fraudulent websites, which have been reported to the HKMA.
-
Security Alert (A23-12-11): Multiple Vulnerabilities in Google Chrome (13-December-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A23-12-10): Multiple Vulnerabilities in Microsoft Products (December 2023) (13-December-2023)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
A 37-year-old Male Arrested for Suspected Doxxing of His Former Colleague (12-December-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 37 on Hong Kong Island. The arrested person was suspected to have disclosed the personal data of a data subject without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Fraudulent websites and internet banking login screens related to China CITIC Bank International Limited (12-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA. A hyperlink to the press release is available on the HKMA website.
-
Fraudulent websites related to Bank Julius Baer & Co. Ltd. (12-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to fraudulent websites, which have been reported to the HKMA. A hyperlink to the press release is available on the HKMA website.
-
Security Alert (A23-12-09): Vulnerability in Bluetooth devices (12-December-2023)
A vulnerability has been identified in various devices running different operating systems, including Android, Linux, iOS and macOS, while the Bluetooth functionality is enabled.
-
High Threat Security Alert (A23-12-08): Multiple Vulnerabilities in Apple iOS and iPadOS (12-December-2023)
Apple has released iOS 16.7.3, iOS 17.2, iPadOS 16.7.3 and iPadOS 17.2 to fix the vulnerabilities in various Apple devices.
-
Raising Public Awareness to Combat Fraud – Privacy Commissioner’s Office Organises a Seminar on “Safe Use of WhatsApp and Social Media Platforms” (11-December-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) organised a seminar on “Safe Use of WhatsApp and Social Media Platforms” in hybrid mode on 8 December, which attracted over 600 participants.
-
Security Alert (A23-12-07): Multiple Vulnerabilities in QNAP Products (11-December-2023)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
‘e-Generation Joyful Internet Surfing’ Parent Seminar (2) Preventing Internet Addiction and Saying No to Harmful Online Information (9-December-2023)
In this seminar,a representative from Office for Film, Newspaper & Article Administration will share with parents how to assist their children in establishing positive values, staying away from harmful information, and avoiding falling into online traps.
-
Fraudulent social media accounts related to Livi Bank Limited (8-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to fraudulent social media accounts, which have been reported to the HKMA.
-
ITIB publishes Policy Statement on Facilitating Data Flow and Safeguarding Data Security in Hong Kong (8-December-2023)
The Innovation, Technology and Industry Bureau (ITIB) published the Policy Statement on Facilitating Data Flow and Safeguarding Data Security in Hong Kong (Policy Statement) today (December 8) to set out the Government's management principles and key strategies on data flow and data security, and to put forward 18 specific action items.
-
Security Alert (A23-12-06): Multiple Vulnerabilities in Microsoft Edge (8-December-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A23-12-05): Vulnerability in Apache Struts (7-December-2023)
The Apache Software Foundation has released the security bulletins to address the vulnerability in Apache Struts.
-
Speech by Mr Daniel Cheung, Assistant Government Chief Information Officer (Cyber Security and Digital Identity), at the “Inauguration Ceremony of the Hong Kong China Network Security Association” (Chinese only) (6-December-2023)
Speech by Mr Daniel Cheung, Assistant Government Chief Information Officer (Cyber Security and Digital Identity), at the “Inauguration Ceremony of the Hong Kong China Network Security Association” (Chinese only)
-
Judiciary alerts public to phishing email (6-December-2023)
The Judiciary today (December 6) called on the public to stay vigilant to phishing emails sent from the email accounts "Jason Ding <Jason@judiciary[.]hk>" and "<jasonding@judiciary[.]hk>". The emails falsely claim that they were issued by the Judiciary of the Hong Kong Special Administrative Region.
-
Security Alert (A23-12-04): Vulnerability in Cisco Products (6-December-2023)
Cisco released a security advisory to address a vulnerability in Cisco software.
-
Security Alert (A23-12-03): Multiple Vulnerabilities in Google Chrome (6-December-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Fraudulent website and internet banking login screen related to Bank of China (Hong Kong) Limited (5-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and internet banking login screen, which have been reported to the HKMA.
-
Security Alert (A23-12-02): Multiple Vulnerabilities in SonicWall SMA 100 Series Products (5-December-2023)
SonicWall has released a security advisory to address multiple vulnerabilities in SMA 100 series products.
-
Security Alert (A23-12-01): Multiple Vulnerabilities in Android (5-December-2023)
Google has released Android Security Bulletin December 2023 to fix multiple security vulnerabilities in Android operating system.
-
Phishing instant messages and fraudulent social media accounts related to Hang Seng Bank, Limited (4-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to phishing instant messages and fraudulent social media accounts, which have been reported to the HKMA.
-
Fraudulent instant messages related to Bank of China (Hong Kong) Limited (4-December-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent instant messages, which have been reported to the HKMA.
-
Subject Talk on "New Era of IT": Know More About Technology and National Security (2-December-2023)
The speaker will introduce various technology-related security fields under national security that are closely related to daily life such as Science and Technology Security, Cyber Security, Artificial Intelligence Security and Data Security so that citizens will have a better understanding of the importance of national security to the country, to the Hong Kong and to every Hong Kong citizen.
-
High Threat Security Alert (A23-11-22): Multiple Vulnerabilities in Apple iOS and iPadOS (1-December-2023)
Apple has released iOS 17.1.2 and iPadOS 17.1.2 to fix the vulnerabilities in various Apple devices.
-
High Threat Security Alert (A23-11-21): Multiple Vulnerabilities in Microsoft Edge (30-November-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
立法會:保安局局長就「全面打擊網絡詐騙罪行」議員議案總結發言 (Chinese only) (29-November-2023)
以下是保安局局長鄧炳強今日(十一月二十九日)在立法會會議就「全面打擊網絡詐騙罪行」議員議案的總結發言全文。 (Chinese only)
-
立法會:保安局局長就「全面打擊網絡詐騙罪行」議員議案開場發言 (Chinese only) (29-November-2023)
以下是保安局局長鄧炳強今日(十一月二十九日)在立法會會議就「全面打擊網絡詐騙罪行」議員議案的開場發言全文。(Chinese only)
-
Security Alert (A23-11-20): Vulnerability in Apache Tomcat (29-November-2023)
The Apache Software Foundation released a security update to address a vulnerability in the Apache Tomcat.
-
High Threat Security Alert (A23-11-19): Multiple Vulnerabilities in Google Chrome (29-November-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
A 30-year-old Female Arrested for Suspected Doxxing of Her Neighbours (28-November-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 30 on Hong Kong Island. The arrested person was suspected to have disclosed the personal data of two data subjects without their consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Fraudulent mobile application related to LGT Bank AG (27-November-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by LGT Bank AG relating to a fraudulent App, which has been reported to the HKMA.
-
LegCo to debate motion on combating cyber fraud crimes on all fronts (27-November-2023)
The Legislative Council (LegCo) will hold a meeting on Wednesday (November 29) at 11 am in the Chamber of the LegCo Complex.
-
Launch of Faster Payment System Suspicious Proxy ID Alert (27-November-2023)
The Hong Kong Monetary Authority (HKMA) announced the launch of the Faster Payment System (FPS) Suspicious Proxy ID Alert on November 26.
-
High Threat Security Alert (A23-11-18): Multiple Vulnerabilities in ownCloud (27-November-2023)
ownCloud released the security advisories to address multiple vulnerabilities in ownCloud core, graphapi and oauth2 libraries.
-
Transport Department alerts public to fraudulent websites of HKeToll (24-November-2023)
The Transport Department (TD) today (November 24) alerted members of the public to the following fraudulent websites that pretend to be HKeToll, which seek to deceive users into making payments and obtain their vehicle registration marks and credit card information.
-
Hong Kong Police Force launches Anti-Deception Alliance today (24-November-2023)
The Hong Kong Police Force (HKPF) held the inauguration ceremony for the Anti-Deception Alliance today (November 24).
-
Fraudulent social media pages, websites and internet banking login screen related to Hang Seng Bank Limited (24-November-2023)
Fraudulent social media pages, websites and internet banking login screen related to Hang Seng Bank Limited
-
Security Alert (A23-11-17): Multiple Vulnerabilities in Firefox (23-November-2023)
Mozilla has published the advisories (MFSA2023-49 and MFSA2023-50) to address multiple vulnerabilities in Firefox browser.
