CURRENT

MyCERT issues alert on phishing, malware exploiting CrowdStrike incident

20 Jul 2024, 9:16 AM
MyCERT issues alert on phishing, malware exploiting CrowdStrike incident

KUALA LUMPUR, July 20 — The Malaysia Computer Emergency Response Team (MyCERT) has issued a critical alert following reports of increased phishing attacks leveraging recent CrowdStrike incidents.

Its website states that these attacks use fraudulent domains, command-and-control (C2) Internet protocol (IP) addresses, and malware binaries to compromise systems and steal sensitive information.

The phishing domains mimic legitimate websites, deceiving users into unknowingly installing malware or disclosing personal credentials.

Meanwhile, attackers use C2 servers to maintain control over compromised devices and extract sensitive data.

Additionally, malicious software delivered through websites or emails exacerbates the threat landscape by executing harmful actions on infected devices.

MyCERT has provided 30 potential indicators of compromise (IoC), including their value, type, and additional information, available on its website.

“To safeguard your organisation against the recent surge in phishing attacks involving phishing domains, C2 IPs, and malware binaries, it is crucial to monitor and protect based on the provided IoCs.

“Generally, CyberSecurity Malaysia advises users to stay updated with the latest security announcements from vendors and follow best practice security policies to determine which updates should be applied,” it said.

For further information and assistance, MyCERT encourages the public to contact them through various communication channels, including email (cyber999@cybersecurity.my), phone (1-300-88-2999 during business hours, mobile: +60 19 2665850 for 24/7 call incident reporting), its website, and social media platforms on Facebook and X (formerly Twitter).

Yesterday, the media reported that a mass cyber outage affected key institutions such as airlines, banks, media outlets, and hospitals in several countries.

CrowdStrike Holdings Inc. is an American cybersecurity technology company based in Austin, Texas. It provides penetration, workload, endpoint security, threat intelligence and cyberattack response services.

— Bernama

What do you think?

Latest
MidRec
Media Selangor
About Us

Media Selangor Sdn Bhd (MSSB), a subsidiary of Menteri Besar Selangor Incorporated (MBI), is the official media agency of the Selangor State Government. In addition to the Media Selangor news portal (formerly known as Selangorkini & Selangor Journal), Media Selangor also publishes newspapers in Mandarin, Tamil, and English.