The Securities and Futures Commission (SFC) today (2nd) issued a circular calling upon licensed firms to strengthen their cybersecurity measures against emerging threats enabled by frontier artificial intelligence (AI) models.The AI-enabled cyber threats came to the fore as cyberattacks continued to evolve locally and globally. Notably, Hong Kong recorded a double-digit increase in overall cyberattack incidents last year. Against this backdrop, the SFC warns in the circular that fast-advancing frontier AI models have the potential to enable more frequent, targeted and sophisticated cyberattacks, which could result in significant operational disruptions and risks for licensed firms, their staff and clients.The SFC also noted that recent advancements in AI have made it easier for malicious actors to identify and exploit system vulnerabilities at a faster pace, coordinate attacks across multiple interconnected systems and orchestrate large-scale attacks. At the same time, the proliferation of AI-enabled tools lowers the barriers for them to engage in phishing, social engineering, deepfake impersonation and reconnaissance. Consequently, licensed firms are exposed to heightened cybersecurity risks.In today’s circular, the SFC urges licensed firms, especially internet brokers and virtual asset trading platforms, to implement robust and up-to-date measures to protect their systems, prevent confidential client information from unauthorised access or disclosure, and safeguard client assets against misappropriation.In addition, the SFC sets out areas for licensed firms to review and enhance their cybersecurity frameworks to ensure they remain up-to-date and effective. These areas include patching and vulnerability management, detection and monitoring measures, as well as incident response and recovery.
AASTOCKS Financial News