-
Transport Department alerts public to fraudulent websites of HKeToll (22-November-2023)
The Transport Department (TD) today (November 22) alerted members of the public to beware of fraudulent website addresses ("gov[.]hktc[.]etollu[.]xyz" and "etollu[.]xyz") that pretend to be HKeToll, which seek to deceive users into making payments and obtain their credit card information.
-
LCQ17: Measures to combat deception cases (22-November-2023)
Following is a question by Dr the Hon Chow Man-kong and a reply by the Secretary for Security, Mr Tang Ping-keung, in the Legislative Council today (November 22).
-
LCQ11: Cybersecurity of government departments and other public organisations (22-November-2023)
Following is a question by the Hon Edward Leung and a written reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (November 22).
-
Resource Centre - Leaflet on "Cyber Safe Travel" (21-November-2023)
Leaflet on "Information Security Guide - Cyber Safe Travel" is now available at the Resource Centre
-
Fraudulent websites, mobile apps and phishing messages related to Octopus Cards Limited (21-November-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to fraudulent websites, mobile apps and phishing messages. The relevant stored value facility (SVF) licensee has reported the case to the HKMA.
-
Phishing emails and fraudulent websites related to Alipay Financial Services (HK) Limited (20-November-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to phishing emails and fraudulent websites. The relevant stored value facility (SVF) licensee has reported the case to the HKMA.
-
2023 Fight Crime Conference concludes successfully (18-November-2023)
The Fight Crime Committee (FCC) today (November 18) held the 2023 Fight Crime Conference at the Central Government Offices with near 500 participants exchanging views on topics relating to law and order and crime-fighting strategies in Hong Kong.
-
Fraudulent website related to Octopus Cards Limited (17-November-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to a fraudulent website.
-
Security Alert (A23-11-16): Multiple Vulnerabilities in Microsoft Edge (17-November-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent social media page related to The Hongkong and Shanghai Banking Corporation Limited (16-November-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to a fraudulent social media page, which has been reported to the HKMA. A hyperlink to the press release is available on the HKMA website.
-
A 27-year-old Female Arrested for Suspected Doxxing of a Pet Seller (16-November-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 27 in Kowloon. The arrested person was suspected to have disclosed the personal data of a data subject without her consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Reaching Out to the Community – Privacy Commissioner Interviewed by the RTHK Radio 1’s “HK2000” (16-November-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, was interviewed by RTHK Radio 1’s “HK2000” on 15 November to explain the “Hong Kong Enterprise Cyber Security Readiness Index and Privacy Awareness” survey report, and the three initiatives to help organisations enhance their data security launched by the Office of the Privacy Commissioner for Personal Data (PCPD).
-
Security Alert (A23-11-15): Vulnerability in Intel Products (16-November-2023)
Intel has issued a security advisory (INTEL-SA-00950) to address a vulnerability in some Intel processors.
-
Security Alert (A23-11-14): Multiple Vulnerabilities in Fortinet Products (16-November-2023)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet products.
-
Security Alert (A23-11-13): Multiple Vulnerabilities in Cisco Products (16-November-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
LCQ9: Data governance system (15-November-2023)
Following is a question by the Hon Carmen Kan and a written reply by the Secretary for Innovation, Technology and Industry, Professor Sun Dong, in the Legislative Council today (November 15).
-
LCQ14: Combating online and telephone frauds (15-November-2023)
Following is a question by the Hon Kenneth Leung and a written reply by the Secretary for Security, Mr Tang Ping-keung, in the Legislative Council today (November 15).
-
Security Alert (A23-11-12): Multiple Vulnerabilities in Adobe Reader/Acrobat (15-November-2023)
Security updates are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
Security Alert (A23-11-11): Multiple Vulnerabilities in Google Chrome (15-November-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A23-11-10): Multiple Vulnerabilities in Microsoft Products (November 2023) (15-November-2023)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
“Hong Kong Enterprise Cyber Security Readiness Index” Recorded the Largest-Ever Decline in 2023 Actions Required to Bolster Staff Awareness on Cyber Security (14-November-2023)
The Hong Kong Productivity Council Cyber Security (HKPC Cyber Security) and the Office of the Privacy Commissioner for Personal Data, Hong Kong (PCPD) jointly released the results of the “Hong Kong Enterprise Cyber Security Readiness Index and Privacy Awareness” survey report today.
-
InfoSec Tour: “Protect Personal Information and Privacy” (13-November-2023)
An InfoSec Tour, which was jointly organised by OGCIO and RTHK Radio 2, had invited cyber security expert Mr Ben and DJ Miss Lu Ho to share personal experience on protect personal information and privacy. You can now watch the video of the InfoSec Tour through this hyperlink.
-
Privacy Commissioner Publishes an Article on Hong Kong Lawyer (13-November-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Responsible ‘Sharenting’ for Protecting Children’s Digital Privacy” on Hong Kong Lawyer.
-
Security Alert (A23-11-09): Vulnerability in QNAP Products (13-November-2023)
QNAP has published a security advisory to address a vulnerability in QNAP products.
-
Transport Department alerts public to fraudulent websites of HKeToll (10-November-2023)
The Transport Department (TD) today (November 10) alerted members of the public to the following fraudulent websites that pretend to be HKeToll, which seek to deceive users into making payments and obtain their vehicle registration marks and credit card information.
-
Security Alert (A23-11-08): Multiple Vulnerabilities in Microsoft Edge (10-November-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
GCIO shares strategies on cybersecurity and driving digital-based development in World Internet Conference Wuzhen Summit (9-November-2023)
The Government Chief Information Officer, Mr Tony Wong, attended two forums of the 2023 World Internet Conference Wuzhen Summit in Wuzhen, Zhejiang, today (November 9) and exchanged views with representatives of Government departments, international organisations, enterprises, research institutions and civil societies from all over the world.
-
Security Alert (A23-11-07): Vulnerability in Google Chrome (9-November-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
GCIO shares strategies on cybersecurity and driving digital-based development in World Internet Conference Wuzhen Summit (9-November-2023)
The Government Chief Information Officer, Mr Tony Wong, attended two forums of the 2023 World Internet Conference Wuzhen Summit in Wuzhen, Zhejiang, today (November 9) and exchanged views with representatives of Government departments, international organisations, enterprises, research institutions and civil societies from all over the world.
-
Security Alert (A23-11-07): Vulnerability in Google Chrome (9-November-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
HKIRC網絡研討會 — 各職位如何各司其職加強資料保護及網絡安全事故應變 (Chineses Only) (8-November-2023)
在本次研討會中,HKIRC網絡安全專家將會針對改善上述網絡安全趨勢作分享,包括如何有效提高員工的網絡安全意識,不同職位在工作上的最佳實踐,例如保護企業和客人個人資料安全、授權遙距工作注意事項、網絡安全突發事件如何處理和授權工作注意事項等等,及分享免費資源協助公司提升網絡安全意識。 (Chineses Only)
-
PCPD Publishes 2022-23 Annual Report (8-November-2023)
The 2022-23 Annual Report of the PCPD, themed “Protecting Personal Data Privacy for a Smart Hong Kong”, emphasises the importance of protecting personal data privacy amidst the rapid technological advancement in our society, was tabled in the Legislative Council today.
-
Seminar on “Enhancing Data Security to Prevent Cyber Attacks” (7-November-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) organises this seminar to explain means to enhance cybersecurity and some recommended data security measures, and highlight the key points in preventing and handling data breach incidents. A guest speaker from the Cyber Security and Technology Crime Bureau of the Hong Kong Police Force will also discuss the latest development and trends of cyber threats for enterprises and organisations, using real cybercrime cases as examples.
-
Security Alert (A23-11-06): Multiple Vulnerabilities in Android (7-November-2023)
Google has released Android Security Bulletin November 2023 to fix multiple security vulnerabilities in Android operating system.
