30,000 security vulnerabilities discovered on portals

Anh Vũ |

As of October 2024, 30,420 new security vulnerabilities were recorded, of which 3,784 were very serious on electronic portals.

Thousands of vulnerabilities are of very high severity

This information was given by Dr. Nguyen Viet Phan - Deputy Director of the Center for Information Technology and Cyber ​​Security Monitoring, Government Cipher Committee - at the Conference on connecting the Government's direction and administration information on the network environment with the electronic information portals of ministries, branches and localities in 2024 held on the morning of November 14 in Hanoi.

Dr. Nguyen Viet Phan said that they also face major challenges in information security and safety, including: Rapid growth rate of the system, inadequate investment in security systems, and lack of consistency in policies to ensure information security and safety.

These situations create many vulnerabilities for the electronic information portal systems of state agencies, causing electronic information systems to face many dangerous and sophisticated cyber security threats.

The main threats include: Malware, Distributed Denial of Service (DDoS) attacks, Phishing (a form of attack using fake emails or websites to steal user information), Social Engineering (the act of exploiting users' psychology and behavior to steal sensitive information) and Advanced Persistent Threats (APT).

In particular, according to reports from technology companies in the field of information security, since the beginning of the year, about 84 million new types of malware have been recorded, with an average of about 8 million new malware and variants appearing every month.

Security vulnerabilities in software or operating systems are one of the main targets of hackers. These vulnerabilities can exist in web applications or database management software, and if the security vulnerabilities are not patched in time, the information technology system will be easily attacked and exploited.

According to recorded data, as of October 2024, 30,420 new security vulnerabilities were recorded, including 4,056 low-level vulnerabilities, 12,592 medium-level vulnerabilities, 9,988 high-level vulnerabilities, and 3,784 very serious vulnerabilities.

TS Nguyen Viet Phan, Ban Co yeu Chinh phu. Anh: VGP/Hai Minh
Dr. Nguyen Viet Phan, Government Cipher Committee. Photo: VGP/Hai Minh

Deploying information security monitoring system

Dr. Nguyen Viet Phan said that currently, the Government Cipher Committee is actively deploying an information security monitoring system and technical and professional solutions to ensure information security and safety for the Party and State's key information technology networks, ensuring confidentiality and protecting state secrets according to the Law on Protection of State Secrets.

Solutions are implemented at different layers. For the user layer: Deploy specialized multi-interface computers of the Cryptography industry combined with file security solutions, storage drive encryption, anti-malware or specialized storage devices to move data between interfaces securely.

For the application, business, and platform layers: Synchronously deploy security, authentication, and digital signature solutions of the Government Cipher Committee. In addition, it is possible to deploy toolkits and cryptographic libraries to serve the security of information systems.

For the database layer: The Government Cipher Committee has developed database security solutions, dedicated storage security for specialized database servers.

For the network and transmission layer: With the channel security system (site to site, client to site), data transmitted on dedicated data transmission networks or the Internet are protected by the security layer of the Cryptography industry.

Accordingly, it is necessary to continue to improve the policy framework and regulations on information security and safety, apply technological solutions, train and raise awareness of information security, supplement human resources on information security and strengthen cooperation with agencies and organizations.

Anh Vũ
TIN LIÊN QUAN

Posting instructions of the Government and Prime Minister on Facebook and Zalo

|

The Government Information Portal has provided information on social networking platforms such as Facebook, Youtube... about the direction and administration of the Government and the Prime Minister.

Malware variant targeting banks discovered

|

Variants of the Grandoreiro malware are becoming one of the major threats worldwide.

Many information systems still have security holes

|

Besides positive results, connecting and sharing data still has some shortcomings such as information systems still having security holes.

Ho Chi Minh City requests review of Cambridge International certificates

|

Ho Chi Minh City People's Committee requires units to inspect and review officials who have declared the use of foreign language certificates named "Cambridge International".

SPT Company must pay nearly 500 million VND after tax inspection

|

Thanh Hoa Provincial Tax Department has requested SPT Architecture Joint Stock Company to pay nearly 500 million VND due to incorrect tax declaration.

Tens of thousands of people flock to watch the Ngo boat racing festival in Soc Trang

|

Mekong Delta - From November 14-15, 60 boat teams from provinces and cities in the Mekong Delta will compete in the Ngo Boat Race with fierce and exciting matches.

My Boss Expressed His Love Even Though He Knew I Was Getting Married (Part 1)

|

Hour 9 - The female employee is expressed her feelings by her manager when she is about to get married. What will this girl decide?

8pm News: Merging many wards in 6 central districts of Hanoi

|

News at 8pm on November 14: Hanoi merged many wards in 6 central districts; Arrested and took statements from singer Chi Dan, model An Tay...

Posting instructions of the Government and Prime Minister on Facebook and Zalo

PHẠM ĐÔNG |

The Government Information Portal has provided information on social networking platforms such as Facebook, Youtube... about the direction and administration of the Government and the Prime Minister.

Malware variant targeting banks discovered

NGUYỄN ĐĂNG |

Variants of the Grandoreiro malware are becoming one of the major threats worldwide.

Many information systems still have security holes

NHÓM PHÓNG VIÊN |

Besides positive results, connecting and sharing data still has some shortcomings such as information systems still having security holes.

135 trường hợp tấn công cổng thông tin điện tử của Việt Nam

KHÁNH AN |

Theo Trung tâm Giám sát an toàn không gian mạng quốc gia, tuần qua, 135 trường hợp tấn công vào trang/cổng thông tin điện tử của Việt Nam.

Phát hiện hàng loạt lỗ hổng bảo mật

KHÁNH AN |

Trung tâm Giám sát an toàn không gian mạng quốc gia ghi nhận 10 lỗ hổng bảo mật có mức độ nghiêm trọng cao hoặc đang bị khai thác trong môi trường thực tế.