Dark Pink uses a modular toolset (Cucky, Ctealer, TelePowerBot, KamiKakaBot) for data theft and espionage, with cross-language tooling and registry-based persistence. The group relies on spear-phishing with ISO-delivery, Telegram-based command execution, and H…
Tag: INDONESIA
Resecurity reports an alarming rise in ransomware targeting the energy sector worldwide, including nuclear facilities and related research entities, with attackers expanding across North America, Asia, and the EU. The article highlights evolving tactics such a…
PT Pelabuhan Indonesia (Persero), trading as Pelindo, is Indonesian state-owned port operation company that offers an integrated port service throughout Indonesia.
A spike in phishing scams targets USPS customers with SMS messages that spoof the postal service and direct users to deceptive domains to harvest personal and financial data, as well as targeting other national postal services. The operation uses USPS-branded …
Dark Pink APT Group (Saaiwc) is a Southeast Asia–focused cyber-espionage actor noted for stealthy campaigns, custom malware, and targeted operations across government, military, and educational sectors. The group relies on spear-phishing, bespoke tools like Te…
In July 2023 attackers used stolen GitHub personal access tokens to push malicious commits impersonating Dependabot, adding a workflow (hook.yml) that exfiltrated repository secrets to hxxps://send[.]wagateway.pro/webhook and appending obfuscated JavaScript th…
PT Smartfren Telecom Tbk, together with its subsidiaries, provides telecommunication services in Indonesia. The company develops, builds, owns, operates, leases, and maintains facilities and network to operate telecommunications network and services.
AMBERSQUID is a cloud-native cryptojacking operation that abuses AWS services such as Amplify, Fargate, and SageMaker to mine cryptocurrency at scale, often without triggering resource approvals. The operation demonstrates how attackers can leverage multiple c…
PT Cahaya Benteng Mas was originally an individual business pioneered by Mr. Indra Iswaratioso in 1974. Starting with just marketing galvanized zinc products for AC ducting around Jakarta. Until 1981, a business entity was established under the name PT Cahaya Benteng Mas to further develop the business that has been carried out so far. But the products sold are still limited to galvanized zinc plate products. Along with the rapid growth of the business run and see the opportunities that are still wide open, then in 1994 CBM began to enter the era of Manufacturing. At the beginning by buying a plot of land in the Cikarang industrial area and bringing in roofing machines and shearing machines in the same year. Thus began the era of manufacturing with its first product in the form of a roof and Wall waves named Cahayadek. At that time, product marketing was still around Jabodetabek. From then on CBM products began to spread throughout Indonesia. Started in 1995, by opening a branch office in Bandung which then continued to grow until in 2010 CBM built an office, factory and warehouse in Bandung. Continued by building marketing distribution cooperation with partners throughout Indonesia which until now CBM products have been spread to all corners of Indonesia. More than two decades already PT. Cahaya Benteng Mas (CBM) has been producing and supplying roof covering products with materials supplied by PT. NS BLUESCOPE INDONESIA. We are ready to provide the best service in accordance with the needs of consumers, including : cut and roll services, bending Services, round and square wave services. The materials we use are the best materials according to ISO standards, so as to create superior products. https://cahayabentengmas.co.id/
Phishing-as-a-service kit 16shop enabled operators to deploy mass phishing sites targeting major brands and collect victims’ data for years, with administration and servers ultimately taken down in a Trend Micro–Interpol cooperation. The operation involved clo…
Resecurity uncovered a large-scale smishing campaign called Smishing Triad that impersonates postal services to harvest PII and payment data from US and international victims, delivered primarily via iMessage from compromised iCloud accounts. The operation fun…
Victim: first-resources-ltd Country : ID Actor: cloak Source: Discovered: 2023-08-24 07:41:58.338920 Description: country: Indonesia…
United Tractors United Tractors is a heavy equipment distribution company headquartered in Jakarta, Indonesia.
Big Head Ransomware is a nascent ransomware family first seen in May 2023, consisting of multiple variants and an elusive actor behind it. It uses deceptive methods such as fake Windows updates and malvertising, communicates with victims via Gmail and Telegram…
Trend Micro discovered two related Android malware families—CherryBlos and FakeTrade—used in cryptocurrency-mining and financial scam campaigns that distribute malicious APKs via fake social posts and phishing websites. CherryBlos abuses Android Accessibility …