-
Raise Public Awareness of Cyber Security: Guard against Risks of Unknown WhatsApp Video Calls (7-November-2023)
With the advancement of technology, cyber security has become an important issue that cannot be ignored in our lives. Cyber-attacks have become increasingly sophisticated. Some citizens have reported to the Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) that they have received suspicious WhatsApp video calls from strangers (using area codes such as +62 and +44), claiming to be from the police or banking institutions and even knowing the names of the victims.
-
Enhancing Data Security – Privacy Commissioner’s Office Organises a Seminar on “Enhancing Data Security to Prevent Cyber Attacks” (7-November-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) organised a seminar on “Enhancing Data Security to Prevent Cyber Attacks” in hybrid mode on 7 November, which attracted over 500 participants.
-
Security Alert (A23-11-05): Multiple Vulnerabilities in QNAP Products (6-November-2023)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A23-11-04): Multiple Vulnerabilities in Microsoft Edge (6-November-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Reaching Out to the Community – Privacy Commissioner Interviewed by “Warm Talking” (6-November-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, was interviewed by Orange News’ current affairs programme “Warm Talking” to explain the work done by the Office of the Privacy Commissioner for Personal Data (PCPD) on the protection of personal data privacy.
-
Workshop I: Mobile Security Management Workshop (11-November-2023)
The workshop will be conducted in Cantonese. Admission is free by registration.
-
Hong Kong Cyber Security New Generation Capture the Flag (CTF) Challenge 2023 (From 10-November-2023 to 12-November-2023)
The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) and the Hong Kong Productivity Council (HKPC) will jointly organise the “Hong Kong Cyber Security New Generation Capture the Flag (CTF) Challenge 2023” (The Contest) to strengthen the cyber security skills and awareness of the industry and students and encourage problem solving through teamwork, creative thinking and cyber security skills.
-
Seminar on “Enhancing Data Security to Prevent Cyber Attacks” (7-November-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) organises this seminar to explain means to enhance cybersecurity and some recommended data security measures, and highlight the key points in preventing and handling data breach incidents. A guest speaker from the Cyber Security and Technology Crime Bureau of the Hong Kong Police Force will also discuss the latest development and trends of cyber threats for enterprises and organisations, using real cybercrime cases as examples.
-
Navigating the privacy and ethical challenges of generative AI (3-November-2023)
Although gen AI is fast revolutionizing accounting practices, it is worthwhile to address its privacy and ethical challenges. To analyse the privacy risks involved, we may refer to the Data Protection Principles (DPPs) in the Personal Data (Privacy) Ordinance that cover the entire lifecycle of the handling of personal data.
-
High Threat Security Alert (A23-11-03): Vulnerability in Apache ActiveMQ (3-November-2023)
Apache Software Foundation has released a security advisory to address a vulnerability in Apache ActiveMQ.
-
Protecting Critical Infrastructures: IT/OT Convergence vs MITM Attacks (2-November-2023)
As more industrial systems connect to the Internet, there is an increasing prevalence of the convergence of information technology (IT) and operational technology (OT). While the benefits of this convergence are numerous and include increased productivity and efficiency, it also brings new cyber security risks.
-
Security Alert (A23-11-02): Multiple Vulnerabilities in Cisco Products (2-November-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Reaching Out to Schools – Privacy Commissioner Speaks on the Protection of Students’ Personal Data Privacy and the Doxxing Offence (1-November-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, attended the hybrid seminar entitled “Media and Information Literacy Series: Seminar on Understanding the Internet, Social Media and Protection of Personal Data Privacy” co-organised by the Education Bureau and Journalism Education Foundation on 31 October, and gave a presentation to more than 300 primary and secondary school principals and teachers.
-
Security Alert (A23-11-01): Multiple Vulnerabilities in Google Chrome (1-November-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
A 32-year-old Male Arrested for Suspected Doxxing of His Former Classmate (31-October-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 32 in the New Territories. The arrested person was suspected to have disclosed the personal data of a data subject without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Phishing email and fraudulent website related to Alipay Financial Services (HK) Limited (31-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to a phishing email and a fraudulent website.
-
High Threat Security Alert (A23-10-28): Vulnerability in F5 BIG-IP (31-October-2023)
F5 has published a security advisory to address a vulnerability in BIG-IP.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (30-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Transport Department alerts public to fraudulent SMS messages of HKeToll (30-October-2023)
The Transport Department (TD) today (October 30) alerted members of the public to fraudulent SMS messages purportedly issued by the HKeToll.
-
Security Alert (A23-10-27): Multiple Vulnerabilities in Microsoft Edge (30-October-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Reaching Out to Governance Professionals – Assistant Privacy Commissioner Speaks at Practising Governance Annual Conference 2023 (27-October-2023)
The Assistant Privacy Commissioner for Personal Data (Corporate Communications and Compliance) of the Office of the Privacy Commissioner for Personal Data (PCPD), Ms Joyce LAI, attended the Practising Governance Annual Conference 2023 (Conference) on 26 October and gave a presentation entitled “How to Uphold Data Governance Standards in a Data Breach”.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (27-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
‘e-Generation Joyful Internet Surfing’ Parent Seminar (1) Decoding Cyberbullying and Home-School Collaborative e-Learning (27-October-2023)
Registered social workers will explain the current Internet culture and the phenomenon of cyberbullying, as well as assisting parents in accompanying their children to tackle the challenges of the online world. A curriculum leader of a primary school will introduce parents to the online resources and tools available, and help parents understand how they can collaborate with schools to assist their children in developing good information literacy and 21st century skills.
-
Privacy Commissioner’s Office Welcomes the Chief Executive’s Policy Address 2023 (26-October-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) welcomes the array of policy initiatives on protecting cybersecurity and promoting digital economy set out in the Chief Executive’s Policy Address.
-
Fraudulent website, mobile application and internet banking login screen related to ZA Bank Limited (26-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by ZA Bank Limited relating to a fraudulent website, mobile application (App) and internet banking login screen, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (26-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Security Alert (A23-10-26): Vulnerability in OpenSSL (26-October-2023)
OpenSSL has released 3.0.12 and 3.1.4 to fix the vulnerability in various versions of OpenSSL.
-
Security Alert (A23-10-25): Multiple Vulnerabilities in Apple iOS and iPadOS (26-October-2023)
Apple has released iOS 15.8, iOS 16.7.2, iOS 17.1, iPadOS 15.8, iPadOS 16.7.2 and iPadOS 17.1 to fix the vulnerabilities in various Apple devices.
-
High Threat Security Alert (A23-10-24): Multiple Vulnerabilities in VMware Products (26-October-2023)
VMware has published a security advisory to address multiple vulnerabilities in VMware products.
-
Phishing emails related to Bank of China (Hong Kong) Limited (25-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to phishing emails, which have been reported to the HKMA.
-
Security Alert (A23-10-23): Multiple Vulnerabilities in Firefox (25-October-2023)
Mozilla has published the advisories (MFSA2023-45 and MFSA2023-46) to address multiple vulnerabilities in Firefox browser.
-
Security Alert (A23-10-22): Vulnerability in Google Chrome (25-October-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
Understanding the Mainland Laws – Privacy Commissioner’s Office organises Experience Sharing Session on “Using Standard Contracts for Transferring Personal Information Out of the Mainland” (24-October-2023)
The Office of the Privacy Commissioner for Personal Data organised an Experience Sharing Session entitled “Using Standard Contracts for Transferring Personal Information Out of the Mainland” on 24 October, which attracted more than 110 participants from various sectors, including banking, insurance, government/ public bodies, legal and information technology.
-
Security Alert (A23-10-21): Multiple Vulnerabilities in VMware Products (24-October-2023)
VMware has published security advisories to address multiple vulnerabilities in VMware products.
-
Security Alert (A23-10-20): Multiple Vulnerabilities in Apache HTTP Server (20-October-2023)
The Apache Software Foundation released a security update to address multiple vulnerabilities in the HTTP Server and its modules.
-
Phishing instant messages related to Banque Pictet & Cie SA (20-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Banque Pictet & Cie SA relating to phishing instant messages, which have been reported to the HKMA.
-
Data Security Issue concerning Hongkong Post account holders (20-October-2023)
Hongkong Post said today (October 20) that a data security issue involving Hongkong Post account holders was identified.
