Malaysia

MyCERT warns of phishing attacks taking advantage of CrowdStrike chaos

Cybersecurity agency says attackers compromise systems, steal sensitive information.

Updated 2 years ago · Published on 20 Jul 2024 6:17PM

MyCERT warns of phishing attacks taking advantage of CrowdStrike chaos
The Malaysia Computer Emergency Response Team says phishing domains mimic legitimate websites, deceiving users into unknowingly installing malware or disclosing personal credentials. – Unsplash pic, July 20, 2024.

THE Malaysia Computer Emergency Response Team (MyCERT) has issued a critical alert following reports of increased phishing attacks leveraging recent CrowdStrike incidents.

On its website MyCERT warned that these attacks use fraudulent domains, command-and-control (C2) internet protocol (IP) addresses and malware binaries to compromise systems and steal sensitive information.

MyCERT said the phishing domains mimic legitimate websites, deceiving users into unknowingly installing malware or disclosing personal credentials.

It said attackers use C2 servers to maintain control over compromised devices and extract sensitive data.

Additionally, malicious software, delivered through websites or emails, increases the threat landscape by executing harmful actions on infected devices, MyCERT said.

MyCERT provided 30 potential indicators of compromise (IOC), including their value, type, and additional information, available on its website.

“To safeguard your organisation against the recent surge in phishing attacks involving phishing domains, C2 IPs, and malware binaries, it is crucial to monitor and protect based on the provided IOCs.

“Generally, CyberSecurity Malaysia advises users to stay updated with the latest security announcements from vendors and follow best practice security policies to determine which updates should be applied,” it said on its website.

For further information and assistance, MyCERT encourages the public to contact them through various communication channels, including email ([email protected]), phone (1-300-88-2999 during business hours, mobile: +60 19 2665850 for 24/7 call incident reporting), and social media platforms (Website: MyCERT; Twitter: MyCERT on Twitter; Facebook: MyCERT on Facebook).

Yesterday, the media reported that a mass cyber outage affected key institutions such as airlines, banks, media outlets, and hospitals in several countries.

CrowdStrike Holdings Inc is an American cybersecurity technology company based in Austin, Texas. It provides penetration, workload, endpoint security, threat intelligence and cyber attack response services. – July 20, 2024.

Spotlight

Malaysia

Zahid: BN’s Unity Government pact ends with parliament’s dissolution

Malaysia

IGP: Negeri Sembilan remains calm amid disputed ruler proclamation

By Ian McIntyre

Malaysia

Families seek answers as 55 Malaysians remain missing in Nepal floods

Malaysia

Four foreign men held in raid on KL ‘same-sex’ entertainment centre

Malaysia

PH Melaka keeps eight seats for Amanah as state poll talks near finalisation

World

Bangkok floodwaters recede but heavy rain threat remains

Malaysia

Malaysia Airlines team did not know MH370 had turned back in crucial first hours

Malaysia

Anwar: Respect for King’s decision does not bar legal advice on Najib

World

ICC panel found no misconduct by Karim Khan, report says

You may be interested

Malaysia

Budget 2027 should address stagnant middle-income wages, says Tengku Zafrul

Malaysia

The three ‘wild cards’ in the coming general election

Malaysia

Student detained to assist probe into Kuala Pilah student’s death - Fadhlina

By Alfian Z.M. Tahir

Malaysia

Foreigners make up bulk of cannabis smuggling cases at KLIA

Malaysia

Hostel rule violation emerges as possible motive in Kuala Pilah student’s death

Malaysia

Melaka PRN: PN considering using PAS logo

Malaysia

JAKIM reviews concerns over deputy minister’s alleged links to New Age Movement

By Alfian Z.M. Tahir

Malaysia

80-year-old man found dead after being trapped in Raub house fire