Ransomware Attacks Are Increasingly Violent, ITSEC Asia Reveals Its Mitigation Steps

JAKARTA - Indonesia is currently being enlivened by cases of data leakage and ransomware attacks against the National Data Center (PDNS) 2, which left several community services paralyzed for several days.

The Brain Cipher ransomware group has also claimed that they were responsible for the attack, and reportedly demanded a ransom of USD 8 million or approximately IDR 131 billion.

With a large number of public data managed on its servers, PDN is one of the agencies that is very vulnerable to cyber attacks.

President Director of PT ITSEC Asia Tbk, Joseph Lumban Gaol, also said that it is important for industries, businesses and agencies to continue to update their security systems, especially with the many types and variations of cyber threats.

In determining the right Response Plan, Joseph Lumban Gaol explained that paying the ransom to the perpetrators is not the only solution that can be chosen. Because, there is no guarantee that the data will return.

As one of the largest cybersecurity companies in Asia Pacific, PT ITSEC Asia Tbk urges stakeholders in various industrial agencies and sectors regarding mitigation measures that can be taken in the face of potential hacks.

Control the spread of Malware

The first step that must be taken when a data leak occurs is to isolate affected systems from the network to prevent the spread of malware or worse Unauthorized Access.

Identifying The Damage

Once the hack is controlled, conduct an in-depth assessment to see how severe the hack is. Systems and data affected by the attack need to be identified using forensic tools and techniques to understand the nature, type, cause, and perpetrators of the hack.

Communicate With Service Users

One form of responsibility steps that service providers need to take is notification and education to users. This transparent notification is important so that users know that their data has been affected.

Develop a Redundant/Duplicity System

One aspect that needs to be considered by the company or agency in managing its data at the data center is the backup system (Redudance).

This reserve is to ensure data and services can be accessed under any circumstances.

Improving A Sustainable Cyber Security System

Finally, increase the company's cybersecurity infrastructure and agencies gradually and thoroughly. Implement security measures that have been updated such as Multi-Factor Authentication (MFA), Network Segmentation, and Good Threat Detection.

Not to forget to provide training to members and employees in stages about awareness of the importance of cybersecurity.

Perform Security Audit and regularly assess vulnerability (vulnerability assessments) to identify and address new threats and threats.