-
Phishing email, fraudulent websites and mobile apps related to Octopus Cards Limited (19-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to a phishing email, fraudulent websites and mobile apps.
-
Security Alert (A23-10-19): Multiple Vulnerabilities in Oracle Java and Oracle Products (October 2023) (18-October-2023)
Oracle has released the Critical Patch Update (CPU) Advisory with collections of patches for multiple security vulnerabilities found in Java SE and various Oracle products.
-
Fraudulent mobile applications related to Chong Hing Bank Limited (18-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to fraudulent mobile applications (Apps), which have been reported to the HKMA.
-
LCQ17: Enhancing cyber security (18-October-2023)
Following is a question by Prof the Hon William Wong and a written reply by the Acting Secretary for Innovation, Technology and Industry, Ms Lillian Cheong, in the Legislative Council today (October 18).
-
Alert to public on suspicious Facebook page named WH Cheuk Fanpage (18-October-2023)
A spokesman for the Deputy Chief Secretary for Administration's Office today (October 18) alerted members of the public to a suspicious Facebook page named "卓永興WH Cheuk Fanpage".
-
Security Alert (A23-10-18): Multiple Vulnerabilities in SonicWall Products (17-October-2023)
SonicWall has released a security advisory to address multiple vulnerabilities in SonicOS which is the operating system for SonicWall firewalls.
-
High Threat Security Alert (A23-10-17): Vulnerability in Cisco IOS XE Software (17-October-2023)
Cisco released a security advisory to address a vulnerability in Cisco IOS XE Software.
-
High Threat Security Alert (A23-10-16): Vulnerability in HTTP/2 protocol (16-October-2023)
A vulnerability (CVE-2023-44487) was found in HTTP/2 protocol.
-
Security Alert (A23-10-15): Multiple Vulnerabilities in QNAP Products (16-October-2023)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A23-10-14): Multiple Vulnerabilities in Microsoft Edge (16-October-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website, mobile application and internet banking login screen related to ZA Bank Limited (16-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by ZA Bank Limited relating to a fraudulent website, mobile application (App) and internet banking login screen, which have been reported to the HKMA.
-
Fraudulent websites, phishing emails and phishing messages related to Alipay Financial Services (HK) Limited (13-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to fraudulent websites, phishing emails and phishing messages.
-
Fraudulent websites and internet banking login screen related to Dah Sing Bank, Limited (13-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to fraudulent websites and an internet banking login screen, which have been reported to the HKMA.
-
Accreditation of two ISO certifications in information security and privacy management bestowed to “iAM Smart” (with photos) (13-October-2023)
The Office of the Government Chief Information Officer (OGCIO) held its 17th Technology Forum at the Hong Kong Productivity Council (HKPC) today (October 13) and announced that the one-stop personalised digital services platform “iAM Smart” has been awarded two ISO certifications.
-
A 24-year-old Chinese Male Arrested for Suspected Doxxing of a Police Officer and his Family Members (12-October-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 24 in Kowloon. The arrested person was suspected to have disclosed the personal data of the victim and his family members without their consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A23-10-13): Multiple Vulnerabilities in F5 Products (11-October-2023)
F5 has published security advisories to address multiple vulnerabilities in F5 devices.
-
Security Alert (A23-10-12): Multiple Vulnerabilities in Fortinet Products (11-October-2023)
Fortinet released security advisories to address multiple vulnerabilities in Fortinet products.
-
High Security Alert (A23-10-11): Multiple Vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway (11-October-2023)
Citrix released a security advisory to address multiple vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway.
-
Security Alert (A23-10-10): Multiple Vulnerabilities in Apache Tomcat (11-October-2023)
The Apache Software Foundation released a security update to address multiple vulnerabilities in the Apache Tomcat.
-
Security Alert (A23-10-09): Multiple Vulnerabilities in Google Chrome (11-October-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A23-10-08): Multiple Vulnerabilities in Microsoft Products (October 2023) (11-October-2023)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Police alert public to fraudulent social media account purported to be Commissioner of Police (11-October-2023)
Police today (October 11) appealed to members of the public to heighten vigilance against a fraudulent facebook account set up with the name “Raymond Siu” and a photo of the Commissioner of Police, and emphasised that the incident will be followed up stringently.
-
Data security must be enhanced to foil threats -- Privacy Commissioner's article in China Daily (October 2023) (11-October-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Data security must be enhanced to foil threats”.
-
“Data Security at the Heart of the Digital World” – Privacy Commissioner’s article contribution at Hong Kong Lawyer (Oct 2023) (10-October-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Data Security at the Heart of the Digital World” on Hong Kong Lawyer today.
-
InfoSec Tour: “Protect Your Online Identity” (10-October-2023)
An InfoSec Tour, which was jointly organised by OGCIO and RTHK Radio 2, had invited cyber security expert Mr Carey Tsui and Information Security Ambassadors Miss Paula Au and Miss Aeren Man to give useful tips and share personal experience on protection of digital identities. You can now watch the video of the InfoSec Tour through this hyperlink.
-
Security Alert (A23-10-07): Multiple Vulnerabilities in QNAP Products (9-October-2023)
QNAP has published a security advisory to address multiple vulnerabilities in QNAP products.
-
Privacy Commissioner’s Office has Completed the Inspection of the Customers’ Personal Data System of ZA Bank Limited to Ensure Data Security (9-October-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today published an Inspection Report on the customers’ personal data system of ZA Bank Limited (ZA Bank).
-
Reaching Out to the Community – Privacy Commissioner Interviewed by the Media to Explain WhatsApp Account Hijacking (9-October-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, was interviewed by Commercial Radio News’ “News Bulletin”, RTHK Radio 1’s “HK2000” and Commercial Radio 1’s “On a Clear Day” on 5 and 6 October to explain the fraudulent tricks of WhatsApp Account Hijacking.
-
Fraudulent website and phishing message related to Alipay Financial Services (HK) Limited (6-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to a fraudulent website and a phishing message.
-
Transport Department alerts public to fraudulent SMS messages purportedly issued by HKeToll (6-October-2023)
The Transport Department (TD) today (October 6) alerted members of the public to fraudulent SMS messages purportedly issued by the HKeToll.
-
Fraudulent websites and mobile applications related to Chong Hing Bank Limited (6-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to fraudulent websites and mobile applications (Apps), which have been reported to the HKMA.
-
Security Alert (A23-10-06): Vulnerability in Microsoft Edge (5-October-2023)
Microsoft released a security update to address a vulnerability in Microsoft Edge.
-
Security Alert (A23-10-05): Multiple Vulnerabilities in Apple iOS and iPadOS (5-October-2023)
Apple has released iOS 17.0.3 and iPadOS 17.0.3 to fix the vulnerabilities in various Apple devices.
-
Privacy Commissioner’s Office Urges the Public and Organisations to Guard against WhatsApp Account Hijacking (5-October-2023)
In the past month, the Office of the Privacy Commissioner for Personal Data (PCPD) received data breach notifications from a total of five social welfare organisations and schools, reporting that their accounts on the instant messaging application WhatsApp used for communication with service users, students and/or parents of students had been hijacked.
-
Security Alert (A23-10-04): Vulnerability in Linux Operating Systems (4-October-2023)
A local privilege escalation vulnerability is found in the Linux GNU C Library (glibc) version 2.34 while processing an environment variable called GLIBC_TUNABLES.
-
Security Alert (A23-10-03): Vulnerability in Google Chrome (4-October-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
Fraudulent websites and social media pages related to DBS Bank (Hong Kong) Limited (4-October-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and social media pages, which have been reported to the HKMA.
-
Security Alert (A23-10-02): Multiple Vulnerabilities in Android (3-October-2023)
Google has released Android Security Bulletin October 2023 to fix multiple security vulnerabilities in Android operating system.
-
High Threat Security Alert (A23-10-01): Multiple Vulnerabilities in Microsoft Edge (3-October-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Hongkong Post alerts public to fraudulent social media page (3-October-2023)
Hongkong Post today (October 3) alerted members of the public to a fraudulent Facebook page named "HongkongPost - Parcel distribution" purportedly issued by Hongkong Post.
