Having trouble viewing this email? View it in your browser.

csm-ace 2012

CyberSecurity Malaysia –“CyberNEWS”

Bahasa | English

Issue 4 | Quarter 4 - 2013


 
 
Working Visit to Ministry / Organisation Related to Cyber Security in Tallinn, Estonia and BAE Systems PLC, London, United Kingdom
 

The working visit by the delegates from CyberSecurity Malaysia was lead by General Tan Sri Dato’ Seri Panglima Mohd Azumi Mohamed (Retired), Chairman Board of Directors, CyberSecurity Malaysia to the ministry and organisation related to cyber security in Tallinn, Estonia and BAE Systems Plc, London, United Kingdom took place from 1 to 8 October 2013 with the objectives of:

  1. Obtain information and the formation criteria for Centre of Excellence (CoE) CyberSecurity Malaysia based on and in reference to the best CoE in the world;
  2. Plan to have strategic partnership for CoE;
  3. Promote involvement of relevant agencies during Cyber Security Malaysia – Awards, Conference and Exhibitions (CSM-ACE);
  4. Learn the Estonian cyber defense methods based on the country’s experience facing cyber attacks in 2007.

The delegates were brought to several ministries and organisations such as:

  1. Estonia: e-Governance Academy Foundation
  2. Estonia: Estonian Ministry of Defence / Corporative Cyber Defence Center of Excellence
  3. Estonia: State Information System Authority (RIA) and Computer Emergency Response Team for Estonia (CERT-EE), Ministry of Economic Affairs and Communications
  4. Estonia: Estonian Forensic Science Institute, Administered by Ministry of Justice
  5. Estonia: Guardtime AS
  6. Estonia: Government Secretariat, Government Office of Estonia
  7. Estonia: Estonian Internal Security Service, Ministry of Internal Affairs
  8. London: BAE Systems Detica
Working Visit to Open Technology Real Services (OTRS) AG Headquarters (Operation Centre), Bad Homburg, Germany & Technical Discussion With Security Researcher, Berlin, Germany
 

Recognising the importance of protecting security of nation’s cyber space against any type of threats and in the effort to realise CyberSecurity Malaysia’s corporate vision and mission to become a Centre of Excellence (CoE), it is important for CyberSecurity Malaysia to provide exposure to its staff through working visits, meetings, technical discussions, cyber security conferences, trainings and other relevant programs to build their expertise and efficiency.

The result will enable staff to understand the current issues and latest information on Internet or computer safety as well as to increase their network and cooperation with security community at international levels.

Therefore, CyberSecurity Malaysia has sent 3 officers from Malaysia Computer Emergency Response Team (MyCERT) to attend a meeting with the management of Open Technology Real Services ( OTRS ) AG and also a working visit to OTRS AG operations centre. The objective was to further strengthen the commitment and cooperation between OTRS AG and MyCERT in utilizing Customer Relationship Management of Cyber999. This will also simplify cyber security incident handling processes for cases that are reported to Cyber999 Help Centre. The meeting and working visit started from 7 to 8 October 2013 at the Headquarters, Bad Homburg, Germany.

Apart from the working visit, the delegates also carried out technical discussions with security experts and researchers during 23rd Virus Bulletin International Conference 2013 (VB Conference 2013) to gather latest information on cyber threats from international experts. Technical discussion took place on 2 to 4 October 2013 at Maritim Hotel, Berlin, Germany.

CyberSecurity Malaysia delegates who participated in the working visit and technical discussion are:  

  1.  Megat Muazzam Abdul Mutalib, (Head of MyCERT Department)
  2. Muhammad Nasim Abdul Aziz, (Executive Secretariat, MyCERT)
  3. Lim Jun Yi, (Analyst, Malware Research Centre, MyCERT)
Visit from National Information Technology Agency, Senegal
 

On 3 October 2013, CyberSecurity Malaysia received a visit from Agence De I’Information de I’Etat Senegal comprising of 4 officers and lead by Ms. Khassoum Wone, Chief Executive Officer, Agence De I’Information de I’Etat Senegal.

Vice President of Government and Multilateral Engagement, CyberSecurity Malaysia Shamir Hashim received the delegates and chaired the discussion session where the delegates were introduced to the history, functions, mandate, the roles of CyberSecurity Malaysia as well as the various services offered by CyberSecurity Malaysia.

