03/04/2024
𝐆𝐨𝐯𝐞𝐫𝐧𝐦𝐞𝐧𝐭 𝐀𝐠𝐞𝐧𝐜𝐢𝐞𝐬 𝐔𝐧𝐝𝐞𝐫 𝐒𝐢𝐞𝐠𝐞: 𝐂𝐲𝐛𝐞𝐫 𝐀𝐭𝐭𝐚𝐜𝐤𝐬 𝐚𝐧𝐝 𝐃𝐚𝐭𝐚 𝐁𝐫𝐞𝐚𝐜𝐡𝐞𝐬 𝐢𝐧 𝐭𝐡𝐞 𝐏𝐡𝐢𝐥𝐢𝐩𝐩𝐢𝐧𝐞𝐬
𝐒𝐮𝐦𝐦𝐚𝐫𝐲:
𝟏. 𝐂𝐲𝐛𝐞𝐫𝐚𝐭𝐭𝐚𝐜𝐤 𝐨𝐧 𝐃𝐎𝐒𝐓 𝐒𝐞𝐫𝐯𝐞𝐫𝐬: Ph1ns, a hacking group, claimed responsibility for a cyber attack on the Department of Science and Technology (DOST) servers. They gained access to critical infrastructure, encrypted the Domain Controller, and deleted 25 Terabytes of data, causing widespread disruption. The hackers left a message criticizing political dynasties and oligarchic control in the Philippines, signing off with , inviting others to join their cause against corruption and inequality.
𝟐. 𝐃𝐎𝐒𝐓 𝐄𝐦𝐚𝐢𝐥 𝐋𝐞𝐚𝐤𝐚𝐠𝐞: DOST confirmed a cybersecurity breach involving the leakage of email addresses of about 1,000 experts and clients registered in the agency's OneExpert portal. An administrator account was compromised, leading to the leak. The leaked data also included information from other agencies like the Philippine Statistics Authority and Forensics Group of the Philippine National Police.
𝟑. 𝐇𝐚𝐜𝐤𝐞𝐫𝐬 𝐋𝐨𝐜𝐤 𝐃𝐎𝐒𝐓 𝐨𝐮𝐭 𝐨𝐟 𝐒𝐲𝐬𝐭𝐞𝐦: Local hackers compromised DOST systems, stealing 2TB worth of data. This incident was attributed to a movement called " " organized by "ph1ns," allegedly protesting Charter change. DOST, in collaboration with the Department of Information and Communications Technology (DICT), is working to address vulnerabilities and reinforce cybersecurity measures.
𝟒. 𝐆𝐨𝐯𝐞𝐫𝐧𝐦𝐞𝐧𝐭 𝐑𝐞𝐬𝐩𝐨𝐧𝐬𝐞: DOST and DICT are actively collaborating to monitor and address the situation. Preventive measures have been implemented, and the National Computer Response Team is involved in remedial and mitigating processes. The government does not negotiate with threat actors and emphasizes a firm stance against cyber threats.
𝐖𝐡𝐚𝐭 𝐲𝐨𝐮 𝐧𝐞𝐞𝐝 𝐭𝐨 𝐤𝐧𝐨𝐰:
• The cyber attack targeted DOST servers, leading to data deletion and system encryption.
• Ph1ns, the hacking group responsible, criticized political corruption and inequality in their message.
• DOST suffered email leakage, affecting about 1,000 experts and clients.
Collaboration between DOST and DICT is underway to address vulnerabilities and enhance cybersecurity measures.
• The government emphasizes a firm stance against cyber threats and does not negotiate with threat actors.
𝐑𝐞𝐟𝐞𝐫𝐞𝐧𝐜𝐞𝐬:
https://mb.com.ph/2024/4/3/hackers-strike-department-of-science-and-technology-servers
https://newsinfo.inquirer.net/1845437/dost-also-hacked-email-addresses-leaked
https://www.gmanetwork.com/news/topstories/nation/902556/cyberattack-locks-dost-out-of-system-hackers-steal-2tb-worth-of-data/story/