Cyber Incidents Watch: Guidance on Strengthening Protection Measures against Distributed Denial-of-Service Attacks

四 16, 2025
Latest News HKMA Cyber Incidents Watch: Guidance on Strengthening Protection Measures against Distributed Denial-of-Service Attacks

On 16 Apr 2025, the HKMA issued guidance reinforcing existing cyber risk management expectations for Authorized Institutions, emphasizing proactive measures against DDoS attacks through enhanced network effect awareness, multi-layered defense strategies, and calibrated incident response protocols. The guidance builds on the 2022 anti-DDoS circular and leverages the upgraded Cyber Intelligence Sharing Platform to foster sector-wide resilience.

This article was generated using SAMS, an AI technology by Timothy Loh LLP.

Introduction and Context

On 16 Apr 2025, the Hong Kong Monetary Authority (HKMA) issued guidance to Authorized Institutions (AIs) on strengthening protection against Distributed Denial-of-Service (DDoS) attacks, building upon existing requirements in the Supervisory Policy Manual (SPM) module TM-C-1 and the 2022 circular on anti-DDoS protection. The guidance addresses key lessons from recent global and local DDoS incidents to enhance sector-wide cyber resilience.

Key Observations and Recommendations

The HKMA highlighted three critical areas requiring AIs' attention: (1) Network effects from group office infrastructure dependencies necessitate AIs to actively engage group entities in incident response, ensuring local management oversees impact assessments and customer communications during group-level DDoS containment; (2) Evolving DDoS techniques (volumetric, protocol, application-layer attacks) demand AIs to critically review defense robustness and adopt multi-layered defensive strategies; (3) Incident response appropriateness requires AIs to calibrate handling processes, including periodic technical simulations to validate anti-DDoS configurations and avoid amplifying incident impacts through misconfigurations or inappropriate customer messaging.

Supporting Initiatives and Next Steps

The HKMA reiterated the importance of leveraging the enhanced Cyber Intelligence Sharing Platform (CISP), which now includes formal threat intelligence sharing guidelines, a verbal intelligence forum, and cross-sector (banking, insurance, capital markets) platform integration. AIs are encouraged to actively monitor threats and share intelligence via CISP to strengthen collective cyber resilience. The HKMA will continue monitoring cyber trends and providing further guidance as needed.

View the full article:Source

我们使用 Cookie 来提升您使用本网站的体验,并在必要时让您完成注册。继续使用本网站即表示您同意使用这些 Cookie。欲了解更多信息及如何更改 Cookie 设置,请参阅我们的 Cookie 政策和隐私声明。