During the meeting, opportunities to further expand cooperation between Malaysia and Senegal in the areas of Information and Communication Technology (ICT) specifically in the field of cyber security were discussed.

The delegates have expressed their interest to work with CyberSecurity Malaysia in various fields as below:

  1. OIC-CERT activities that involve Islamic Development Bank (IDB);
  2. Explore the field of cyber security and to look at opportunities and potentials to work together with CyberSecurity Malaysia through Wing International (WIT) to obtain advice on actions to be taken to develop cyber security capability in Senegal.
Working Visit to Cyber Organisation and Seoul Cyber Space Conference 2013 at Seoul, South Korea
 

Working Visit to Cyber Organisation, South Korea
The objectives of the working visit to cyber organisation in South Korea is to learn and replicate their initiatives in preparation of practical and operations knowledge to improve MyCyberSecurity Clinic (MyCSC) for the development of business research program. While at South Korea, CyberSecuriy Malaysia visited:

  1. Myung Information Technologies Co Ltd (MIT): Examine the approach in preparing data recovery and digital forensic business, technology and tools used, customer management, government estimation, overall business operations and most importantly to involve MIT as MyCSC Technology partner.

  2. Digital Forensic Department, University Korea: explore potential for cooperation in the field of digital forensic with CyberSecurity Malaysia.

  3. Attorney General Office, Republic Korea: understand the methods to benefit from data recovery and digital forensic in government operations


  4. Korean Information Security Industry Association (KISIA): promote CSM-ACE 2013 to attract Korean IT Security companies to participate.

Seoul Cyber Space Conference 2013, Seoul South Korea
This conference was held from 17 to 18 October 2013 witnessed more than 800 representatives from 80 countries. The theme of this third conference in Seoul, South Korea is Global Prosperity through an Open and Secure Cyberspace - Opportunities, Threats and Cooperation.

This conference focused on 6 areas: Economic Growth and Development, Social and Cultural Benefits, Cyber Security, International Security, Cyber Crime and Capability Development. This was also a platform to gather information, knowledge and exchange views with government representatives, international and regional organisations such as ITU and OECD, NGOs and global enterprises. CyberSecurity Malaysia’s delegates were:

  1. Roshdi Haji Ahmad, Vice President, Corporate Planning and Strategy
  2. Jailany Jaafar, Head of Legal and Secretariat
  3. Mohd Zabri Abdil Talib, Head of Digital Forensics
  4. Anwer Yusoff, Head of Industry and Business Development
  5. Izwadee Haji Hamzah, Manager, Industry and Business Development
Advanced Information Reconnaissance: Open Source Intelligence and Information Gathering Techniques Course
 

On 21 – 22 October 2013, CyberSecurity Malaysia has organised Advanced Information Reconnaissance: Open Source Intelligence and Information Gathering Techniques Course for Inland Revenue Board, State of Perak branch at Perak Techno Trade Centre (PTTC), Ipoh Perak.

The objective of the course is to assist IRB officers to carry out search and gathering of information from Internet using specific method and techniques. The program was conducted in the form of practical training and was attended by 6 officers from Malaysian Inland Revenue Board, Perak.

4th International Cyber & Economic Crimes Conference / White Color Crime: Staying One Step Ahead of the Perpetrators
 

Economic crime, commonly known as White-collar crime is currently one of the most dangerous components. It will continue to grow if there is no suitable action taken to curb the crime, which is often protected by wealth, higher education and social status. Therefore, efforts are required to increase the awareness and monitoring actions to prevent and protect organisations against white-collar crimes.

This can be established with an in-depth review of new strategy and initiative to detect and contain financial crime and also to recognise the need to evaluate systematic risk documentation methods within organisations and develop practical approach in handling Money Laundering. 

The main presentation during the conference was done by Dr. Solahuddin bin Shamsuddin. Chief Technology Officer of CyberSecurity Malaysiawith the titled White Color Crime: Staying One Step Ahead of the Perpetrators.

