Dong's View on Security in New Zealand
2018/3/23 中科院计算所
New Zealand, a member of the Commonwealth of the United Kingdom, lies in the south of the Pacific Ocean and is composed of North Island and South Island separated by the Cook Strait. New Zealand is a highly developed capitalist country, with its export of velvet antler, mutton, dairy products and coarse wool ranking number 1 in the world. Meanwhile, New Zealand is also one of the most beautiful countries in Oceania. Today, we learn about New Zealand, the country of green gardens in Oceania, from the perspective of network security.
1. From "The Sun Never Sets" to a Democratic Nation
Bai: Dong, have you ever seen the trilogy of The Lord of the Rings?My friends recommended them to me. They are awesome! Go to see them some day!
Dong: Oh, you mean The Lord of the Rings trilogy by Tolkien!I have already read them. They are indeed the compulsory subjects for the magicnovel lovers!
Bai:Wait, Dong! I mean the movie The Lord of the Rings!
Dong: Yes, of course. The movie The Lord of the Rings is shot on the basis of the novel The Lord of the Rings,which is really a gorgeous and fabulous work among the magic movies.
Bai: Absolutely. The shooting is so good that many vast scenes make people feel that the middle earth world really exists!
Dong: Do you know where the middle earth world is in reality?
Bai:Well, Dong, do you mean the shooting place of The Lord of the Rings? I really have no idea of where it is.
Dong: Is there any need for me to make an introduction?
Bai: Go ahead! I will go and have a look if it is not far.
Dong:What if it is a bit far? Say, about a hemisphere?
Bai: Oh,no... It is ...
Dong: Exactly! The shooting place of The Lord of the Rings is in New Zealand in the Southern Hemisphere. Talking about the country of New Zealand, how much do you know?
Bai:I have read some introduction of the New Zealand scenic spots in a geographical magazine. There is a place called Queenstown in New Zealand. I really want to go there for a hot air balloon trip.
Dong: Queenstown is indeed very famous. Although it is known to all that New Zealand is a member of the Commonwealth, the name of Queenstown has nothing to do with the British Queen or Queens from any other kingdom. The place got its present name simply because the colonists in history believe that such a beautiful place should belong solely to the British Queen.

(Queenstown in New Zealand Source: Baidu Encyclopedia)
Bai: Wow, it sounds that besides the "Middle Earth World", there are still many other pleasants ceneries in New Zealand!
Dong: Yes, New Zealand is also known as the country of green gardens, with a total of about 30% of the land as protected areas. She has 3 world heritage sites, 14 national parks, 3 ocean parks,hundreds of nature reserves and ecological zones. In the 2014 Human Development Index released by the United Nations Development Program, New Zealand ranked seventh in the world.
Bai: I must make a plan to embrace the nature in New Zealand someday.
2. Another Country on the Back of the Sheep
Dong:Haha! There are a lot more in New Zealand beyond your knowledge besides its scenes!
Bai: That is still too early to say~~ I will show you more according to my knowledge. New Zealand is adeveloped capitalist country. In addition, she is ..., no more!
Dong: You said it correct this time, but a little shallow. Let me add more information. New Zealand is economically developed and thus ranks among the developed countries.In the past twenty years, New Zealand economy has successfully transformed from an agriculture oriented one to an industrialized free market economy with international competitive power. At present, although only 10% of the labor force in New Zealand is in agricultural industry, the animal husbandry is the national economic base.
Bai:Well. That seems a little unbalanced.
Dong: Yes, The export value of agricultural and animal products accounts for more than half of that of the country's, with the export value of mutton, dairy products and coarse wool ranking the first in the world.

(National Treasure of New Zealand Source: Baidu Gallery)
Bai: No wonder many types of import milk in the supermarket are from New Zealand.
Dong: You said it! New Zealand is not only rich in forest resources, the main products being wood, logs, wood paddles, paper and wood boards, but has a wealth of fish resource as well. The Industria lproducts are mainly from agriculture, forestry and animal husbandry industries,such as dairy products, blankets, food, wine, leather, tobacco, paper and wood products, most of which are to be exported.
Bai:With the light industry as her pillar industry, New Zealand might not been titled as a developed country.
Dong:Give me some patience. There is still more to tell.
Bai:What is that then?
3.Crazy Kiwis
Dong: The third industry that ranks a high position in New Zealand! It is the large proportion of the third industry in New Zealand that really makes her a developed country. For instance, tourism now is the pillar industry in New Zealand.
Bai: Wow! How I want to take a tour there!
Dong: How can you go there without a thorough preparation of the background knowledge of New Zealand! Let me see how much you know about the New Zealand culture?
Bai: Haha. Zero till now, so please my buddy, teach me something about that.
Dong: At your service. Before the colonization of Britain, the original inhabitants of New Zealand were Maoris,so the culture of New Zealand is filled with features of the Maoris, Europeans,Asians and the Oceania people.