-
High Threat Security Alert (A23-09-23): Vulnerability in Firefox (29-September-2023)
Mozilla has published the advisory (MFSA2023-44) to address a vulnerability in Firefox browser.
-
Raising Public Awareness of Fraud Prevention – Privacy Commissioner’s Office Launches New Anti-fraud Promotional Video (29-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) has published a new episode of anti-fraud promotional videos under the theme of “Don’t Hand Over Your Personal Data – Beware of Fraudsters”.
-
High Threat Security Alert (A23-09-22): Multiple Vulnerabilities in Google Chrome (28-September-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A23-09-21): Multiple Vulnerabilities in Cisco Products (28-September-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Security Alert (A23-09-20): Multiple Vulnerabilities in Firefox (27-September-2023)
Mozilla has published the advisories (MFSA2023-41 and MFSA2023-42) to address multiple vulnerabilities in Firefox browser.
-
Fraudulent websites and internet banking login screens related to The Bank of East Asia, Limited (27-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Bank of East Asia, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Bank of China (Hong Kong) Limited (27-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Livi Bank Limited (26-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Dah Sing Bank, Limited (26-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
A 59-year-old Solicitor Arrested for Suspected Doxxing of a Barrister (25-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 59 on Hong Kong Island. The arrested person was suspected to have disclosed the personal data of a barrister without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A23-09-19): Multiple Vulnerabilities in QNAP Products (22-September-2023)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Security Alert (A23-09-18): Vulnerability in Drupal (22-September-2023)
Drupal has released a security advisory to address a vulnerability in the Drupal products.
-
High Threat Security Alert (A23-09-17): Multiple Vulnerabilities in Apple iOS and iPadOS (22-September-2023)
Apple has released iOS 16.7, iOS 17.0.1, iPadOS 16.7 and iPadOS 17.0.1 to fix the vulnerabilities in various Apple devices.
-
Suspicious websites with unauthorised use of HKMA's logo (22-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to suspicious websites with the domain names hxxps://hkcpex[.]pro/cpex/#/ and hxxps://in-pex[.]com, which use the HKMA’s logo without authorisation.
-
Fraudulent websites and mobile application related to Octopus Cards Limited (22-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to fraudulent websites and mobile application (App).
-
Privacy Commissioner’s Office Recommends Organisations to Strengthen Data Security Measures to Ensure Data Security (22-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) noted the successive hacker attacks on the information systems of organisations recently which involved the leakage of personal data.
-
Welcome Remarks by Mr Daniel Cheung, Assistant Government Chief Information Officer (Cyber Security and Digital Identity), at the “Build a Secure Cyberspace 2023 - Protect Your Online Identity” Seminar (Chinese only) (22-September-2023)
Only Chinese version is available for this speech / presentation. Please refer to the Chinese version.
-
Ransomware Trends Q2 2023: Surge in Attacks Across Asia-Pacific, Persistent Multiple Extortion, and Evolving Threat Landscape (22-September-2023)
The evolution of ransomware has significantly affected businesses in recent years. Current trends indicate that ransomware developers are increasingly inclined to employ multiple extortion strategies.
-
Build a Secure Cyberspace 2023 - “Protect Your Online Identity” Seminar and Speech Contest Award Ceremony (22-September-2023)
In this seminar, cyber security experts will give us useful tips and advice on the protection of our digital identities in order to mitigate the damage caused by identity theft.
-
Fraudulent websites and internet banking login screens related to Dah Sing Bank, Limited (21-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Livi Bank Limited (21-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (21-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to The Bank of East Asia, Limited (21-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Bank of East Asia, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Privacy Commissioner’s Office’s Response to Media Enquiries on Data Breach Incident of Consumer Council (21-September-2023)
In response to media enquiries, the Office of the Privacy Commissioner for Personal Data (PCPD) confirmed that it had received a data breach notification from the Consumer Council today (21 September) and has commenced a compliance check into the incident in accordance with established procedures.
-
Security Alert (A23-09-16): Vulnerability in Apache Struts (20-September-2023)
The Apache Software Foundation has released the security bulletins to address the vulnerability in Apache Struts.
-
High Threat Security Alert (A23-09-15): Vulnerability in Trend Micro Products (20-September-2023)
Trend Micro has published a security advisory to address the vulnerability in Apex One and Worry-Free Business Security.
-
High Threat Security Alert (A23-09-14): Multiple Vulnerabilities in Juniper Networks Junos OS (20-September-2023)
Juniper Networks has published a security advisory to address multiple vulnerabilities in Junos OS on Juniper EX Series and SRX Series.
-
Fraudulent instant messages related to Industrial and Commercial Bank of China (Asia) Limited (20-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Industrial and Commercial Bank of China (Asia) Limited relating to fraudulent instant messages, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Publishes an Inspection Report on the Personal Data System of the Registration and Electoral Office (20-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today published an Inspection Report on the personal data system of the Registration and Electoral Office (REO).
-
Fraudulent instant messages related to Industrial and Commercial Bank of China (Asia) Limited (19-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Industrial and Commercial Bank of China (Asia) Limited relating to fraudulent instant messages, which have been reported to the HKMA.
-
Security Alert (A23-09-13): Multiple Vulnerabilities in Google Chrome (18-September-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A23-09-12): Multiple Vulnerabilities in Microsoft Edge (18-September-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent website and phishing emails related to Bank of China (Hong Kong) Limited (18-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner Publishes an Article entitled “The Privacy and Ethical Risks of Generative AI cannot be Ignored” at OneTrust DataGuidance (18-September-2023)
The Privacy Commissioner for Personal Data (the Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “The Privacy and Ethical Risks of Generative AI cannot be Ignored” at OneTrust DataGuidance to discuss the emergence of generative artificial intelligence (AI), while highlighting the privacy and ethical risks that should be considered regarding its use as well as the evolving regulatory landscape of AI.
-
Subject Talk on "New Era of IT": How to Gain Insight to Online Scams, Pitfalls and Avoid Losses? (16-September-2023)
The talk speaker will share valuable experience and uncover the tricks with solid examples on how to caution such traps in order to minimize losses.
-
Welcome Remarks by Mr Daniel Cheung, Assistant Government Chief Information Officer (Cyber Security and Digital Identity), at the “Cybersec Infohub Annual Professional Workshop 2023” (with photos) (Chinese only) (15-September-2023)
Only Chinese version is available for this speech / presentation. Please refer to the Chinese version.
-
Security Alert (A23-09-11): Vulnerability in Fortinet Products (14-September-2023)
Fortinet released a security advisory to address a vulnerability in Fortinet products.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (14-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Dah Sing Bank, Limited (14-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to The Bank of East Asia, Limited (14-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Bank of East Asia, Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to DBS Bank (Hong Kong) Limited (14-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
A 44-year-old Chinese Female Arrested for Doxxing (14-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 44 in Kowloon. The arrested person was suspected to have disclosed the personal data of two data subjects without their consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
High Threat Security Alert (A23-09-10): Vulnerability in Firefox (13-September-2023)
Mozilla has published the advisory (MFSA2023-40) to address a vulnerability in Firefox browser.
-
High Threat Security Alert (A23-09-09): Vulnerability in Adobe Reader/Acrobat (13-September-2023)
Security updates are released for Adobe Reader and Acrobat to address a vulnerability.
-
High Threat Security Alert (A23-09-08): Multiple Vulnerabilities in Microsoft Products (September 2023) (13-September-2023)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
International Symposium on Cyber Policing held in Hong Kong (with photos) (13-September-2023)
A three-day International Symposium on Cyber Policing was launched today (September 13) in Hong Kong.
-
Fraudulent websites and internet banking login screens related to Citibank (Hong Kong) Limited (13-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Citibank (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Livi Bank Limited (13-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (13-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner's Office Issues 10 Tips for Users of AI Chatbots (13-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) noted that according to a local survey, nearly 80% of youngsters in Hong Kong have used generative artificial intelligence (AI) tools such as ChatGPT.
-
Response of the Privacy Commissioner’s Office on the Cyberport’s Data Breach Incident (13-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) received a data breach notification from Cyberport on 18 August and has commenced a compliance check into the incident in accordance with established procedures. The PCPD has advised the relevant organisation to notify the affected data subjects as soon as possible, and is not in a position to disclose further information at this stage.
