MyCert issues phishing and malware warning exploiting CrowdStrike incident


KUALA LUMPUR: The Malaysia Computer Emergency Response Team (MyCert) has issued a critical alert following reports of increased phishing attacks leveraging the recent CrowdStrike incident which caused a global IT outage.

These attacks use fraudulent domains, command-and-control (C2) Internet Protocol (IP) addresses and malware binaries to compromise systems and steal sensitive information, said MyCert on its website on Saturday (July 20).

It said the phishing domains mimics legitimate websites, deceiving users into unknowingly installing malware or disclosing personal credentials.

Meanwhile, attackers use C2 servers to maintain control over compromised devices and extract sensitive data.

Additionally, malicious software, delivered through websites or emails, exacerbates the threat landscape by executing harmful actions on infected devices, MyCert noted.

The agency has provided 30 potential indicators of compromise (IOC), including their value, type and additional information, available on its website.

"To safeguard your organisation against the recent surge in phishing attacks involving phishing domains, C2 IPs, and malware binaries, it is crucial to monitor and protect based on the provided IOCs.

"Generally, CyberSecurity Malaysia advises users to stay updated with the latest security announcements from vendors and follow best practice security policies to determine which updates should be applied," it added.

For further information and assistance, MyCert encourages the public to contact them through various communication channels, including email at (cyber999@cybersecurity.my), phone (1-300 88 2999 during business hours), mobile: (019-266 5850 for 24/7 call incident reporting) and social media platforms.

Mass cyber outage on Saturday (July 20) affected key institutions such as airlines, banks, media outlets and hospitals in several countries.

CrowdStrike Holdings Inc is an American cybersecurity technology company based in Austin, Texas. It provides penetration, workload, endpoint security, threat intelligence and cyberattack response services. – Bernama

Follow us on our official WhatsApp channel for breaking news alerts and key updates!

Next In Nation

Pontian crane collapse: Victim's father-in-law witnessed, recorded tragedy as it occurred
Two young girls killed, one injured after motorcycle crashes into tree in Jempol
Pontian crane collapse: DPM Fadillah calls for thorough probe by all relevant authorities
Asean condemns Myanmar hospital airstrike, urges halt to violence
Communication, trust key to helping students speak out, forum told
Penang Bomba finalising report on deadly Butterworth house fire
Any proposals to recognise UEC must align with the Constitution, says J-Kom DG
Internal investigation to be conducted following deadly incident at Tanjung Bin Complex, Pontian
Bahasa Melayu, English both crucial in AI, digital era, says Anwar
1MDB asset recovery: 12 artworks worth over US$30mil on way back to Malaysia

Others Also Read