Connect with us

Hi, what are you looking for?

HEADLINES

Philippines targeted in latest cyber attack by Hussarini malware

The Hussarini, a malware that exploits a vulnerability in Microsoft Office, has resurged in the Philippines, according to Fortinet. Also known as “Sarhurst”, this backdoor malware was last seen in 2014 targeting various countries in Southeast Asia.

Fortinet’s FortiGuard Labs identified Hussarini in a malicious document with the politically-themed filename “Draft PH-US Dialogue on Cyber Security.doc”. This malware is classified as an Advanced Persistent Threat (APT) attack, and attempts unauthorized entry into computer networks to potentially steal data. This infected document takes advantage of the vulnerability CVE-2017-11882. (Note: Microsoft has issued a patch for this vulnerability and users should download it to prevent attacks)

Analysis by FortiGuard Labs researchers indicates that it is by no coincidence that cybercriminals are targeting Philippines in the renewed APT attack campaign. In 2016, the Philippines government suffered a major attack on its Commission on Elections database that compromised personal information of over 50 million voters. Cybercriminals had exploited known website vulnerabilities to launch their attacks. That same year, a cyber attack on the Bangladesh central bank led to loss of US$81 million that was illegally transferred to a Philippines commercial bank. Security lapses failed to flag suspicious transactions and stop the movement of stolen money through bank networks.

Humans are the weakest link in the information security chain. The Philippines, with a huge number of internet users with little to no knowledge about cybersecurity, is very vulnerable to cyber attacks. There are three ways to bolster security. Firstly, the best way for companies to avoid becoming victims of malware is employee security awareness so they won’t easily fall prey to phishing attacks. The second way is to practice good security hygiene, ensuring that computers automatically get the latest updates from their software and OS vendors. Lastly, organizations and computer users need to deploy the appropriate security technologies to block these attacks.

“It is very important for the Philippines both in the government and in the business sector to integrate cybersecurity into its risk management practices,” said David Maciejak, Director of Security Research for Fortinet. “The threat landscape is constantly evolving and attacks are getting more complicated, resulting in information leaks and financial loses. As a positive step, the Philippines’ Department of Information and Communications Technology (DICT) has unveiled its National Cybersecurity Plan 2022 to address cybersecurity vulnerabilities and tighten security measures. Knowing that the risks exist and promoting best practices for handling those risks will minimize the negative impact of these attacks to businesses and to the government.”

Advertisement. Scroll to continue reading.

 

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

These campaigns mix convincing visuals, well known hosting platforms like Discord, and regularly updated malware kits to evade detection by users and detection tools.

HEADLINES

As cyber threats become more sophisticated, cloud and application security can no longer be treated as a compliance exercise. It must be seen as...

HEADLINES

Designed to secure the full AI stack—from data center infrastructure to applications and large language models (LLMs)—the solution delivers advanced AI threat defense with...

HEADLINES

This initiative is particularly critical as organizations in the Philippines face an increasing shortage of skilled cybersecurity professionals.

HEADLINES

Organizations must implement a risk assessment methodology that is aligned with their operational realities – by establishing a clear asset baseline, organizations can engage...

APPS

Experts suggest that the goal of the attackers is to steal cryptocurrency assets from residents of Southeast Asia and China. Users in the Philippines...

White Papers

Nearly 50% of companies paid the ransom to get their data back – the second highest rate of ransom payment for ransom demands in...

GAMING

To help players stay safe, Kaspersky is launching “Case 404” — an interactive cybersecurity game that teaches Gen Z how to recognize threats and protect their...

Advertisement