Last week, information security specialist Bob Diachenko from Security Discovery and CompariTech journalist Paul Bischoff…
The leak includes names, national IDs, tax registration information, mobile phone numbers, and for some citizens, photographs and salary information are also provided.
Although the leak is believed to contain outdated information and death tolls (279 million more than the current Indonesian population of 273 million), the Indonesian media found the data to be reliable.
Ultimately, the authenticity of the leak was confirmed by the Indonesian authorities.
It is assumed that the information may have been leaked from BPJS, but this has not yet been confirmed.
The country’s government also ordered ISPs to block access to the RAID forum and the URLs bayfiles.com, mega.nz, and anonfiles.com, where samples of the stolen data were posted. This blocking has already been ridiculed on the network, since the blacklist is based on DNS, and the blocking can be bypassed using a proxy or VPN.
The announcement for the sale of the data has reportedly already been removed from the forum, shortly after the government’s ban. It is unclear if Kotz deleted the topic himself, or if the forum administrators did it.
But while Jakarta officials have confirmed the leak, rumors and hints of a massive hacking of the Indonesian government have been circulating since early 2020. At the time, another attacker disclosed data on 2.3 million Indonesian voters and similarly claimed to own a database containing the personal records of over 200 million Indonesians.
The General Election Commission (KPU) confirmed the authenticity of a sample of 2.3 million people, which was traced back to 2013, but did not confirm a larger violation.
However, let me remind you that recently we wrote that Hackers are driven into underground: three major hack forums banned advertising of ransomware.
Kurlibat.xyz is a site that tries to trick you into clik to its browser notifications…
Initiateintenselyrenewedthe-file.top is a domain that tries to trick you into clik to its browser notifications…
Wotigorn.xyz is a site that tries to force you into subscribing to its browser notifications…
Initiateintenselyprogressivethe-file.top is a domain that tries to force you into clik to its browser notifications…
Nuesobatoxylors.co.in is a domain that tries to trick you into subscribing to its browser notifications…
Helistym.xyz is a site that tries to force you into clik to its browser notifications…