Cyber Alerts

Heightened Alert On Cyber Activity Towards Malaysia

Verified Officially confirmed

The National Cyber Coordination and Command Centre (NC4), a national centre that continuously monitors the cyber threat landscape in Malaysia has observed an increased number of cyber activities within this region targeting the ICT infrastructure in Malaysia. NC4 would like to remind System Administrators and Network Administrators to implement sufficient cyber security measures to ensure systems and networks are secured at all times.

First observed
15 Apr 2022
Last checked
01 Aug 2026
Evidence records
1
Publication state
Published

What happened?

Current assessment

The National Cyber Coordination and Command Centre (NC4), a national centre that continuously monitors the cyber threat landscape in Malaysia has observed an increased number of cyber activities within this region targeting the ICT infrastructure in Malaysia. NC4 would like to remind System Administrators and Network Administrators to implement sufficient cyber security measures to ensure systems and networks are secured at all times.

Why it matters

Information leakage, web defacement, malware infection, integrity of information compromised and service disruption.

Who is affected?

Affected products and groups

No affected entity has been safely confirmed in the structured record yet.

What should you do now?

Actions from official guidance

For technical teams

  1. NC4 urges organisations to remain vigilant and take the following actions: Official source
  2. Perform security review on critical ICT assets including applying latest security patches and updates; Provide periodic awareness and alerts to all users in the organisation regarding cyber security best practices; Be wary of unsolicited mails and links with/without attachments; Ensure that anti-virus/anti-malware signatures are up to date and functioning; Never follow links from untrusted sources, which could possibly lead to security attacks, computer virus infection or even identity or account information theft; Disconnect the computer from the Internet when it is not in use; Review the firewall logs and other security devices for anomalies from time to time; Review the firewall and other security appliance configurations from time to time; Block or restrict access to every port such as port 3389 (RDP), port 5900 (VNC) and port 22 (SSH) and services except for those that should be publicly available; Make sure logging of systems and servers are always enabled; Make sure the system password is strong and secured. Perform credential access review and change the password if needed; Make sure that the login pages for System Administrators are not publicly accessible; Perform regular backups of all critical information to limit the impact of data or system loss and to help expedite the recovery process. Ideally, the backup must be performed daily, on a separate media and stored offline at an alternate site; Shut down all workstations before leaving the office; Perform hardening on all Internet facing applications; Monitor the environment closely for any anomalies; Make use of the Indicator of Compromise (IOC) that was published on the NC4 portal on a daily basis; If a server is suspected to be compromised, isolate the server, reset all usernames and passwords then initiate incident handling; and Report any anomalies within the organisation’s network and enterprise environment to NC4. Official source

Which sources support it?

Evidence and official sources

  1. NACSA / NC4 Alerts and AdvisoriesOfficial source
    Heightened Alert On Cyber Activity Towards Malaysia

    The National Cyber Coordination and Command Centre (NC4), a national centre that continuously monitors the cyber threat landscape in Malaysia has observed an increased number of cyber activities within this region targeting the ICT infrastructure in Malaysia. NC4 would like to remind System Administrators and Network Administrators to implement sufficient cyber security measures to ensure systems and networks are secured at all times.

    Published 15 Apr 2022 · Retrieved 01 Aug 2026