Attacked By The Most Violent Ransomware Group, Bank Indonesia Successfully Recovers

JAKARTA - The case of data leakage is now happening again in Indonesia, the worst thing this time is that Bank Indonesia is the victim. An alleged culprit is a group of hackers dubbed the Conti ransomware gang.

The news was first obtained from the upload of a dark web security researcher known as DarkTracer, on his Twitter account @darktracer_int.

"[ALERT] The Conti ransomware gang has announced "BANK OF INDONESIA" is on the victim list", tweeted @darktracer_int.

Along with his tweet, @darktracer_int also shared a screenshot of the site claimed to be the dark web belonging to the Conti ransomware gang.

Various file views are visible and named corp.bi.go.id. In the upload, it is stated that the total data reached 487.09 MB with as many as 838 files obtained by them. It is not known for sure whether this is the only data that has been obtained, or if there are others.

The entire data is claimed to have been taken from an open server owned by Bank Indonesia, namely www.bi.go.id. The Conti ransomware gang is a group based in Russia under the pseudonym Wizard Spider and is called the most violent of the bunch.

In response to this, the Head of the Communications Department of Bank Indonesia, Erwin Haryono, acknowledged that the attack had occurred, and it happened last month.

"Bank Indonesia realized that there was a ransomware hack last month, last month's attack. It made us realize that it was real and we were hit", Erwin said to the media, Thursday, January 20.

Now, Erwin said that Bank Indonesia had carried out recovery and mitigation for all employees and offices when the attack occurred last month so that an incident like this does not happen again.

"We are tightening standards for IT technology protocols. Second, develop stronger cybersecurity technology. Improved framework coordination at the employee level. So with these steps Bank Indonesia then wants to say and ensure that Bank Indonesia's operational services are not disrupted. Stay under control, support community economic activities", he said.

Erwin said he would also continue to test the infrastructure to ensure the payment system runs safely.