Attacker: /~~SM1L3.JR~~
Target: jaa.tu.edu.iq/kontol.php7
Source: https://zone-xsec.com/mirror/id/706307
Attacker: hydya
Target: absensi.man5jombang.sch.id/gam…
Source: https://zone-xsec.com/mirror/id/706306
Attacker: skk
Target: agenda.bunghatta.ac.id/v2/css/…
Source: https://zone-xsec.com/mirror/id/706305
Attacker: ./FreedomXploit
Target: simkeu.unej.ac.id//plugins//jQ…
Source: https://zone-xsec.com/mirror/id/706304
Attacker: fitwilliamx12
Target: e-keuangan.riau.go.id/cekspm/12.html
Source: https://defacer.id/mirror/id/140610
Attacker: Rissec1337
Target: setda.ciamiskab.go.id/
Source: https://defacer.id/mirror/id/140608
Attacker: FAKESITE
Target: www.oysipa.oy.gov.ng/1337.php
Source: https://haxor.id/archive/mirror/215126
Cybersecurity Attack Analysis Report: Hacked Web Defacement of Government Websites
Introduction
In recent weeks, a series of cyber attacks targeting government websites have come to light, revealing significant vulnerabilities within the digital infrastructure of several nations. The primary method of these attacks has been web defacement, where attackers alter the content of a webpage to convey specific messages or display their symbols. This report analyzes the attacks, identifies the victim countries, and outlines the affected sectors.
—
Attack Overview
1. Iraq
– Attacker: SM1L3.JR
– Target: jaa.tu.edu.iq/kontol.php7
– Sector: Education
The attack targeted a university website in Iraq, indicating a particular focus on educational institutions. Cybersecurity breaches in this sector can undermine academic integrity and disrupt educational services.
2. Indonesia
– Attacker: hydya
– Target: absensi.man5jombang.sch.id/gam…
– Sector: Education
Another educational institution in Indonesia faced defacement. As with the previous attack, this suggests a growing trend of attacks on educational platforms, raising concerns about data protection and student safety online.
3. Indonesia
– Attacker: skk
– Target: agenda.bunghatta.ac.id/v2/css/…
– Sector: Education
Yet another case from Indonesia, illustrating a sustained assault on academic websites. This surge of attacks could be indicative of a broader campaign against educational systems in the country.
4. Indonesia
– Attacker: ./FreedomXploit
– Target: simkeu.unej.ac.id//plugins//jQ…
– Sector: Education
This further demonstrates the focus on educational institutions in Indonesia. These attacks reveal the vulnerabilities in educational web systems that could lead to exposure of sensitive information.
5. Indonesia
– Attacker: fitwilliamx12
– Target: e-keuangan.riau.go.id/cekspm/12.html
– Sector: Government Finance
This breach involved a local government financial site in Indonesia, indicating that attackers are not just focused on educational targets, but also on critical government services that manage public finances.
6. Indonesia
– Attacker: Rissec1337
– Target: setda.ciamiskab.go.id/
– Sector: Local Government
Another targeted attack on a local government site in Indonesia. The continuous breach of governmental web assets signifies a systemic issue in cybersecurity resilience.
7. Nigeria
– Attacker: FAKESITE
– Target: www.oysipa.oy.gov.ng/1337.php
– Sector: Government
This attack targeted a Nigerian government website, representing a significant vulnerability in public sector websites. Such breaches could lead to misinformation and undermine public trust in governmental digital services.
—
Conclusion
The recent wave of web defacement attacks highlights the growing cybersecurity risks faced by governmental and educational institutions, particularly in countries like Indonesia and Iraq. The majority of the targeted websites belong to educational sectors, revealing an alarming trend that can disrupt learning and potentially expose sensitive data. In addition, attacks against government services signal a notable intention to disrupt public administration functions.
As we move forward, it is crucial for governments and educational institutions to bolster their cybersecurity measures, employing stricter security protocols and investing in infrastructure resilience to safeguard against future attacks. Awareness and proactive actions are paramount in defending against the ever-evolving landscape of cyber threats.