, Singapore

The rise of cryptocurrency malware and ways to reduce risks

By Laurence Pitt

Being in the epicentre of exchange and commerce means that Singapore must rely on and keep up with technology. However, this dependence can make our Little Red Dot more vulnerable to cyberthreats and attacks than ever before.

As the Bitcoin rage continues to hit Singapore’s shores, the Monetary Authority of Singapore has imposed various safeguards to lower related risks. For example, it has implemented anti-money laundering and countering the financing of terrorism (AML/CFT) requirements on the intermediaries that buy, sell or exchange virtual currencies. Additionally, it has also helped Singaporeans understand more about risks involved through advisories. These measures, in turn, have helped to boost the willingness towards the technology.

However, even though many of us are familiar with Bitcoin, the term Blockchain is another we should get acquainted with as it is the technology which underpins and enables not just bitcoin but all cryptocurrencies. More importantly, Singaporeans should understand how it can relate to cryptocurrency malware. Whilst bitcoin payments are non-reversible and verifiable, blockchain is the technology that stores information database that’s shared across many locations – each ledger record is public, but the details of the transaction are kept anonymous.

What this means is that cryptocurrency transactions have security and anonymity built in, but for the bad guys at least this is anonymity of which they can take full advantage when both taking and receiving payments.

Singapore’s openness to cryptocurrency could inevitably give rise to some pitfalls, especially since cybercriminals are following where the money goes. For example, they can make money through digital coinage by cryptojacking people’s computers to generate cryptocurrency for free, or use Ransomware to demand for payment in cryptocurrency due to its untraceable nature. China’s recent ban of cryptocurrency has also seen many Chinese crypto exchange operators and ICO projects migrate to Singapore due to its friendlier jurisdiction, inadvertently increasing the chances of detriment. In turn, this exposes organisations and individuals to the risk of being compromised by cryptojacking and attacked by Ransomware.

Even though Singapore’s cybersecurity infrastructure has been hailed as one of the most advanced, it still fell prey to the recent SingHealth breach. Whilst Singapore has implemented additional measures for critical government systems to detect threats following the attack, it is not a be-all and end-all solution. The breach underscores the importance of having good cyber hygiene practices – for organisations and individuals alike.

Fortunately, there are a few simple steps both parties can take to reduce risks.

By ensuring that you have the latest patches installed for your software and operating systems, especially Adobe, Microsoft and Oracle, you can reduce the chances of exploits which may allow an infection. This is especially since they have the largest user base and are more prone to being targeted.

With more than half of Singaporeans (54%) do not back up their computers, it makes it easy for Ransomware to encrypt their computers. However, getting your computer back up and running with a data-restore will prove to be simple with an up to date backup. In the same vein, it is critical for you to have the latest endpoint protection tools installed to help prevent infections from taking place.

It is also important to monitor and protect network traffic using a security strategy which is based on machine learning and behavioural analysis. The use of advanced threat protection leverages existing investments to provide earliest warning of threats based on understanding of the network and provides one-touch mitigation to remove threats fast.

For Windows computers, it is necessary to ensure that User Access Control is enabled and disable SMBV1.

Pop-ups are often used to spread malware as users click them accidentally. It is best to just prevent them from appearing in the first place by disabling them and using an ad-blocker.

Ultimately, if something seems too good to be true, if it looks slightly suspicious or if you were not expecting it, don’t click. Vigilance is the most effective way to avoid damage from malware.

It is critical to note that whilst Singapore’s cybersecurity standing in the region is high, organisations and individuals still need to operate on the basis that cyberattacks can and will happen. It is only with a prudent frame of mind that we can aim to prevent and reduce the damage of such attacks. 

Join Singapore Business Review community
Join Singapore Business Review community
A NOTE FROM SINGAPORE BUSINESS REVIEW

You're the reader we write for. You're also the person our partners want to reach.

If that sentence describes you — a founder, a C-suite, someone whose attention companies pay good money for — then you already understand why SBR works. We've spent twenty years earning the trust of readers exactly like you. Which is exactly what makes this an interesting place for your company to show up, too.

The ways it can show up are broader than most people assume — thought leadership articles, sponsored content, industry summits across Southeast Asia, regional awards programmes, podcasts, and media placements in print and digital. The right fit depends on what you're trying to do, which is why we'd rather start with a conversation than send a rate card.

If your company has something this audience should know about, we'd like to hear what you're working on.

No rate cards until we understand the brief. It's a better use of everyone's time.

Top News

30 One-Sentence Stories From People Who Have Built Better Habits
None of these stories are mine. They were sent to me by readers of Atomic Habits. My hope is that these examples will illustrate how real people are putting the book into practice. They will show you what people are actually doing to build good habits and break bad ones. And hopefully, they will spark some ideas for how you can do the same.
SBR 5 Lorem Ipsum News 2 [8 May]
Lorem Ipsum is simply dummy text of the printing and typesetting industry. Lorem Ipsum has been the industry's standard dummy text ever since the 1500s, when an unknown printer took a galley of type and scrambled it to make a type specimen book. It has survived not only five centuries, but also the leap into electronic typesetting, remaining essentially unchanged. It was popularised in the 1960s with the release of Letraset sheets containing Lorem Ipsum passages, and more recently with desktop publishing software like Aldus PageMaker including versions of Lorem Ipsum.
SBR 4 Lorem Ipsum [8 May Top Stories]
Lorem Ipsum is simply dummy text of the printing and typesetting industry. Lorem Ipsum has been the industry's standard dummy text ever since the 1500s, when an unknown printer took a galley of type and scrambled it to make a type specimen book. It has survived not only five centuries, but also the leap into electronic typesetting, remaining essentially unchanged. It was popularised in the 1960s with the release of Letraset sheets containing Lorem Ipsum passages, and more recently with desktop publishing software like Aldus PageMaker including versions of Lorem Ipsum.

Exclusives

How Experts Figure What to Focus On
eliminate the distractions. Commit to one thing and become great at that thing.”
Exclusive three SBR 12 Lorem Ipsum [8 May]
Lorem Ipsum is simply dummy text of the printing and typesetting industry. Lorem Ipsum has been the industry's standard dummy text ever since the 1500s, when an unknown printer took a galley of type and scrambled it to make a type specimen book. It has survived not only five centuries, but also the leap into electronic typesetting, remaining essentially unchanged. It was popularised in the 1960s with the release of Letraset sheets containing Lorem Ipsum passages, and more recently with desktop publishing software like Aldus PageMaker including versions of Lorem Ipsum.
SBR 3 Lorem Ipsum [ Exclusive 2]
Lorem Ipsum is simply dummy text of the printing and typesetting industry. Lorem Ipsum has been the industry's standard dummy text ever since the 1500s, when an unknown printer took a galley of type and scrambled it to make a type specimen book. It has survived not only five centuries, but also the leap into electronic typesetting, remaining essentially unchanged. It was popularised in the 1960s with the release of Letraset sheets containing Lorem Ipsum passages, and more recently with desktop publishing software like Aldus PageMaker including versions of Lorem Ipsum.

Event News

Video [Event News]
Lorem Ipsum has been the industry's standard dummy text ever since the 1500s, when an unknown printer took a galley