Cyber Alerts

High Alert on Phishing Attacks and Web Defacement Based on Current National Health & Political Situation

Verified Officially confirmed

National Cyber Security Agency (NACSA), National Security Council (NSC) always monitor the current cyber threat level in Malaysia. It has come to our attention of ongoing scam campaigns and phishing attacks leveraging the current Coronavirus (COVID-19) global scale health crisis to steal sensitive information and delivering malware. NACSA has also discovered that, with the latest development in our political scene, several files were circulated that have potential threat to the end users and an increased activities by local hacktivist groups taking advantage of the current political situation.

First observed
27 Feb 2020
Last checked
01 Aug 2026
Evidence records
1
Publication state
Published

What happened?

Current assessment

National Cyber Security Agency (NACSA), National Security Council (NSC) always monitor the current cyber threat level in Malaysia. It has come to our attention of ongoing scam campaigns and phishing attacks leveraging the current Coronavirus (COVID-19) global scale health crisis to steal sensitive information and delivering malware. NACSA has also discovered that, with the latest development in our political scene, several files were circulated that have potential threat to the end users and an increased activities by local hacktivist groups taking advantage of the current political situation.

Why it matters

Web defacement, malware infection, login credentials and sensitive information stolen.

Who is affected?

Affected products and groups

No affected entity has been safely confirmed in the structured record yet.

What should you do now?

Actions from official guidance

For technical teams

  1. NACSA advises everyone to take the following actions: Official source
  2. Do not open or forward any suspicious files/documents forwarded from text messaging service or email especially regarding the list of Malaysia’s “New Cabinets”; Always verify any information received from emails, text messages and social media posts regarding COVID-19 and WHO; Verify with the sender of any link included within an email before clicking; Do not open any suspicious links or emails especially claiming to be from WHO; Do not send any money or donation to any bank account associate with the scam; Do not visit any untrusted websites; Do not simply enter personal information such as email address or password whenever you are requested to do so; Change your password if you think it has been compromised; Update your mobile and computer operating system and applications regularly; Apply latest patches for your system and application to protect from being exploited; Monitor your organisation’s network activities and block any malicious IP attempting to exploit your server and network; If you suspect that you have been a victim of scam, please contact law enforcement agency; and Report to NACSA if you’re server has been breached or defaced. Official source

Which sources support it?

Evidence and official sources

  1. NACSA / NC4 Alerts and AdvisoriesOfficial source
    High Alert on Phishing Attacks and Web Defacement Based on Current National Health & Political Situation

    National Cyber Security Agency (NACSA), National Security Council (NSC) always monitor the current cyber threat level in Malaysia. It has come to our attention of ongoing scam campaigns and phishing attacks leveraging the current Coronavirus (COVID-19) global scale health crisis to steal sensitive information and delivering malware. NACSA has also discovered that, with the latest development in our political scene, several files were circulated that have potential threat to the end users and an increased activities by local hacktivist groups taking advantage of the current political situation.

    Published 27 Feb 2020 · Retrieved 01 Aug 2026