Increase in smishing and ransomware exploiting COVID-19 issues
Ministry of Science and ICT establishes and recommends 6 major implementation rules
Corona 19 Safety Information 118, Operated Until the End On the 30th, the Ministry of Science and ICT recommended information protection practice guidelines that contain things that users and security managers must follow to prevent companies from being hacked when working from home or remotely.

▲ Ministry of Science and ICT recommends information protection rules to be followed when working from home or remotely
Recently, smishing text messages targeting user account hijacking and smartphone/PC hacking by exploiting the COVID-19 issue have been continuously distributed, with 9,886 cases detected over the past two months, and cases of hacking emails are also being discovered domestically and internationally.
The number of ransomware attacks targeting the weakened security management systems of companies and organizations has also increased from 1 case in February to 13 cases in March, indicating that security threats to the private sector are increasing.
Accordingly, the Ministry of Science and ICT has established and recommended six practical guidelines that users and security managers must follow to prevent security risks such as hacking of remote terminals used for telecommuting and remote work from spreading to ransomware infections or information leaks in companies.
First, user security recommendations include ▲Personal PC security latest updates ▲Vaccine program updates and regular checks ▲Home router security settings (SW updates, password settings) and private Wi-Fi and public Wi-Fi.Some of the recommendations include ▲refraining from using a PC for work ▲recommended to use company email and be careful using personal email ▲refraining from using unnecessary websites ▲be careful of downloading files (beware of ransomware infection), etc.
Recommendations from corporate security managers include ▲ recommending the use of a remote work system (VPN) ▲ establishing security guidelines and raising awareness for remote workers ▲ managing user accounts and access rights for remote workers ▲ blocking the network during absences for a certain period of time ▲ strengthening remote access monitoring ▲ securing data such as personal information and corporate information (beware of ransomware infection), etc.
Until the COVID-19 situation is resolved, the Korea Internet & Security Agency plans to operate 'COVID-19 Safety Information' where you can view government and corporate safety measures, rules, tips, etc. through the Korea Internet & Security Agency website (www.kisa.or.kr/covid19) and by phone (118).
An official from the Ministry of Science and ICT said that the COVID-19 safety information will provide not only the six major information protection practices, but also information on security policies related to COVID-19, general status, and COVID-19-related apps, and that it will be updated regularly.