-
High Threat Security Alert (A23-09-07): Vulnerability in Google Chrome (12-September-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
Fraudulent website related to Octopus Cards Limited (12-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to a fraudulent website.
-
Fraudulent websites and social media pages related to DBS Bank (Hong Kong) Limited (12-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and social media pages, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (12-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Fraudulent social media accounts related to Hang Seng Bank, Limited (12-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to fraudulent social media accounts, which have been reported to the HKMA.
-
HKMA publishes joint report on Project Sela (with photos) (12-September-2023)
The Hong Kong Monetary Authority (HKMA), together with the Bank of Israel (BOI) and the Bank for International Settlements Innovation Hub (BISIH) Hong Kong Centre published a joint report, titled "Project Sela – An accessible and secure retail CBDC ecosystem", at a report launch conference hosted by the BOI in Tel Aviv on September 12 (Tel Aviv time).
-
Cyber Security Summit Hong Kong 2023 (From 11-September-2023 to 12-September-2023)
Jointly organised by the Hong Kong Productivity Council and leading information security organisations in Hong Kong, the free-of-charge event themed "Securing Enterprises to Prepare for the Post Quantum & AI World" will focus on how enterprises can integrate their security under the cyber security challenges, and secure the enterprise in the emerging AI world.
-
Security Alert (A23-09-06): Multiple Vulnerabilities in Microsoft Edge (11-September-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
High Threat Security Alert (A23-09-05): Multiple Vulnerabilities in Apple iOS and iPadOS (11-September-2023)
Apple has released iOS 15.7.9, iOS 16.6.1, iPadOS 15.7.9 and iPadOS 16.6.1 to fix the vulnerabilities in various Apple devices.
-
Fraudulent websites and internet banking login screens related to DBS Bank (Hong Kong) Limited (11-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (11-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to Livi Bank Limited (11-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
“Cyber Security Summit Hong Kong 2023” Worldwide Assembly of Experts Convene to Tackle Cyber Security Challenges Securing Enterprises to Prepare for the Post Quantum & AI World (11-September-2023)
The “Information Security Summit”, jointly organised by the Hong Kong Productivity Council Cyber Security (HKPC Cyber Security) and the cyber security industry in Hong Kong, celebrates its 20th Anniversary and officially rebrands its name to "Cyber Security Summit Hong Kong".
-
Presentation by Ir Tony Wong, JP, Government Chief Information Officer, at the “Cybersecurity Summit of the Guangdong Cybersecurity Week” (with photos) (Chinese only) (11-September-2023)
Only Chinese version is available for this speech / presentation. Please refer to the Chinese version.
-
Hong Kong cybersecurity industry delegation attends Guangdong Cybersecurity Week 2023 (with photos) (11-September-2023)
The Government Chief Information Officer, Mr Tony Wong, today (September 11) led a delegation of Hong Kong's cybersecurity industry to attend the Guangdong Cybersecurity Week 2023 and Cybersecurity Expo in Guangzhou for two consecutive days in support of the annual China Cybersecurity Week and to exchange views on technologies and the latest developments in cybersecurity of Hong Kong and Guangdong.
-
Opening address by Acting SITI at Opening Ceremony of Cyber Security Summit 2023 (English only) (11-September-2023)
Following is the opening address by the Acting Secretary for Innovation, Technology and Industry, Ms Lillian Cheong, at the Opening Ceremony of the Cyber Security Summit 2023 today (September 11).
-
Security Alert (A23-09-04): Multiple Vulnerabilities in Cisco Products (7-September-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Fraudulent website and phishing emails related to Hang Seng Bank, Limited (7-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites and internet banking login screens related to DBS Bank (Hong Kong) Limited (7-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and internet banking login screens, which have been reported to the HKMA.
-
A 44-year-old Chinese Male Arrested for a Suspected Doxxing of Former Business Partners (7-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 44 in the New Territories. The arrested person was suspected to have disclosed the personal data of two data subjects without their consents, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A23-09-03): Multiple Vulnerabilities in Google Chrome (6-September-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A23-09-02): Multiple Vulnerabilities in Android (6-September-2023)
Google has released Android Security Bulletin September 2023 to fix multiple security vulnerabilities in Android operating system.
-
Fraudulent website and internet banking login screen related to Livi Bank Limited (6-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Livi Bank Limited relating to a fraudulent website and internet banking login screen, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (6-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner Publishes an Article entitled “Your personal information is not safe when you shop online” (6-September-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, published an article entitled “Your personal information is not safe when you shop online”.
-
HKCERT Alerts the Public on Preventive Measures Against WhatsApp Account Theft (6-September-2023)
Recently, there has been a surge in cyber attack targeting WhatsApp accounts. The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) is closely monitoring recent attacks and has compiled answers and relevant security recommendations.
-
Safeguarding Data Security – Privacy Commissioner’s Office Issues Pamphlet on Data Breach Handling and Data Breach Notifications (5-September-2023)
To assist organisations in handling data breaches properly, the Office of the Privacy Commissioner for Personal Data (PCPD) recently published a new “Guidance on Data Breach Handling and Data Breach Notifications” and reinforces it by issuing a pamphlet on the Guidance (Pamphlet) today.
-
Promoting Data Security – Privacy Commissioner Speaks at the Grand Opening of HKPC’s “Smart & Secure City Hall” Exhibition (5-September-2023)
The Privacy Commissioner for Personal Data (Privacy Commissioner), Ms Ada CHUNG Lai-ling, attended the Grand Opening of the “Smart & Secure City Hall” exhibition launched by the Hong Kong Productivity Council (the “HKPC”) on 4 September 2023.
-
Security Alert (A23-09-01): Vulnerability in Microsoft Edge (4-September-2023)
Microsoft released a security update to address a vulnerability in Microsoft Edge.
-
Fraudulent websites and phishing emails related to Octopus Cards Limited (4-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to fraudulent websites and phishing emails.
-
Phishing instant messages related to Airstar Bank Limited (4-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Airstar Bank Limited relating to phishing instant messages, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (4-September-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Privacy Commissioner’s Office Organisesthe “Privacy-Friendly Awards 2023” Presentation Ceremony 138 Award-winning Organisations Supportthe Implementation of Privacy Management Programme (4-September-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) held the “Privacy-Friendly Awards 2023” (Awards) Presentation Ceremony last Thursday (31 August) to recognise the commitment and performance in protecting personal data privacy of 138 organisations, including public and private organisations as well as government departments.
-
HKPC Cyber Security Launches “Smart & Secure City Hall” To Raise Enterprises’ and Public Awareness of Cyber Security and Contribute Towards Hong Kong Becoming an International Innovation and Technology Centre and a Smart City (4-September-2023)
Hong Kong Productivity Council Cyber Security (HKPC Cyber Security) launched “Smart & Secure City Hall” (the Hall) today to showcase various application solutions of cyber security, Internet of Things (IoT), multi-cloud, connected vehicles and smartphone security, privacy protection of personal data, and security surveillance, etc.
-
Fraudulent website related to OCBC Bank (Hong Kong) Limited (31-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by OCBC Bank (Hong Kong) Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Fraudulent websites and phishing emails related to Citibank (Hong Kong) Limited (31-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Citibank (Hong Kong) Limited relating to fraudulent websites and phishing emails, which have been reported to the HKMA.
-
Fraudulent websites, internet banking login screens and phishing emails related to Bank of China (Hong Kong) Limited (31-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Security Alert (A23-08-20): Vulnerability in Google Chrome (30-August-2023)
Google released a security update to address a vulnerability in Google Chrome.
-
Security Alert (A23-08-19): Multiple Vulnerabilities in Firefox (30-August-2023)
Mozilla has published the advisories (MFSA2023-34, MFSA2023-35 and MFSA2023-36) to address multiple vulnerabilities in Firefox browser.
-
A 36-year-old Chinese Male Arrested for Doxxing his Friend (29-August-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 36 on Hong Kong Island. The arrested person was suspected to have disclosed the personal data of a friend of him without her consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Security Alert (A23-08-18): Multiple Vulnerabilities in Microsoft Edge (28-August-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A23-08-17): Vulnerability in Apache Tomcat (28-August-2023)
The Apache Software Foundation released a security update to address a vulnerability in the Apache Tomcat.