(The 19th Century Maori Statue in Auckland War Museum in New Zealand Source:Wikipedia)
Bai:Maoris. It's the first time that I hear the word.
Dong:Talking about Maoris, we have to mention the traditional performance of them.
Bai: Wow wow, what is that?
Dong: The Haka, which is the dance performed by all the ethnic groups of Maoris before the war to intimidate their enemies. The Haka lyrics are different in different ethnic groups. The biggest feature of the dance is that at the end of it, all the dancers would show their tongues extended long out of their mouths. The original intention of that is to imitate the heads of the enemy hung on the long poles after they were chopped off upon defeat. Many tourists find the expression very interesting.
Bai: I see. The Maoris are actually the aboriginal.
Dong: Absolutely. When New Zealand is introduced, the national bird, kiwis should definitely be mentioned.

(kiwis Source: Baidu Gallery)
Bai: Do you mean the Emus?
Dong: No, they are different birds. The kiwis are exclusive to New Zealand. As a result, this word can alsobe used to refer to the New Zealanders. As early as in WWI, the New Zealandsoldiers are known to be called the kiwis. The basic monetary unit of New Zealand--the New Zealand dollar, is also often called the "kiwi", for there is a kiwi on one side of the money.
Bai: The crazy kiwis!
Dong: Having had so much introduced, I believe that you must have a new understanding of New Zealand now. Well then, let's move to our topic today.
Bai: Actually, I still want to know more.
Dong: Then go and get them on the net~
4. Network Legislation
Dong: Before we go into the topic, let me tell you some basic information concerning the network legislation in New Zealand.
Bai: Dong, you really know alot!
Dong: Of course, I am in the network security industry. The latest network legislation of New Zealand is the Cyber Security Strategy issued by New Zealand government in 2011.
Bai: What is that?
Dong: New Zealand's Cyber Security Strategy is taken by the government against the increasingly serious network threat. The strategy is based on the existing government andnon-governmental efforts to improve the security of New Zealand's network. It proposes targeted measures aimed at improving the security of individuals, businesses,national important infrastructure and government networks.
Bai: Oh, I see.
Dong: Then in December 2015, New Zealand has released an updated Cyber Security Strategy to replace the 2011 version with action plans and national plans to fight against cyber crimes. The new Strategy marked the government's efforts in ensuring the safety, vitality and prosperity of the New Zealand networks.
Bai: What's updated in the new Strategy?
Dong: The new Strategy has four principles: valuing partnership,achieving economic growth, maintaining national security and protecting human rights online.

(Source: www.dpmc.govt.nz)
Bai: We can see that the New Zealand government attaches much importance to these principles.
5. Cyber Security: Not Too Optimistic
Dong:What do you think of the cyber security in New Zealand?
Bai: In such a beautiful country, its cyber security should be like its scenery--bringing peace to people.
Dong: If you think like that,you are completely wrong! We simply can not be too optimistic about its cyber security.
Bai: Wait, wait, Dong. Are you showing me the dark side of New Zealand? I do not want to see unpleasant things, please.
Dong: Come on. I am showing you all aspects of the cyber security. We need to be objective and disinterested. According to the Symantec Internet Security Threat Report 2015, among the 6 different types of network attacks, 5 showed an upward trend in New Zealand, namely, spam,phishing (false host), botnet, attacks on network facilities and those on the web pages. Mark Shaw, a Symantec technician, says the increase in New Zealand's Internet blackmail attacks is also a serious problem.
Bai: Talking about blackmail,the word "ransom ware" came up to my mind.
Dong: Blackmail is more than just the "ransomware". According to Symantec's Report, in 2015 the number of Internet blackmail attacks increased by 163%, which means that in New Zealand there are about 108 such cases per day. Insiders warn that if no stronger laws are issued, the phenomenon may become worse.
Bai: It sounds really terrible.But why is New Zealand chosen as the target by those blackmail attacks?
Dong: New Zealand is the target because she is not only a rich and developed country, but also very easy to get robbed.The Report also pointed out that more and more new and "low - tech"cyber crimes adopting basically social engineering laws are now becoming popular. This kind of cyber crimes usually carry out the attacks by principles of social engineering instead of high techs.
Bai: what are the principles of social engineering?

