Speaker:

Mr. CHENG Chun Chung, Andrew was appointed a Director and acting DCEO of the Company on 15 November 2011. He was the DCEO of the Company and re-designated to be the Chief Technology Officer of the Company on 1 January 2017. He is also a Director of the Company’s various subsidiaries and associates. Mr. CHENG holds a Master of Commerce degree in Information Systems from the University of New South Wales, a Master of Engineering degree from the University of Sydney, a Bachelor of Engineering degree with Honours in Electrical Engineering from the University of Sydney and a Bachelor of Science degree from the University of Sydney.
Mr. CHENG has over 25 years’ experience in IT-related business, covering internet security, domestic and international supply chain, logistics and finance. He was a specialist in the consultancy on the setting up of a Public Key Infrastructure by the Hong Kong Government and is currently a member of the Advisory Committee on the Code of Practice for Recognized Certification Authorities of the Government of the Hong Kong Special Administrative Region and a member of the Expert Review Panel of Hong Kong R&D Centre for Logistics and Supply Chain Management Enabling Technologies.
Synopsis:
The Covid pandemic has led a sudden and large shift towards online services worldwide. People are spending more time online and depending more on digital communication. Such heightened online activities have unfortunately attracted malign actors and significantly increased cyber-attacks in the past few years.
This workshop will examine a range of cyber-attacks that have recently emerged. Each of the identified attacks will be analyzed to understand its characteristics, associated threats and risks. Demonstrations and hands-on exercises will be given to illustrate how these cyber-attacks could be carried out in practical settings and their corresponding damages. Available mitigations and suggestions will be provided and discussed to combat/ avoid the attacks.
The workshop will look into a number of specific cyber-attack areas including location spoofing, deepfake attack, risks associated with SMS OTP, weakness of 2FA, rise of the Dark web as well as offline to online attack. We will look into and study the attack vectors employed by the hackers and find out if there is any countermeasures available to defend such attacks. Attendee will have opportunities to experience some of these attacks first hand for a more in-depth understanding of the associated risk and damages. We will also analyze the level of risk mitigation and trade-off such as privacy, inconvenience, cost and loss of productivity associated with these countermeasures.