iTnews Asia
  • Home
  • News
  • Security

Bulk of Indonesia data hit by cyberattack not backed up

Bulk of Indonesia data hit by cyberattack not backed up

Incident disrupted immigration and operations at major airports.

By Staff Writer on Jul 1, 2024 12:21PM

The bulk of Indonesian government data affected by a recent ransomware cyberattack was not backed up, officials said, in an incident that has exposed the lack of preparations for such an attack in Southeast Asia's biggest economy.

Last week's cyberattack, the worst in the country in recent years, has disrupted multiple government services including immigration and operations at major airports.

The government has said more than 230 public agencies, including ministries, had been affected, but has refused to pay an US$8 million (S$10 million) ransom demanded to retrieve the encrypted data.

Hinsa Siburian, an official who chairs Indonesia's cyber security agency known by its acronym BSSN, said 98 percent of the government data stored in one of the two compromised data centres had not been backed up.

"Generally we see the main problem is governance and there is no back-up," he told a parliamentary hearing late on Thursday.

Some lawmakers dismissed the explanation.

"If there is no back up, that's not a lack of governance," said Meutya Hafid, the chair of the commission overseeing the incident. "That's stupidity".

A BSSN spokesperson did not immediately respond when asked whether it would be possible to recover the encrypted data.

Budi Arie Setiadi, Indonesia's communications minister, said the ministry had back-up capacity at the data centres, but it was optional for government agencies to use the service.

He said government agencies did not back up the data due to budget constraints, adding this would soon be made mandatory.

The cyberattack has sparked criticism of the minister on social media in Indonesia.

Digital advocacy group SAFEnet started a petition calling for Budi's resignation, citing his lack of responsibility over repeated cyber attacks.

Budi sent Reuters a separate petition calling him to stay on as minister when asked for comment on calls for him to resign.

The minister told parliament that a "non state actor" seeking money was believed to be behind the attack and that government services should be fully restored by August.

Ransomware attackers use software to encrypt data and demand payment from victims for restoring the data. Indonesia has said the attacker in this particular incident used an existing malicious software called Lockbit 3.0.

To reach the editorial team on your feedback, story ideas and pitches, contact them here.
Copyright Reuters
© 2019 Thomson Reuters. Click for Restrictions.
Tags:
national cyber and crypto agency pusat data nasional security

Related Articles

  • The best way to outsmart your threat actors is to think like one
  • How cybercriminals are exploiting LLMs to harm your business
  • Is identity now the next parameter of cybersecurity breaches?
  • Cybersecurity threats CISOs should be most worried about in 2025
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

The best way to outsmart your threat actors is to think like one

The best way to outsmart your threat actors is to think like one

What are the most pressing cyber security concerns going into 2025?

What are the most pressing cyber security concerns going into 2025?

Malaysia ramps up cyber security defense to stem rising fraud and ransomware attacks

Malaysia ramps up cyber security defense to stem rising fraud and ransomware attacks

How cybercriminals are exploiting LLMs to harm your business

How cybercriminals are exploiting LLMs to harm your business

All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of Lighthouse Independent Media's Privacy Policy and Terms & Conditions.