Prof. Adjung Khaeruddin Sudharmin, Executive Director & Chief Executive Officer, MRC Malaysia, acting Group Company Secretary, HeiTech Padu also attended the conference. Additionally, about 100 participants from various organisations such as AirAsia, Maybank and foreign organizations took part in the conference.
Visit from the Ministry of Science and Technology, Republic of Uganda
 

On 23 October 2013, CyberSecurity Malaysia received a visit from the Ministry of Science and Technology, Republic of Uganda consists of 4 officers, lead by Ms. Ethel Kamba, representing the Minister of Science and Technology Uganda. Delegates were also accompanied by several officers from the Ministry of Communication an Multimedia Malaysia.

Vice President of Government and Multilateral Engagement, CyberSecurity Malaysia Shamir Hashim received the delegates and chaired the discussion. The delegates were introduced to history, functions, mandate and the roles of CyberSecurity Malaysia as well as the various services offered by CyberSecurity Malaysia.

During the meeting, opportunities to further expand cooperation between Malaysia and Uganda in the areas of Information and Communication Technology (ICT) specifically in the field of cyber security were discussed.

Uganda delegates have expressed their interest to work with CyberSecurity Malaysia in various fields such as:

  1. Training and capability development in the field of cyber security;
  2. Development in Outreach program, policy and principles in cyber security management.

3rd Asia E-Commerce Conference 2013
 

3rd Asia E-Commerce Conference took place on 30 October 2013 at the Hotel Royal Chulan, Kuala Lumpur. The conference organised by the RebleX Business Group Sdn Bhd was held specifically for online entrepreneurs and users of e-commerce and has attracted about 200 participants.

Speakers involved were from organisations such as Zalora Malaysia, Lazada Malaysia, iPay88, ColderICE from USA and organisations that provide services for online businesses. As the Supporting Organisation of this event, CyberSecurity Malaysia took this opportunity to introduce and promote Malaysia Trustmark service as well as other services offered by CyberSecurity Malaysia.

Cyber Security Awareness Program – CyberSAFE in October 2013

Various activities under cyber security awareness program or CyberSAFE were carried out in the month of October 2013 to improve information security awareness levels among public and private organisations as well as the communities with special focus on school children and teenagers. These activities highlighted cyber security issues and best methods to handle and prevent from becoming victims of cyber threats. Among the information security awareness programs that were carried out in the fourth quarter of 2013 include:

Date Program Venue
02 Oktober 2013 Seminar Kesedaran Siber Dewan Tan Sri Mahfoz Khalid, Kementerian Kerja Raya
03 Oktober 2013 GirlGuide CyberSAFE Ambasssador Kuching, Sarawak
06 Oktober 2013 National ICT Security Debate 2013 Zone Terengganu Bahagian Teknologi Pendidikan Negeri, Marang
09 Oktober 2013 National ICT Security Debate 2013 Zone Sarawak Kolej Datuk Patinggi Abang Hj Abdillah Kuching
11 Oktober 2013 Seminar Kesedaran Siber Hotel Hydro Penang
11 Oktober 2013 Seminar Kesedaran Siber Undercroft Universiti Teknologi PETRONAS
18 Oktober 2013 GirlGuide CyberSAFE Ambassador Kota Kinabalu Sabah
12 Oktober 2013 Kids and Social Media Universiti Teknologi Petronas (UTP)
18 Oktober 2013 National ICT Security Debate 2013 Zone KL & Selangor BTPN Bandar Tasik Permaisuri, Cheras
21 Oktober 2013 DiGi CyberSAFE Kedah
21 Oktober 2013 National ICT Security Debate 2013 Zone Seremban Sek Dato Abd Razak (SDAR)
23 Oktober 2013 Seminar Kesedaran Siber Auditorium Level 11, RHB Centre
24 Oktober 2013 National ICT Security Debate 2013 Zone Kedah Bahagian Teknologi Pendidikan Negeri, Kedah
28 Oktober 2013 National ICT Security Debate 2013 Zone Kedah Bahagian Teknologi Pendidikan Negeri, Ipoh

The cyber security awareness programs are able to promote initiatives and services offered by CyberSecurity Malaysia such as Cyber999 and CyberSAFE portal. The program is also able to create awareness on the threats face by the Internet and computer users and the changes in our daily life in line with the advancement of communication technology.