Tuesday, May 14, 2024

Hacker claims to have breached Indonesia’s Ministry of Defense website, secret documents might be at risk

Reading Time: 2 minutes
Journalist IBP

Journalist

Mahinda Arkyasa

Editor

Interview

An anonymous hacker, known as “Two2,” has claimed to have successfully breached the website of the Ministry of Defense in Indonesia, kemhan.go.id. The hacker asserted gaining access to the website’s dashboard panel.

In a post on BreachForums, Two2 shared several screenshots from the kemhan.go.id dashboard. One of the screenshots revealed that the website had utilized 1.64 terabytes of storage out of 2 terabytes available.

Pratama Persadha, Chairman of Communication and Information System Security Research Center (CISSReC), noted that hackers typically aim to sell the data they obtain during a breach. In this case, the hacker offered accounts with access to the kemhan.go.id dashboard for sale.

While the shared documents were not classified, Pratama emphasized that it is possible for website users or employees to inadvertently store sensitive documents on the site, potentially compromising national security.

He also mentioned that the obtained accounts could be used to access other systems within the Ministry of Defense that contain important data and classified documents.

CISSReC conducted an investigation and found that kemhan.go.id had various vulnerabilities related to credentials, with 667 users and 37 employees experiencing data leaks. These leaks could be exploited for unauthorized access to the website.

In their examination, CISSReC also identified subdomain URLs from kemhan.go.id that could potentially serve as attack points against the Ministry of Defense’s website.

Pratama suggested that the cyberattack on kemhan.go.id was likely a “Stealer” malware attack. He explained that this type of malware is typically used to collect information that can be monetized by attackers.

Stealer malware’s standard form is to gather login information such as usernames and passwords, which are then sent to other systems through email or networks.

After successfully extracting sensitive data from the target device, hackers send this information to threat actors who may use it for extortion, ransom demands, or sell it on the dark web or forums as stolen goods.

Pratama highlighted that malware-based cyberattacks are favored by hackers because direct attacks on targeted systems from the outside are challenging due to multiple security measures in place. Thus, hackers exploit human error, which often represents the weakest point in cybersecurity.

Furthermore, Pratama explained the existence of “Malware as a Service” (MaaS), where cybercriminals provide various types of malware to users or customers who pay for the service. Customers of MaaS typically lack technical knowledge and skills to create malware themselves, so they can rent or purchase pre-made malware for launching attacks or other malicious activities.

The exact attack vector used by the hacker to access kemhan.go.id’s dashboard panel has not been determined yet. Pratama suggested that users are required to change the passwords of their accounts, both on the kemhan.go.id website and their personal accounts (email, social media, etc.).

It’s important to note that the Ministry of Defense’s website is now inaccessible, likely for investigative and system maintenance purposes, in an effort to prevent the use of leaked passwords for unauthorized access.

Journalist IBP

Journalist

Mahinda Arkyasa

Editor

 

Interview

SUBSCRIBE NOW
We will provide you with an invoice for your reimbursable expenses.

Free

New to Indonesian market? Read our free articles before subscribing to the premium plan. If you already run your business in Indonesia, make sure to subscribe to the premium subscription so you won’t miss any intelligence & business opportunities.

Premium

$550 USD/Year

or

$45 USD/Month

Cancelation: you can cancel your subscription at any time, by sending us an email inquiry@ibp-media.com

Add keywords to your market watch and receive notification:
Schedule a free consultation with us:

We’ll contact you for confirmation.

FURTHER READING

The Indonesia Corruption Watch (ICW) reveals that the substantial costs borne by political parties and individualshave been fueling a cyclical pattern of corruption in both the general elections (Pemilu) and the regional elections (Pilkada).
A recent survey by the Indonesian Political Indicator Institute (IPI) revealed a decline in public trust towards the Corruption Eradication Commission (KPK) following legislative revisions.
Indonesia has taken a firm stance in support of Palestine during the Emergency Session of the United Nations General Assembly (UNGA) in New York, the U.S. As one of the 77 co-sponsors of the resolution titled “Admission of New Members in the United Nations,” alongside 143 other UN member states, Indonesia has voiced its strong support for granting special privileges to Palestine.
The Indonesian Marine Corps and its U.S. counterpart jointly participated in the Indonesian Reconnaissance Exercise (RECONEX) held in Antralina, Jampang Tengah, Sukabumi Regency, West Java, on April 24-May 10, 2024.
The National Mandate Party (PAN) has voiced its support on the proposed expansion of ministerial roles in the forthcoming Prabowo Subianto-Gibran Rakabuming Raka administration.
The proposal by President elect Prabowo Subianto to establish a presidential club as a communication forum for the country’s newly elected pair and former pairs of State leadership has won the support of Speaker of the People’s Consultative Assembly (MPR) Bambang Soesatyo.