|        About Good Returns  |  Advertise  |  Contact Us  |  Terms & Conditions  |  RSS Feeds

NZ's Financial Adviser News Centre

GR Logo
Last Article Uploaded: Saturday, September 26th, 8:20AM


Latest Headlines

Will hackers interfere with NZX for second week?

New Zealand’s funds management industry will be watching the NZX’s website on Monday in the hopes that it is not felled again.

Monday, August 31st 2020, 5:00AM

Mark Peterson

The site was taken down on four consecutive days last week by cyberattacks understood to be from groups demanding a ransom.

While there is no threat to the money invested via the stock exchange, fund managers are reportedly concerned that the attacks were embarrassing and could shake investor confidence.

The attacks are a denial of service cyberattack, created by inundating the NZX with huge volumes of internet traffic to disrupt its operations.

Fund mangers are not able to buy or sell shares when the attacks push the exchange offline.

But KiwiSaver funds are not able to price portfolios accurately when the market is not functioning.

NZX is working with the GCSB and is understood to be calling on the resources of others in the Five Eyes network to locate the source of the attacks.

Chief executive Mark Peterson said Spark was also helping it to resolve the issue.

"Given that this is an ongoing response, NZX will not be providing detail on the nature of the attacks or counter-measures. We are directly communicating with our stakeholders and market participants and will continue to update them as necessary," he told media.

Dave Parry, a professor in the AUT department of computer science, said it was a very serious attack on critical infrastructure in New Zealand.

"A distributed denial of service attack (DDoS) works by overloading traffic to internet sites eg web servers, etc. This means the web servers cannot service transactions normally and this is clearly a huge issue for a trading site where timing and assurance that transactions have completed are both critical. Attackers normally infect large numbers of 'innocent' computers with malware, turning them into 'bots' that can be instructed to keep trying to access the affected site. It’s like large numbers of people all shouting at you at once – you can’t distinguish the real messages from the false ones."

He said the way to tackle it would usually be to shut down the bots – perhaps by getting users to update their security patches and delete malware – or block the IP addresses of the bot machines using a firewall.

"Because this is coming from overseas, the first option is difficult although there will be communication with legitimate ISPs and governments overseas. For the second option, Spark will be looking at network traffic to identify sources and block them. Sophisticated attackers will be changing the IP addresses of the attacking computers, potentially via virtual private network software, turning them on and off and also adding new ones.

"GCSB will be involved along with CERT in trying to identify the source of the attack. Unfortunately, the skills and software to do this are widely available and the disruption of Covid and people working from home all over the world potentially with lower security on their computers means that these attacks are easier than usual.

"These sort of attacks can be mounted by governments or private criminal gangs. Recently, Australia has pointed the finger at the Chinese government for similar attacks; the Chinese government has strongly denied this. As yet, there is no evidence that this attack is by an overseas government. Criminal gangs, especially if they are based in poorly-regulated countries, can use these attacks to demand ransoms.

"This is not an issue around New Zealand computers being vulnerable to security breaches, but it is worth checking that anti-virus and security patches are up to date, and that people running websites, etc. notify their ISP if there is unusual activity."

Tags: NZX security

« [OPINION] The industry needs to shift focus from ‘what you need to do’ to ‘how will you do it?’Mint moves to new digital onboarding platform »

Special Offers

Comments from our readers

No comments yet

Sign In to add your comment



Printable version  


Email to a friend
News Bites
Latest Comments
Subscribe Now

Weekly Wrap

Previous News


Most Commented On
Mortgage Rates Table

Full Rates Table | Compare Rates

Lender Flt 1yr 2yr 3yr
AIA 4.55 2.55 2.69 2.79
ANZ 4.44 3.15 3.25 3.39
ANZ Special - 2.55 2.69 2.79
ASB Bank 4.45 2.55 2.69 2.79
Bluestone 3.49 3.49 3.49 3.49
BNZ - Classic - 2.55 2.69 2.79
BNZ - Mortgage One 5.15 - - -
BNZ - Rapid Repay 4.60 - - -
BNZ - Std, FlyBuys 4.55 3.15 3.29 3.39
BNZ - TotalMoney 4.55 - - -
CFML Loans 4.95 - - -
Lender Flt 1yr 2yr 3yr
China Construction Bank 4.49 4.70 4.80 4.95
China Construction Bank Special - 2.65 2.65 2.80
Credit Union Auckland 5.45 - - -
Credit Union Baywide 5.65 3.95 3.85 -
Credit Union South 5.65 3.95 3.85 -
First Credit Union Special 5.85 2.95 3.45 -
Heartland 3.95 2.89 2.97 3.39
Heartland Bank - Online - - - -
Heretaunga Building Society 4.99 3.85 3.95 -
HSBC Premier 4.49 2.45 2.60 2.65
HSBC Premier LVR > 80% - - - -
Lender Flt 1yr 2yr 3yr
HSBC Special - - - -
ICBC 3.69 ▼2.45 2.65 2.79
Kainga Ora 4.43 2.93 3.07 3.24
Kiwibank 3.40 3.30 3.54 3.54
Kiwibank - Offset 3.40 - - -
Kiwibank Special 3.40 2.55 2.79 2.79
Liberty 5.69 - - -
Nelson Building Society 4.95 3.45 3.49 -
Pepper Essential 4.79 - - -
Resimac 3.39 3.35 2.99 3.35
SBS Bank 4.54 3.05 3.19 3.25
Lender Flt 1yr 2yr 3yr
SBS Bank Special - 2.55 2.69 2.75
The Co-operative Bank - Owner Occ 4.40 2.55 2.69 2.79
The Co-operative Bank - Standard 4.40 3.05 3.19 3.29
TSB Bank 5.34 3.29 3.45 3.59
TSB Special 4.54 2.49 2.65 2.79
Wairarapa Building Society 4.99 3.55 3.49 -
Westpac 4.59 3.15 3.29 3.39
Westpac - Offset 4.59 - - -
Westpac Special - 2.55 2.69 2.79
Median 4.55 3.00 3.13 3.02

Last updated: 21 September 2020 10:48am

About Us  |  Advertise  |  Contact Us  |  Terms & Conditions  |  Privacy Policy  |  RSS Feeds  |  Letters  |  Archive  |  Toolbox
Site by Web Developer and