The Billbug espionage group has targeted various organizations within Southeast Asia from August 2024 to February 2025, employing custom tools for cyber intrusions. Key targets included a government ministry, an air traffic control organization, and more, acroâŚ
Tag: INDONESIA
This article discusses the malicious use of a subscription service called Crypters And Tools, enabling cybercriminals to generate malware loaders. Various hacker groups, including PhaseShifters, TA558, and Blind Eagle, utilize this service to conduct cyber attâŚ
Here is the summarized report on the hacked websites, categorized by attacker: — Attacker: 0x1998 Target: https://sansalvadoreste.gob.sv Source: zone-h.org/mirror/id/41347695 Victim Country: El Salvador Sector: Government – The target appears to be a government website, indicating potential intere…
Keypoints: Indonesia is listed among the countries experiencing ransomware activity, accounting for 0.49% of global incidents, indicating a tangible risk from groups like NightSpire. NightSpire, a new ransomware group active since early 2025, exploits vulnerabilities like CVE-2024-55591 in FortiGate…
Keypoints: Indonesia is directly targeted through localized phishing emails in the Indonesian language, indicating specific intent to breach Indonesian systems, especially in healthcare and pharmaceutical sectors. A new sophisticated remote access trojan (RAT) called ResolverRAT was discovered targe…
Here is the organized output based on the provided hacking report list: Attacker: CaptainSmok3r Target: https://www.bkf.gov.bd Source: zone-h.org Victim Country: Bangladesh Sector: Government Finance – The attack targets the Bangladesh Financial Intelligence Unit, crucial for monitoring and reportin…
Keypoints: Indonesia is directly impacted, as shown by the 2024 breach of its Temporary National Data Center, highlighting urgent cybersecurity vulnerabilities. ASEANâs rapid digital transformation has led to a sharp rise in organized cybercrime, including ransomware attacks and transnational scams….
The NightSpire ransomware group has emerged in early 2025, rapidly targeting small to medium-sized enterprises through the exploitation of known vulnerabilities. Their method includes a double extortion model, demanding ransoms post data exfiltration. AffectedâŚ
Summary: Researchers have uncovered a sophisticated remote access trojan named ResolverRAT, primarily targeting the healthcare and pharmaceutical sectors through phishing attacks. The malware utilizes fear-based language in localized emails to induce urgency and uses advanced techniques to evade det…
Summary: A new remote access trojan (RAT) named ‘ResolverRAT’ is being used to target healthcare and pharmaceutical sectors globally through phishing emails. It employs advanced techniques to evade detection and is capable of exfiltrating data while running entirely in memory. The malware’s distribu…
Summary: A sophisticated new malware family named ResolverRAT has emerged, primarily targeting organizations in the healthcare and pharmaceutical sectors. This advanced malware utilizes in-memory execution, layered evasion techniques, and complex infrastructure to evade detection and facilitate atta…
Summary: Southeast Asia’s rapid digital transformation is leading to an alarming rise in cybercrime, which threatens national security and public trust. Although ASEAN governments are beginning to respond, they must enhance their cooperation and legal frameworks to combat these evolving threats effe…
Babuk, originally infamous for its ransomware attacks, has evolved into Babuk2 and introduced a hybrid model focusing on data theft and extortion. Despite claims of significant data breaches, doubts about its capabilities exist as many leaks appear recycled frâŚ
Hereâs the organized report based on the details provided: Attacker: Drakonov – Target: reynosa.gob.mx – Source: zone-h.org – Victim Country: Mexico – Sector: Local Government – The site represents the municipality of Reynosa, indicating a breach in local governance and public service infrastructure…
Attacker: haxorqt Target: jurnal.kemenkopmk.go.id/raw.htm Source: Link Victim Country: Indonesia Sector: Government (This site relates to the Ministry of Cooperatives and Small and Medium Enterprises) Description: A vulnerability was exploited on the Indonesian government portal, targeting essential…