At 2:00 p.m. on November 1, 2024, at the Radio Frequency Department, the second national combat exercise organized by the Information Security Department ended with great success. This is an important playground, gathering many leading units and experts in the field of information security, working together to improve the capacity to protect the national network system.
The goal of this national exercise is to test and attack the system of Vietnam Airlines (VNA) - a large-scale information system that plays a particularly important role in the aviation industry and in Vietnam's national security. The exercise is not only a test, but also an opportunity for Red Teams to coordinate, challenge and detect potential security vulnerabilities in the system.
CYSEEX Security Alliance representative received 3rd prize after surpassing many RedTeams
This exercise saw the participation of many strong units such as BTL 86 (Cyber Warfare Command), FPT Telecom, BKAV, CyRadar, Vietcombank, GHTK, Vietnam National Cyber Security Technology Joint Stock Company, SSI, Noventiq, etc. Surpassing many opponents, including RedTeam teams in the field of information security, the CYSEEX Information Security Alliance had an excellent performance, winning Third Prize , leaving a strong impression in the cyber security community, and was highly appreciated by the governing body.
Mr. Le Van Tuan - Director of the Department of Information Security assessed the important role of regular information security drills.
Speaking at the closing ceremony of the event, Mr. Le Van Tuan - Director of the Department of Information Security assessed that the combat exercise is an indispensable part to improve the protection capacity of the competent agencies, ensuring national information security in the digital age.
Mr. Bui Duc Truong - Head of MISA Security Department - RedTeam Leader CYSEEX spoke at the closing ceremony of the exercise.
In addition, VNCERT Deputy Director Le Cong Phu shared: “The national combat exercise program acts as a necessary ‘vaccine’, helping to detect and enhance the ability to respond to increasingly complex threats.”
Participating teams report the results of the exercise.
Representing the CYSEEX alliance at the closing ceremony of the program, Mr. Bui Duc Truong - Head of MISA Security Department - RedTeam Leader CYSEEX pointed out serious vulnerabilities and proposed preventive solutions for the host unit: "The serious vulnerabilities discovered by the CYSEEX team mainly come from the programming and operation stages. Our RedTeam has overcome the protection mechanisms of the application firewall, penetrated deeply and collected a lot of sensitive data. In addition, he also emphasized that building a SecDevOps culture and prioritizing Security in all stages of software development is extremely important. Enterprises should use Official Letter 166 of the Department of Information Security as a standard for a secure software development framework."
During the exercise, the Red Team conducted various types of attacks, helping VNA clearly identify security vulnerabilities that had not been previously discovered. VNA representatives also expressed their deep gratitude to the Red Teams for their active contributions, not only helping VNA strengthen its system defense capabilities, but also helping them better understand the real threats that businesses may face in the future. Through this exercise, VNA has more basis to deploy appropriate defense measures, thereby protecting information security and maintaining stable operations for the entire system.
Final result :
🥇 First prize: FPT Telecom
🥈 Second prize: BTL-86
🥉 Third Prize: CYSEEX Information Security Alliance
Comment (0)