Home > News > Nation
Wednesday August 20, 2014 MYT 12:00:00 AM
Wednesday August 20, 2014 MYT 1:53:51 PM
by nicholas cheng
EXCLUSIVE: KUALA LUMPUR: The computers of high-ranking officials in agencies involved in the MH370 investigation were hacked and classified information was stolen.
The stolen information was allegedly being sent to a computer in China before CyberSecurity Malaysia – a Ministry of Science, Technology and Innovation agency – had the transmissions blocked and the infected machines shut down.
The national cyber security specialist agency revealed that sophisticated malware (malicious software),
disguised as a news article reporting that the missing Boeing 777 had been found, was e-mailed to the
officials on March 9, a day after the Malaysia Airlines plane vanished during its flight from Kuala Lumpur to Beijing.
Attached to the e-mail was an executable file that was made to look like a PDF document, which released the malware when a user clicked on it.
A source told The Star that officials in the Department of Civil Aviation, the National Security Council and Malaysia Airlines were among those targeted by the hacker.
“We received reports from the administrators of the agencies telling us that their network was congested with e-mail going out of their servers,” said CyberSecurity Malaysia chief executive Dr Amirudin Abdul Wahab.
“Those e-mail contained confidential data from the officials’ computers, including the minutes of meetings and classified documents. Some of these were related to the MH370 investigation.”
About 30 PCs were infected by the malware, CyberSecurity Malaysia said. It discovered that the malware was sending the information to an IP address in China and asked the Internet service provider in that region to block it.
An IP (Internet Protocol) address is a unique numerical label assigned to each device on a computer network.
“This was well-crafted malware that antivirus programs couldn’t detect. It was a very sophisticated attack,” Amirudin said.
The agency and police are working with Interpol on the incident.
CyberSecurity Malaysia suspects the motivation for the hacking was the MH370 investigation.
“At that time, there were some people accusing the Government of not releasing crucial information,” Amirudin said.
“But everything on the investigation had been disclosed.”
Flight MH370 with 239 on board went missing on March 8 about 45 minutes after take-off.
Expert: Spearphishing needs lots of planning and work
Tags / Keywords:
Courts & Crime, MH370, Spear Phishing, CyberSecurity Malaysia, Hacking, hacker
MH370 crash: Answers can take years to emerge
Liow to lead team for talks on MH370
MH370 search: A-G and ICAO discussing black box custody, says Hisham
'Overwritten black box recordings may not be heard'
Students to run against human trafficking
‘MH370 in southern Indian Ocean’
Marine cops foil smuggling bid, seize RM1.4 worth of illegal cigarettes
Ban on non-locals as main cooks of hawker food in Penang will begin in 2016
Former resort worker to hang for killing manager
Muhdalena who escaped after giving birth caught 211km away
Iraqi security forces and Kurds gain ground against Islamic State
Manchester City beaten at West Ham, Southampton win again
Copyright © 1995-2014 Star Publications (M) Bhd (Co No 10894-D)