(Pop-upAdvertisement Source: Baidu Gallery)
Dong: They take social and person skills to cheat people into some traps. For example, criminals will setup pop-up ads on certain websites, showing information like "hidden dangers in your computer, call our phone to get free technology support". If you call the provided phone number upon these ads, the so called"technology expert" will tell you some measures, like installing the free anti-virus software the "expert" provides, to repair your computer. But in fact, this software is nothing but a Trojan!
Bai: Wow, it's a surprise that this so common practice in China could make a turmoil in other places.
Dong: That is only because we have seen so much of that in China and have got used to it.
Bai: Yeah, it is, indeed!
6.Cyber Security Organization: Finally Established
Bai: Since year 2015, the cyber security situation in New Zealand has not been optimistic. What measures then did the government adopt?
Dong: There are some measures,only a little bit late taken.
Bai: A little bit late taken?
Dong: In 2017, the New Zealand Ministry of Commerce, Innovation and Employment (MBIE) announced the launch of the Computer Emergency Response Team New Zealand (CERT NZ). This is the national network security department established under the leadership of SimonBridges, the Communication Minister, aiming to help New Zealand residents cope with online security threats.
Bai: Not until 2017. It isr eally a little bit late, with the time being 2018 now!
Dong: According to MBIE, the five core functions of CERT NZ include: abnormal event reports, emergency response and coordination, supports provided all time, security vulnerability identification and risk identification.
Bai: But why is the organization established so late?
Dong: In fact, the CERT NZprogram was first proposed in year 2016, with an aid of a 4 year 22,200,000 NZDfrom the national budget. It is only one year from the proposal of the program to the establishment of the CERT NZ. Pretty fast!
Bai: What about the effect?
Dong: 2017 is remembered as the year of the ransomware ravage. A large number of WanaCry (WanaCypt0r) Ransomwares automatically attack all Windows vulnerabilities because of the NSA used on the OS.

(WanaCypt0r Ransomware Picture Source: Sohu News)
Bai:Yes, I remember. Really a disaster!
Dong: In 2017, the Security Center and the CERT established by the Government Communications Security Bureau work together to prevent the Wannacry ransomware. As a result, NewZealand got zero casualty while the government health system was badly hit and collapsed in the UK, and while the internal IT system of Telecom got infected with the malicious virus and was near paralysis in Spain.
Bai: Well, that was really effective!
Dong: At the same time, a spokesman for the unofficial cooperation committee said the Center was tryingto improve the defense performance of the state confidential computer system."Neither NCSC nor CERT NZ received any reports of this ransomware attack in New Zealand. Ransomware has made use of a known vulnerability in the Windows operating system, so we provided customers with suggestions to mend this vulnerability. Some spontaneous organizations are also working with CERT NZ to provide information on large-scale systems maintaining, and help small businesses and operators reduce their chances of being attacked by ransomware.
Bai: Excellent!
7.Cyber Security University: AUT
Dong: Let's move to the topic of talents after the introduction of the organizations. Organizations against cyber threats would go no where without the talents support.
Bai: Sounds like New Zealand doesn't have universities! One of my classmates wants to further his study abroad, and the university he applies for is in New Zealand!
Dong: What university?
Bai: He said, well, it's likethe Auckland University of Technology. By the way, he is an art student.
Dong: There is only one university in Auckland. Yes, it is the Auckland University of Technology.

(Auckland University of Technology Picture Source: Baidu Gallery)
Bai: Ah, yes! Dong, that is Auckland University of Technology. How is the university? Do you know that,mate?
Dong: Auckland University of Technology, founded in 1895, is located in Auckland, the largest city in New Zealand. It is one of the eight public universities in New Zealand.