-
Transport Department alerts public to fraudulent SMS message purportedly issued by HKeToll (28-August-2023)
The Transport Department (TD) today (August 28) alerted members of the public to a fraudulent SMS message purportedly issued by the HKeToll.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (28-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A23-08-16): Multiple Vulnerabilities in QNAP Products (25-August-2023)
QNAP has published security advisories to address multiple vulnerabilities in QNAP products.
-
Data Scraping on Social Media Raises Concerns The PCPD, together with Other Privacy Protection Authorities,Promulgates Global Privacy Protection Expectations and Principlesto Social Media Platforms (25-August-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD), together with eleven privacy or data protection authorities from Argentina, Australia, Canada, Colombia, Jersey, Mexico, Morocco, New Zealand, Norway, Switzerland and the United Kingdom, issued a joint statement today to social media platforms and other websites that host publicly accessible personal data about global expectations on privacy protection.
-
Security Alert (A23-08-15): Multiple Vulnerabilities in Cisco Products (24-August-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Fraudulent websites, internet banking login screens and phishing emails related to Citibank (Hong Kong) Limited (24-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Citibank (Hong Kong) Limited relating to fraudulent websites, internet banking login screens and phishing emails, which have been reported to the HKMA.
-
Fraudulent website and phishing emails related to Hang Seng Bank, Limited (24-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Hang Seng Bank, Limited relating to a fraudulent website and phishing emails, which have been reported to the HKMA.
-
Security Alert (A23-08-14): Vulnerability in WinRAR (23-August-2023)
RARLAB has released a security update to fix a vulnerability in WinRAR.
-
Security Alert (A23-08-13): Multiple Vulnerabilities in Google Chrome (23-August-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Transport Department alerts public to fraudulent SMS message of HKeToll (23-August-2023)
The Transport Department (TD) today (August 23) alerted members of the public to fraudulent SMS message purportedly issued by the HKeToll.
-
Fraudulent website, internet banking login screen and mobile application related to ZA Bank Limited (23-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by ZA Bank Limited relating to a fraudulent website, internet banking login screen and mobile application (App), which have been reported to the HKMA.
-
Security Alert (A23-08-12): Multiple Vulnerabilities in Microsoft Edge (22-August-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Fraudulent websites and phishing emails related to The Hongkong and Shanghai Banking Corporation Limited (21-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to fraudulent websites and phishing emails, which have been reported to the HKMA.
-
Comprehensive Guide to Social Media Scams: Setting up Defense to Safeguard Your Personal Information (18-August-2023)
Social media has become a necessary part of people's daily lives, but it has also attracted the attention of unscrupulous individuals. The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) will delve into how to more effectively curb online fraudulent activities and provide some social media settings to reduce the opportunities for others to access users' personal information.
-
Security Alert (A23-08-11): Multiple Vulnerabilities in Cisco Products (17-August-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Fraudulent website related to Chong Hing Bank Limited (17-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Fraudulent website and social media page related to Dah Sing Bank, Limited (17-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website and social media page, which have been reported to the HKMA.
-
Enhancing Awareness to Prevent Fraud – Privacy Commissioner’s Office Launches the Second Episode of Anti-fraud Promotional Video (17-August-2023)
To raise public awareness of the prevention of fraud, the Office of the Privacy Commissioner for Personal Data (PCPD) has launched another short video under the theme of “Don’t Hand Over Your Personal Data – Beware of Fraudsters”.
-
Security Alert (A23-08-10): Multiple Vulnerabilities in Google Chrome (16-August-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Introducing the New HKCERT “All-Out Anti-Phishing” Thematic Page (16-August-2023)
Noticing that hackers are deploying phishing through various means, including email, social media and SMS, phishing attacks have become an increasingly threatening major cyber security threat in Hong Kong.
-
Fraudulent website and social media page related to Dah Sing Bank, Limited (14-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Dah Sing Bank, Limited relating to a fraudulent website and social media page, which have been reported to the HKMA.
-
Fraudulent mobile application related to CMB Wing Lung Bank Limited (14-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by CMB Wing Lung Bank Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Security Alert (A23-08-09): Vulnerability in Fortinet FortiOS (10-August-2023)
Fortinet released a security advisory to address a vulnerability in Fortinet FortiOS.
-
Security Alert (A23-08-08): Multiple Vulnerabilities in Adobe Reader/Acrobat (10-August-2023)
Security updates are released for Adobe Reader and Acrobat to address multiple vulnerabilities.
-
High Threat Security Alert (A23-08-07): Multiple Vulnerabilities in Microsoft Products (August 2023) (10-August-2023)
Microsoft has released security updates addressing multiple vulnerabilities which affect several Microsoft products or components.
-
Fraudulent website and mobile application related to Chong Hing Bank Limited (10-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to a fraudulent website and mobile application (App), which have been reported to the HKMA.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (10-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
A 28-year-old Chinese Female Arrested for Suspected Doxxing Offence Relating to Emotional Entanglements (10-August-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese female aged 28 in the New Territories. The arrested person was suspected to have disclosed the personal data of her ex-boyfriend without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Police Anti-Deception Coordination Centre launches territory-wide publicity campaign against scams (with photos) (9-August-2023)
Police Anti-Deception Coordination Centre (ADCC) of the Commercial Crime Bureau launched a new wave of territory-wide publicity campaign against phishing scams today (August 9), and together with the Office of the Communications Authority (OFCA), explained trends in such scams and combating measures.
-
Fraudulent websites related to Chong Hing Bank Limited (9-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Chong Hing Bank Limited relating to fraudulent websites, which have been reported to the HKMA.
-
Security Alert (A23-08-06): Multiple Vulnerabilities in Microsoft Edge (8-August-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
Security Alert (A23-08-05): Multiple Vulnerabilities in Android (8-August-2023)
Google has released Android Security Bulletin August 2023 to fix multiple security vulnerabilities in Android operating system.
-
DH alerts public to fake organ donation social media page (8-August-2023)
The Department of Health (DH) today (August 8) alerted members of the public to a suspected fake Facebook page named "器官捐贈在香港 Organ Donation at-HK", which is also suspected of fraudulently using the DH's butterfly logo symbolising organ donation in the page's profile picture.
-
Fraudulent websites and social media page related to DBS Bank (Hong Kong) Limited (8-August-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by DBS Bank (Hong Kong) Limited relating to fraudulent websites and a social media page, which have been reported to the HKMA.
-
Hongkong Post alerts public to fraudulent websites (8-August-2023)
Hongkong Post reminds members of the public to be alert to the recent new fraudulent websites purported to be from Hongkong Post.
-
Security Alert (A23-08-04): Multiple Vulnerabilities in VMware Horizon Server (7-August-2023)
VMware has published a security advisory to address multiple vulnerabilities in VMware Horizon Server.
-
Public urged to stay alert to emails purported to be issued by SCED office (3-August-2023)
A spokesman for the Commerce and Economic Development Bureau today (August 3) appealed to members of the public to stay alert to fraudulent emails purported to be issued by the office of the Secretary for Commerce and Economic Development (SCED). The spokesman said that the emails, containing a suspected link to a malicious file, falsely claim to be issued following the instructions of the SCED.
-
Think Twice before “Sharenting” Privacy Commissioner’s Office Publishes a Pamphlet on Sharenting Dos and Don’ts (3-August-2023)
Amidst the summer vacation and the popularity for parents to share their children’s daily lives on social media platforms (also known as “sharenting”, a portmanteau of “sharing” and “parenting”), the Office of the Privacy Commissioner for Personal Data (PCPD) published a pamphlet entitled “Sharenting Dos and Don’ts” today, which provides some tips for parents before they publish any post about their children online.
-
Privacy Commissioner’s Office Issues Updated Guidance on Election Activities for Candidates, Government Departments, Public Opinion Research organisations and Members of the Public (3-August-2023)
In light of the upcoming District Council election to be held in December 2023, the Office of the Privacy Commissioner for Personal Data (PCPD) updated the “Guidance on Election Activities for Candidates, Government Departments, Public Opinion Research Organisations and Members of the Public” (the Guidance). The main revisions concern the new criminal doxxing provisions under sections 64(3A) and (3C) of the PDPO, which are applicable to the personal data of electors retained in the registers of electors (please see paragraph 3.10 of the Guidance for details).
