
Attacker: CyberTeam
Target: https://mesadeayuda.sdmujer.gov.co/glpi/pwnddd.php
Source: http://www.zone-h.org/mirror/id/41318760
Attacker: FAKESITE
Target: buliabazarcollege.edu.bd
Source: https://zone-xsec.com/mirror/id/704470
Attacker: skk
Target: kkn.unitama.ac.id/pwd.php
Source: https://zone-xsec.com/mirror/id/704418
Attacker: FAKESITE
Target: undangan.lp3isurabaya.ac.id/im…
Source: https://zone-xsec.com/mirror/id/704417
Attacker: FAKESITE
Target: ppdb.lp3isurabaya.ac.id/js/
Source: https://zone-xsec.com/mirror/id/704416
Attacker: FAKESITE
Target: lp3isurabaya.ac.id/1337.php
Source: https://zone-xsec.com/mirror/id/704415
Attacker: FAKESITE
Target: lifeskill.lp3isurabaya.ac.id/1…
Source: https://zone-xsec.com/mirror/id/704414
Attacker: FAKESITE
Target: laporan.lp3isurabaya.ac.id
Source: https://zone-xsec.com/mirror/id/704413
Attacker: FAKESITE
Target: kasir.lp3isurabaya.ac.id/1337….
Source: https://zone-xsec.com/mirror/id/704412
Attacker: FAKESITE
Target: helpdesk.lp3isurabaya.ac.id/13…
Source: https://zone-xsec.com/mirror/id/704411
Attacker: FAKESITE
Target: e-katalog.lp3isurabaya.ac.id/1…
Source: https://zone-xsec.com/mirror/id/704410
Attacker: FAKESITE
Target: beasiswa.lp3isurabaya.ac.id
Source: https://zone-xsec.com/mirror/id/704409
Attacker: FAKESITE
Target: acak.lp3isurabaya.ac.id/1337.p…
Source: https://zone-xsec.com/mirror/id/704408
Attacker: FAKESITE
Target: absensi.lp3isurabaya.ac.id/133…
Source: https://zone-xsec.com/mirror/id/704407
Attacker: ./FreedomXploit
Target: dinsos.kendalkab.go.id
Source: https://zone-xsec.com/mirror/id/704406
Attacker: skk
Target: ojs.unitama.ac.id/readme.php
Source: https://zone-xsec.com/mirror/id/704405
Attacker: skk
Target: cbt.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704404
Attacker: skk
Target: classroom.fkunizar.ac.id/readm…
Source: https://zone-xsec.com/mirror/id/704403
Attacker: skk
Target: csl.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704402
Attacker: skk
Target: osce.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704401
Attacker: skk
Target: pskp.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704365
Attacker: skk
Target: ppd.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704360
Attacker: skk
Target: ba.fkunizar.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704359
Attacker: skk
Target: siakad.fkunizar.ac.id/readmi.p…
Source: https://zone-xsec.com/mirror/id/704358
Attacker: skk
Target: loa21.me-uii.ac.id/readmi.php
Source: https://zone-xsec.com/mirror/id/704357
Attacker: saTaoz
Target: lampung.bmkg.go.id/profil/?ase=readnews&etc=NEW…
Source: https://defacer.id/mirror/id/140514
Attacker: FAKESITE
Target: lp3isurabaya.ac.id/1337.php
Source: https://haxor.id/archive/mirror/214861
Attacker: FAKESITE
Target: lifeskill.lp3isurabaya.ac.id/1…
Source: https://haxor.id/archive/mirror/214860
Attacker: FAKESITE
Target: laporan.lp3isurabaya.ac.id/
Source: https://haxor.id/archive/mirror/214859
Attacker: FAKESITE
Target: kasir.lp3isurabaya.ac.id/1337….
Source: https://haxor.id/archive/mirror/214858
Attacker: FAKESITE
Target: helpdesk.lp3isurabaya.ac.id/13…
Source: https://haxor.id/archive/mirror/214857
Attacker: FAKESITE
Target: e-katalog.lp3isurabaya.ac.id/1…
Source: https://haxor.id/archive/mirror/214856
Attacker: FAKESITE
Target: beasiswa.lp3isurabaya.ac.id/
Source: https://haxor.id/archive/mirror/214855
Attacker: FAKESITE
Target: acak.lp3isurabaya.ac.id/1337.p…
Source: https://haxor.id/archive/mirror/214854
Attacker: FAKESITE
Target: absensi.lp3isurabaya.ac.id/133…
Source: https://haxor.id/archive/mirror/214853
Cybersecurity Attack Analysis Report: Government Websites Hacked via Web Defacement
Introduction
In recent months, several government and educational websites have fallen victim to web defacement attacks, a form of cyber intrusion that compromises the integrity of online platforms by replacing or altering the displayed web content. The attacks are often characterized by the intentional and unauthorized changes made to the visual appearance of the website, typically to convey a message, showcase the attacker’s capabilities, or for malicious purposes.
Analysis of Attacks
Summary of Attacks
1. Attackers:
– The attacks were carried out by various groups, including CyberTeam, FAKESITE, and skk.
2. Victim Countries and Affected Sectors:
Based on the reported websites, the analysis identifies the following victim countries and sectors:
– Colombia:
– Website: mesadeayuda.sdmujer.gov.co
– Sector: Government Assistance Services
– Bangladesh:
– Website: buliabazarcollege.edu.bd
– Sector: Education
– Indonesia:
– Multiple websites from lp3isurabaya.ac.id, with subdomains targeting various educational services (e.g., admission services, life skills program).
– Sector: Education
– Indonesia:
– Website: dinsos.kendalkab.go.id
– Sector: Social Welfare Services
– Indonesia:
– Various websites from fkunizar.ac.id, indicating a focus on educational and faculty management systems.
– Sector: Education
– Indonesia:
– Website: bmkg.go.id
– Sector: Meteorological Agency
Nature of the Attacks
– The attackers primarily exploited vulnerabilities in the platforms they targeted, leading to unauthorized access and subsequent modifications of the websites. These actions not only disrupt normal functions of the sites but also tarnish the reputation of the institutions affected.
– The use of defacement as a tactic suggests that the attackers aim to make a statement or demonstrate their capabilities. The cybercriminals behind these attacks often manipulate website content to display their message, which can range from political statements to anti-establishment sentiments.
Conclusion
The recent spate of web defacement attacks on government and educational websites across Colombia, Bangladesh, and Indonesia underscores the growing vulnerability of public sector online platforms to cyber threats. These incidents highlight the necessity for robust cybersecurity measures, including regular security audits, vulnerability assessments, and user education on safe internet practices.
It is crucial for affected institutions to take immediate action to restore their operations, secure their networks, and implement upgrades to prevent future occurrences. Additionally, collaboration between national cybersecurity agencies and educational institutions can strengthen the overall cyber defense mechanism against such disruptive attacks.
As we move forward, vigilance in the face of evolving cyber threats will be essential in safeguarding the integrity and availability of critical online services provided by governmental and educational sectors.