Step 3

New Rules for the Financial Sector in Singapore – MAS Third Party Risk Management Directive

The ripple effect from Russia-linked SolarWinds hack has reached the banking shores of Singapore. The Monetary Authority of Singapore (MAS) is issuing a third-party risk management directive that requires all financial institutions to assess and manage their exposure to technology risks with third-party suppliers, before entering into a contractual agreement. What does this actually mean […]

New Rules for the Financial Sector in Singapore – MAS Third Party Risk Management Directive Read More »

CVE-2020-3977: VMware Horizon DaaS Broken Authentication (MFA Bypass)

Not long ago, I assisted a client of ours with a penetration test of their VMware Horizon remote access solution and discovered a vulnerability affecting how it handles Multi-Factor Authentication (MFA). As a result, with a compromised user account password, I could gain access to the organisations internal network from the internet, bypassing the MFA

CVE-2020-3977: VMware Horizon DaaS Broken Authentication (MFA Bypass) Read More »

business continuity feature image

Ensure business continuity via long-term Cyber Hygiene practices

Written by Breton Chan, Privasec’s Marketing ExecutiveHow prepared is your business for upcoming challenges in the digital landscape?In recent research data released by the Ponemon Institute and IBM Security, cyber crimes accounted for 18.6% of all crime in Singapore. The average cost of a data breach per organisation in the ASEAN bloc sits

Ensure business continuity via long-term Cyber Hygiene practices Read More »

New CORIE Framework by the Council of Financial Regulators for APRA-regulated financial institutions

A new framework by the Council of Financial Regulators requires APRA-regulated financial institutions to attack themselves in a bid to uplift their cyber preparedness, as APRA orders urgent audits against CPS 234.The #CORIE framework that has been launched will require banks, super funds and other financial institutions to organize independent red team attack simulations.

New CORIE Framework by the Council of Financial Regulators for APRA-regulated financial institutions Read More »

Scroll to Top