(Auckland City Picture Source:Baidu Gallery)
Bai:Wow, this university is the Top8 in New Zealand. Awesome!
Dong: More than that. In 2017,the international education organization Quacquarelli Symonds ranked AUT as a 5-start university.
Bai: How I envy my classmate.
Dong: Why not also apply for AUT yourself?
Bai: Don't make a fool of me! What can I apply for?
Dong: Apply for the study of our own major, Cyber Security!There is a master program for the Cyber Security study in AUT. Think about it.While you further your study on Cyber Security, you can have the opportunity to travel around in New Zealand. Isn't that fantastic!
Bai: Dong, you sounds like an overseas-study agent!
8.Ref
[1]. New Zealand Establishes National Network Team to Cope with Security Threat. https://baijiahao.baidu.com/s?id=1564557053896097&wfr=spider&for=pc
[2]. CERT NZ: New Zealand Suffers a Loss of $1.9 Million due to Cyber Security Events Since April.http://www.sohu.com/a/209935414_100066938
[3]. New Zealand Releases New Version of National Defense White Paper Which Includes Cyber Security Construction for the First Time. http://mil.sohu.com/20160608/n453611814.shtml
[4]. Hacker Attacks? How does New Zealand Achieve Zero "Casualty"? http://www.sohu.com/a/140494784_697774.
[5]. New Zealand's Cyber Security Strategy 2011. https://www.dpmc.govt.nz/publications/new-zealands-cyber-security-strategy-2011
[6]. New Zealand's Cyber Security Strategy. https://www.dpmc.govt.nz/publications/new-zealands-cyber-security-strategy
[7].Auckland University of Technology. https://baike.baidu.com/item/%E5%A5%A5%E5%85%8B%E5%85%B0%E7%90%86%E5%B7%A5%E5%A4%A7%E5%AD%A6/2562596?fr=aladdin
Gratitude
Special thanks to the the School of Software of Dalian University of Foreign Languages for the translation support provided to the English version of DongSec.
The School of Software of Dalian University of Foreign Languages, as the provincial pilot software technology school and the "Cooperation Support Unit of Large DataSecurity Personnel Training Base of China Cyber Space Security Association",was granted awarded by Dalian Municipal Government as “Advanced Unit for the Development of Software and Service Outsourcing in Dalian”,and has become a member of the first batch of IT Education Association in Dalian. In 2009, she was honored as one of “Schools of Software with Most Employment Competitiveness Top Ten” by the National Development and Reform Commission Industry Association,and “China High-Tech Zone (Software and Service Outsourcing) Talents TrainingBase” byChina’sHigh-Tech Industry Association. In 2010, she got the award of “Huazun Award—themost influential academy award for software talents training inChina”. In 2011she was named Vice President Unit of China Association of Trade in Service. In the same year, she signed an agreement of “Embedded System University Cooperation Plan”with Intel Corporation. During the Second National Service Industry PublicSatisfaction Index research in 2011, she was awarded the “Golden Award—Software Talents Training Model School with the Most Employment Competitiveness inChina”.And she was also prized as “Outstanding Institution for 2011 China Software Export Service Outsourcing Development” by China Software Industry Association.
School of Software has several majors:Information Management and Information System, Computer Science and Technology,Software Engineering , and Network Engineering. Our school has a strong faculty group and prominent characteristics of talent cultivation. The curriculum focuses on talent cultivation and strengthens English, Japanese and Korean language skills in order to meet the demand for versatile IT talents and toenhance the students’ competitive edge. Our school offers many chances ofinter-school exchanges with prestigious foreign universities inJapan,South Korea,Europe,AmericaandAustralia, with the curriculum arrangement and credit in both universities mutually recognized.
All the graduates from School of Software of DUFL will be proficient in two foreign languages and advanced technology for software andinformation services and will contribute to information technology, software development, e-commerce, e-Government and the all-around field with language asan expertise. All of them will have wide channels of employment and bright prospects.
大东,何许人也:翟立东,博士,副研究员,中科院计算所网络数据科学与技术重点实验室大数据与信息安全组组长,中国网络空间安全协会理事,竞评演练工作委员会常务副秘书长,大数据安全人才培养基地负责人。主要研究方向为大数据隐私保护和网络安全。
曾参与国家科技部十二五、十三五信息技术领域“网络与信息安全”方向的科技战略规划,作为课题负责人承担科技部、发改委、中科院战略先导专项、中科院重点项目等多项课题。作为课题负责人参与多项网络空间安全战略规划与研究。
一直致力于网络安全的科普传播工作,本专栏大东话安全,即凝注了翟立东团队对网络安全科普工作的心血和愿景。

http://weixin.100md.com
返回 中科院计算所 返回首页 返回百拇医药