Cyber Alerts
Alert on Potential Cyber Attack on Malaysian Domains
The National Cyber Coordination and Command Centre (NC4) monitors cyber threats in Malaysia and has observed an increase of cyber activities on Malaysian domains based on the current ongoing campaign. In this regard, NC4 reminds system and network administrators to immediately implement sufficient cyber security measures to ensure the systems and networks are secured at all times.
- First observed
- 11 Jun 2022
- Last checked
- 01 Aug 2026
- Evidence records
- 1
- Publication state
- Published
What happened?
Current assessment
The National Cyber Coordination and Command Centre (NC4) monitors cyber threats in Malaysia and has observed an increase of cyber activities on Malaysian domains based on the current ongoing campaign. In this regard, NC4 reminds system and network administrators to immediately implement sufficient cyber security measures to ensure the systems and networks are secured at all times.
Why it matters
Possible information leakage, web defacement and service disruption.
Who is affected?
Affected products and groups
No affected entity has been safely confirmed in the structured record yet.
What should you do now?
Actions from official guidance
For technical teams
- Organisations are advised to be vigilant and take the following actions: Official source
- Monitor your environment closely for any anomalies and mass scanning attempts; Ensure all your critical ICT assets are installed with the latest security patches and updates; Be wary of unsolicited emails that have links with/without attachments; Ensure that anti-virus/anti-malware signatures are up to date and functioning well; Review the logs of your firewalls and other security devices for anomalies from time to time; Review the configurations of your firewalls and other security appliances from time to time; Block or restrict access to every port such as port 3389 (RDP), port 5900 (VNC), port 22 (SSH) and services except for those that should be publicly available; Make sure logging of systems and servers are always enabled; Make sure your system password is strong and secured. Change the password if needed; Make sure the login pages for the system administrators are not publicly accessible; Perform regular backup of all critical data to minimise the impact of data or system loss and to help expedite the recovery process. Ideally, the backup must be done daily, on a separate media and stored offline at an alternate site; If you suspect any of your servers have been compromised, isolate the identified server immediately, reset all usernames and passwords and initiate incident handling; Perform hardening on all your Internet-facing applications; and Report any anomalies detected within your network and enterprise environment to NC4. Official source
Which sources support it?
Evidence and official sources
-
NACSA / NC4 Alerts and AdvisoriesOfficial sourceAlert on Potential Cyber Attack on Malaysian Domains
The National Cyber Coordination and Command Centre (NC4) monitors cyber threats in Malaysia and has observed an increase of cyber activities on Malaysian domains based on the current ongoing campaign. In this regard, NC4 reminds system and network administrators to immediately implement sufficient cyber security measures to ensure the systems and networks are secured at all times.
Published 11 Jun 2022 · Retrieved 01 Aug 2026