! Partnerships, Sub-regional Cooperation and National Inter-Agency Coordination OU Phannarith Head of CamCERT & Permanent Member of Cybercrime Law Working Group Ministry of Posts & Telecommunications (MPTC) International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Agenda � Case Study and Challenges � Conclusion International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 1 – ID Theft (Email) Lesson ¡Learn ¡ Local ¡contact ¡ Focal ¡Point ¡ Human ¡Relation ¡ Reporting ¡Channel ¡ International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 1 – ID Theft (Email) Anatomy ¡of ¡Cooperation ¡ Report ¡ CamCERT ¡ Account ¡has ¡been ¡ suspended ¡in ¡12 ¡ Victim ¡ hours ¡ Company ¡(US) ¡ Foreign ¡CERT ¡ same ¡country ¡ Foreign ¡Company ¡ International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 2 – Media (Web) Attack Lesson ¡Learn ¡ Know Reporting ¡Channel ¡ -How Cooperation ¡ Playi Private ¡Sector ¡ ng Popular Legal ¡Issue ¡ Cambodi a’s News International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 2 – Media (Web) Attack Anatomy ¡of ¡Cooperation ¡ CamCERT ¡ Free ¡Proxy ¡ Victim ¡ Service ¡Com ¡ Technical ¡ ¡ Law ¡ Enforcement ¡ Log ¡evidence ¡ ¡ ISPs ¡ International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 3 – Anonymous Cambodia #OpCambodia by Anonymous Philippine The First Political motivated attack to Cambodia Government & Private Sector Websites What is the Motivation? Note Happy with the result of ASEAN Meeting without issue any statement in its history International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case - #OpCambodia Joint Circular Combating Telecom Challenges Fraud including ISPs & Tele Oper. Not ready in preparation • National Police MPTC (ASEAN Meeting Website) Good cooperation between • Confirm CamCERT & Police Report Philippine The victims do not aware • Police that they attacked because CamCERT of political motivated Evidence Collections The administrators do not • know how to secure their Advisory Report/ website in coding (go & come) Using Old CMS version • Hosting outside Cambodia Victim Websites • What is Log File? • Philippine do not have • International Telecommunication National CERT Team Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case 4 – Operation TPB2 #OpTPB2 (Gottfrid Arrest in Cambodia) International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Case - #OpTPB2 Government of Sweden Challenges Notified Cambodia is part of • Government of Cambodia International Community Cambodia is vulnerable in • Arrested Hacker Declare the absent of law and #OpTPB2 Against expertises Cambodia Gov’t Poor coding practice • and Private Sector Result What is Log File? Websites. • Noting seriously leak • No Agreement with Sweden • Attack Cambodia used Immigration • Victim Websites Law (with the Red Notice from Interpol) to deport him out of Cambodia Information sharing between Report • Advisory CamCERT & National Police National Police CamCERT International Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Inter-Agency In Cambodia Agency Relevant in CyberCrime Issue Samdech Hun Sen Prime Minister - Chairman Council of Ministers H.E. SOK An, Deputy Prime Minister in Charge of Council of Ministers Deputy Chairman National ICT Development Authority H.E. Chun Vat Secretary General CamCERT InfoSec CyberCrime Law Gov’t Security Policy Working on Drafting • • and Standard Cybercrime Law MPTC (ISP, Telco Policy) Incident Management Many senior • • Info. Security Cener Governments • Min. Information (Media, (ISC) officials and advisor TV, Newspaper) Law & Regulation Local & International • • Min. Defense (National Awareness & Outreach Cooperation • Security) Local/Int’l Framework Awareness • • National Police (Cybercrime Investigate) Min. Justice Relevant Ministry / Supporting International Telecommunication (Judicial System) Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Conclusion Building ¡communities, ¡working ¡ together ¡& ¡knowledge ¡sharing ¡is ¡ the ¡key ¡to ¡success ¡ Mr. ¡OU ¡Phannarith ¡ Head ¡of ¡CamCERT ¡ Permanent ¡Member ¡of ¡ ¡Cybercrime ¡ Law ¡Working ¡Group ¡ ¡ National ¡ICT ¡Development ¡Authority ¡ OfNice ¡of ¡The ¡Council ¡of ¡Ministers ¡ Email: ¡phannarith-‑ou[at]nida.gov.kh ¡ International ¡ Telecommunication Union ITU-IMPACT Regional CyberSecurity - Forum and CyberDrill 9-11 | Lao Plaza | Vientiane | Lao PDR
Recommend
More recommend