CyberSecurity Malaysia
National cyber agency · publicly described the 9 March intrusion in August 2014
National cyber agency (public account)
Confirmed. Agency under the then Ministry of Science, Technology and Innovation. CEO Amirudin Abdul Wahab is the named source for the 9 March spear-phish of investigation officials. Digital forensics support to the affected departments; work with police and Interpol.
CSM is the primary for the official-network intrusion. It is not the author of the MyCERT public advisories, which sit in the CERT lane, but both are Malaysian government cyber organs in the same months. Use CSM for what it actually said: sophisticated malware, about thirty PCs, confidential files including MH370-related minutes, traffic toward a China IP, machines shut, Chinese ISPs asked to block. Do not use it as a finding on attribution or on whether radar was in the take.
Sources
- The Star, 20 Aug 2014, quoting Amirudin Abdul Wahab
Related
Investigation networks spear-phished the day after MH370 vanished
CyberSecurity Malaysia · ~30 PCs · disclosed 20 August 2014
MyCERT: MH370-themed backdoor and fake-transcript spear-phish
MA-381 · 24 March 2014 · MA-386 · 18 April 2014
Two waves of MH370-themed cyberattacks
9 March official-network intrusion · March–April public malware lures