Attacker: CyberTeam
Target: https://mesadeayuda.sdmujer.gov.co/glpi/pwnddd.php
Source: http://www.zone-h.org/mirror/id/41318760

Attacker: FAKESITE
Target: buliabazarcollege.edu.bd
Source: https://zone-xsec.com/mirror/id/704470

Attacker: skk
Target: kkn.unitama.ac.id/pwd.php
Source: https://zone-xsec.com/mirror/id/704418

Attacker: FAKESITE
Target: undangan.lp3isurabaya.ac.id/im…
Source: https://zone-xsec.com/mirror/id/704417

Attacker: FAKESITE
Target: ppdb.lp3isurabaya.ac.id/js/
Source: https://zone-xsec.com/mirror/id/704416

Attacker: FAKESITE
Target: lp3isurabaya.ac.id/1337.php
Source: https://zone-xsec.com/mirror/id/704415

Attacker: FAKESITE
Target: lifeskill.lp3isurabaya.ac.id/1…
Source: https://zone-xsec.com/mirror/id/704414

Attacker: FAKESITE
Target: laporan.lp3isurabaya.ac.id
Source: https://zone-xsec.com/mirror/id/704413

Attacker: FAKESITE
Target: kasir.lp3isurabaya.ac.id/1337….
Source: https://zone-xsec.com/mirror/id/704412

Attacker: FAKESITE
Target: helpdesk.lp3isurabaya.ac.id/13…
Source: https://zone-xsec.com/mirror/id/704411

Attacker: FAKESITE
Target: e-katalog.lp3isurabaya.ac.id/1…
Source: https://zone-xsec.com/mirror/id/704410

Attacker: FAKESITE
Target: beasiswa.lp3isurabaya.ac.id
Source: https://zone-xsec.com/mirror/id/704409

Attacker: FAKESITE
Target: acak.lp3isurabaya.ac.id/1337.p…
Source: https://zone-xsec.com/mirror/id/704408

Attacker: FAKESITE
Target: absensi.lp3isurabaya.ac.id/133…
Source: https://zone-xsec.com/mirror/id/704407

Attacker: ./FreedomXploit
Target: dinsos.kendalkab.go.id
Source: https://zone-xsec.com/mirror/id/704406

Attacker: skk
Target: ojs.unitama.ac.id/readme.php
Source: https://zone-xsec.com/mirror/id/704405

Attacker: skk
Target: cbt.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704404

Attacker: skk
Target: classroom.fkunizar.ac.id/readm…
Source: https://zone-xsec.com/mirror/id/704403

Attacker: skk
Target: csl.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704402

Attacker: skk
Target: osce.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704401

Attacker: skk
Target: pskp.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704365

Attacker: skk
Target: ppd.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704360

Attacker: skk
Target: ba.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704359

Attacker: skk
Target: siakad.fkunizar.ac.id/readmi.p…
Source: https://zone-xsec.com/mirror/id/704358

Attacker: skk
Target: loa21.me-uii.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704357

Attacker: saTaoz
Target: lampung.bmkg.go.id/profil/?ase=readnews&etc=NEW…
Source: https://defacer.id/mirror/id/140514

Attacker: FAKESITE
Target: lp3isurabaya.ac.id/1337.php
Source: https://haxor.id/archive/mirror/214861

Attacker: FAKESITE
Target: lifeskill.lp3isurabaya.ac.id/1…
Source: https://haxor.id/archive/mirror/214860

Attacker: FAKESITE
Target: laporan.lp3isurabaya.ac.id/
Source: https://haxor.id/archive/mirror/214859

Attacker: FAKESITE
Target: kasir.lp3isurabaya.ac.id/1337….
Source: https://haxor.id/archive/mirror/214858

Attacker: FAKESITE
Target: helpdesk.lp3isurabaya.ac.id/13…
Source: https://haxor.id/archive/mirror/214857

Attacker: FAKESITE
Target: e-katalog.lp3isurabaya.ac.id/1…
Source: https://haxor.id/archive/mirror/214856

Attacker: FAKESITE
Target: beasiswa.lp3isurabaya.ac.id/
Source: https://haxor.id/archive/mirror/214855

Attacker: FAKESITE
Target: acak.lp3isurabaya.ac.id/1337.p…
Source: https://haxor.id/archive/mirror/214854

Attacker: FAKESITE
Target: absensi.lp3isurabaya.ac.id/133…
Source: https://haxor.id/archive/mirror/214853

Cybersecurity Attack Analysis Report: Government Websites Hacked via Web Defacement

Introduction

In recent months, several government and educational websites have fallen victim to web defacement attacks, a form of cyber intrusion that compromises the integrity of online platforms by replacing or altering the displayed web content. The attacks are often characterized by the intentional and unauthorized changes made to the visual appearance of the website, typically to convey a message, showcase the attacker’s capabilities, or for malicious purposes.

Analysis of Attacks

Summary of Attacks

1. Attackers:
– The attacks were carried out by various groups, including CyberTeam, FAKESITE, and skk.

2. Victim Countries and Affected Sectors:
Based on the reported websites, the analysis identifies the following victim countries and sectors:

Colombia:
Website: mesadeayuda.sdmujer.gov.co
Sector: Government Assistance Services

Bangladesh:
Website: buliabazarcollege.edu.bd
Sector: Education

Indonesia:
– Multiple websites from lp3isurabaya.ac.id, with subdomains targeting various educational services (e.g., admission services, life skills program).
Sector: Education

Indonesia:
Website: dinsos.kendalkab.go.id
Sector: Social Welfare Services

Indonesia:
– Various websites from fkunizar.ac.id, indicating a focus on educational and faculty management systems.
Sector: Education

Indonesia:
Website: bmkg.go.id
Sector: Meteorological Agency

Nature of the Attacks

– The attackers primarily exploited vulnerabilities in the platforms they targeted, leading to unauthorized access and subsequent modifications of the websites. These actions not only disrupt normal functions of the sites but also tarnish the reputation of the institutions affected.

– The use of defacement as a tactic suggests that the attackers aim to make a statement or demonstrate their capabilities. The cybercriminals behind these attacks often manipulate website content to display their message, which can range from political statements to anti-establishment sentiments.

Conclusion

The recent spate of web defacement attacks on government and educational websites across Colombia, Bangladesh, and Indonesia underscores the growing vulnerability of public sector online platforms to cyber threats. These incidents highlight the necessity for robust cybersecurity measures, including regular security audits, vulnerability assessments, and user education on safe internet practices.

It is crucial for affected institutions to take immediate action to restore their operations, secure their networks, and implement upgrades to prevent future occurrences. Additionally, collaboration between national cybersecurity agencies and educational institutions can strengthen the overall cyber defense mechanism against such disruptive attacks.

As we move forward, vigilance in the face of evolving cyber threats will be essential in safeguarding the integrity and availability of critical online services provided by governmental and educational sectors.