-
Security Alert (A23-08-03): Multiple Vulnerabilities in Cisco Products (3-August-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Security Alert (A23-08-02): Multiple Vulnerabilities in Google Chrome (3-August-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
Security Alert (A23-08-01): Multiple Vulnerabilities in Firefox (2-August-2023)
Mozilla has published the advisories (MFSA2023-29, MFSA2023-30 and MFSA2023-31) to address multiple vulnerabilities in Firefox browser.
-
HKIRC and HKPF co-organised Ethical Phishing Email Campaign 2023 (Chinese Only) (2-August-2023)
Please refer to the Chinese version.
-
Inland Revenue Department alerts public to fraudulent emails (1-August-2023)
The Inland Revenue Department today (August 1) alerted members of the public to fraudulent emails purportedly issued by the department, which invite recipients to claim tax refunds. Each email provides a hyperlink to a website which seeks to obtain the recipient's personal particulars and credit card information.
-
Cybersec Training Hub trains SMEs to cope with cyber security threats (Chinese Only) (1-August-2023)
Please refer to the Chinese version.
-
Phishing emails related to The Hongkong and Shanghai Banking Corporation Limited (31-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by The Hongkong and Shanghai Banking Corporation Limited relating to phishing emails, which have been reported to the HKMA.
-
Fraudulent website related to Bank of China (Hong Kong) Limited (31-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Security Alert (A23-07-24): Vulnerability in QNAP Products (31-July-2023)
QNAP has published a security advisory to address a vulnerability in QNAP products.
-
High Threat Security Alert (A23-07-23): Vulnerability in Ivanti Endpoint Manager Mobile (MobileIron Core) (31-July-2023)
Ivanti has published a security advisory to address a vulnerability in Ivanti Endpoint Manager Mobile.
-
PISA Annual Event: PISA Jam 2023 (29-July-2023)
It is PISA’s annual event focusing on cybersecurity for a day of informative sessions and engaging activities designed to enhance participants’ understanding of the latest trends, threats and solutions in the field, from expert speakers to hands-on workshops.
-
Fraudulent website related to Bank Julius Baer & Co. Ltd. (28-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank Julius Baer & Co. Ltd. relating to a fraudulent website, which has been reported to the HKMA.
-
Department of Justice alerts public to fraudulent email (28-July-2023)
The Department of Justice today (July 28) appealed to members of the public to stay alert to a fraudulent email claimed to have been sent by "Lee Man-Chun, Personal Assistant to Paul Lam". The email, containing a suspected link to a malicious file, falsely claims to be issued following the instructions of the Secretary for Justice.
-
Enhancing Data Security – Privacy Commissioner’s Office Organises a Seminar on “Cybersecurity in Web 3.0 and Data Breach Handling” (28-July-2023)
To promote and enhance data security, the Office of the Privacy Commissioner for Personal Data (PCPD) organised a seminar on “Cybersecurity in Web 3.0 and Data Breach Handling” in hybrid mode on 27 July.
-
A 41-year-old Chinese Male Arrested for Posting a Doxxing Message (27-July-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 41 in the New Territories. The arrested person was suspected to have disclosed the personal data of the victim without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).
-
Fraudulent mobile application related to Ping An OneConnect Bank (Hong Kong) Limited (27-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Ping An OneConnect Bank (Hong Kong) Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Security Blog: Improve cyber resilience with enhanced threat detection and response (26-July-2023)
The hostile and interconnected cyberspace nowadays require a transition from a passive defence approach to an active one by adopting an “assume-breach” model.
-
High Threat Security Alert (A23-07-22): Vulnerability in Ivanti Endpoint Manager Mobile (MobileIron Core) (26-July-2023)
Ivanti has published a security advisory to address a vulnerability in Ivanti Endpoint Manager Mobile.
-
Fraudulent website related to China CITIC Bank International Limited (26-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by China CITIC Bank International Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Department of Justice alerts public to fraudulent email (25-July-2023)
The Department of Justice today (July 25) appealed to members of the public to stay alert to a fraudulent email claimed to have been sent by "Cheung Kwok-kwan" under a forged email account "cheung.kwok@hkland[.]com".
-
Security Alert (A23-07-21): Vulnerability in OpenSSH (25-July-2023)
OpenSSH has released 9.3p2 to fix a vulnerability in various versions of OpenSSH.
-
High Threat Security Alert (A23-07-20): Multiple Vulnerabilities in Apple Products (25-July-2023)
Apple has released security updates to fix the vulnerabilities in macOS and Safari.
-
High Threat Security Alert (A23-07-19): Multiple Vulnerabilities in Apple iOS and iPadOS (25-July-2023)
Apple has released iOS 15.7.8, iOS 16.6, iPadOS 15.7.8 and iPadOS 16.6 to fix the vulnerabilities in various Apple devices.
-
Security Alert (A23-07-18): Multiple Vulnerabilities in Microsoft Edge (24-July-2023)
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge.
-
HKMA issues alert regarding specific website (21-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public in Hong Kong that Hocomban International Finance Limited as referred to on the website (https://hifinltd[.]com/) does not have the authorization of the Monetary Authority (MA) under the Banking Ordinance (the Ordinance) to carry on banking business, or the business of taking deposits.
-
Fraudulent website and phishing message related to Alipay Financial Services (HK) Limited (21-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Alipay Financial Services (HK) Limited relating to a fraudulent website and a phishing message.
-
Fraudulent mobile application related to Ping An OneConnect Bank (Hong Kong) Limited (20-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Ping An OneConnect Bank (Hong Kong) Limited relating to a fraudulent mobile application (App), which has been reported to the HKMA.
-
Security Alert (A23-07-17): Multiple Vulnerabilities in Cisco Products (20-July-2023)
Cisco released security advisories to address multiple vulnerabilities in Cisco devices and software.
-
Fraudulent website related to Bank of Singapore Limited (19-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of Singapore Limited relating to a fraudulent website, which has been reported to the HKMA.
-
Unauthorised mobile application related to Ping An Bank Co., Ltd. (19-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Ping An Bank Co., Ltd. relating to an unauthorised mobile application (App), which has been reported to the HKMA.
-
Fraudulent website related to Octopus Cards Limited (19-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Octopus Cards Limited relating to a fraudulent website.
-
Security Alert (A23-07-16): Multiple Vulnerabilities in Oracle Java and Oracle Products (July 2023) (19-July-2023)
Oracle has released the Critical Patch Update (CPU) Advisory with collections of patches for multiple security vulnerabilities found in Java SE and various Oracle products.
-
Security Alert (A23-07-15): Multiple Vulnerabilities in Google Chrome (19-July-2023)
Google released a security update to address multiple vulnerabilities in Google Chrome.
-
High Threat Security Alert (A23-07-14): Multiple Vulnerabilities in Citrix NetScaler Application Delivery Controller and Citrix NetScaler Gateway (19-July-2023)
Citrix released a security advisory to address multiple vulnerabilities in Citrix NetScaler ADC and Citrix NetScaler Gateway.
-
Fraudulent websites and phishing emails related to Citibank (Hong Kong) Limited (18-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Citibank (Hong Kong) Limited relating to fraudulent websites and phishing emails, which have been reported to the HKMA.
-
Fraudulent website and internet banking login screen related to Bank of China (Hong Kong) Limited (18-July-2023)
The Hong Kong Monetary Authority (HKMA) wishes to alert members of the public to a press release issued by Bank of China (Hong Kong) Limited relating to a fraudulent website and an internet banking login screen, which have been reported to the HKMA.
-
A 47-year-old Chinese Male Arrested for a Suspected Doxxing Offence Relating to Monetary Disputes (18-July-2023)
The Office of the Privacy Commissioner for Personal Data (PCPD) today arrested a Chinese male aged 47 in the New Territories. The arrested person was suspected to have disclosed the personal data of a former co-worker without his consent, in contravention of section 64(3A) of the Personal Data (Privacy) Ordinance (PDPO).