Morrissey Technology

Loading

Hackers Break into Pentagon's IT Service Provider

Hackers Break into Pentagon’s IT Service Provider, Sensitive Data Leaked?

Morrissey Technology – Hacking groups or hackers broke into and leaked information technology (IT) service providers from a number of government agencies in the United States, including the Pentagon to NASA. The hackers leaked stolen internal documents from Leidos Holdings Inc, one of the largest providers of IT services to the US government.

The company recently became aware of the issue and believes the documents were taken during a previously reported Diligent Corp systems leak. Leidos is currently investigating the data leak incident.

The Bloomberg report, citing archives from June 2023, said that the Virginia-based company used the Diligent system to store information collected in internal investigations. Leidos confirmed this issue stems from a previous incident affecting a third-party vendor. They have also announced this in 2023.

“This incident did not impact our network or sensitive customer data,” the company said.

A Diligent spokesperson said that this issue is likely related to an incident from 2022, which affected its subsidiary, Steele Compliance Solutions. The company has notified affected customers and has taken corrective action to address the incident in November 2022.

Previously, not long ago, around 1.4 GB of data belonging to the National Security Agency (NSA) was also reportedly leaked and posted on a dark forum. The leaked data included a number of sensitive and confidential information.

This NSA data leak was first revealed by Cyber ​​Press researchers. The leaked data reportedly contained sensitive information, including internal communications, classified documents, and personal data of NSA employees.

“The threat actor claims the data was allegedly obtained from a data breach of Acuity Inc, a company that collaborates with the United States government and its allies,”.

This leak raises serious national security concerns and highlights vulnerabilities in government contractors’ cybersecurity measures.

https://doae.ong.br/port/for4d/

https://bluegreens.in/-/togelonline/

Windows Mass Blue Screen

Windows Mass Blue Screen Caused by Microsoft Down in a Number of Countries

Morrissey Technology – Thousands of Windows devices around the world experienced a mass blue screen of death (BSOD) which impacted a number of services, from aviation, broadcasting, to banking in various countries. The cause of the disruption is thought to be the software update process carried out by the cybersecurity company CrowdStrike.

A problematic software update from CrowdStrike took affected PCs and servers offline. As a result, these devices enter the recovery boot loop and the devices cannot turn on properly. CrowdStrike is widely used by many businesses around the world to manage the security of Windows PCs and servers.

Quoting The Verge, the initial problem was reported after devices at banks, airlines and Australian TV broadcasters started going offline. This problem is now spreading, even to Europe.

One of the problems was British broadcaster Sky News, which was unable to broadcast its morning news bulletin for hours, and broadcast a message apologizing for “the disruption to this broadcast.”

Later, Ryanair, one of Europe’s largest airlines, also said that it was experiencing “third party” IT issues, which were impacting flight departures. Berlin Airport also warned of travel delays due to “technical problems.” In America, the Federal Aviation Administration (FAA) said it was assisting airlines such as Delta, United and American Airlines due to communications problems.

“The FAA is closely monitoring technical issues impacting IT systems at US airlines,” said FAA spokeswoman Jeannie Shiffer.

“Several airlines have requested FAA assistance to carry out emergency landings for their fleets until this problem is resolved,” he added.

Reported by ABC, CrowdStrike CEO George Kurtz confirmed the mass outage experienced worldwide was the result of “a flaw discovered in a single content update for Windows hosts.”

He emphasized that the mass disruption was not caused by a security incident or cyber attack. Kurtz said only his clients using Windows devices were affected by this issue. Meanwhile, users with Mac and Linux devices are not affected. Kurtz also said that the flaw in the update that caused this global computing issue had been “identified, isolated, and a fix has been implemented.”

https://suppliers.portal.ppa.gov.gh/-/for4d/

https://storytellerfilms.net/togelonline/

https://boulosfeghali.org/-/for4d/

https://pusdantb.inlislitentb.com/-/togelonline/

Google Cloud

Google Cloud and TMS Make Digital Transformation More Effective

Morrissey Technology – Google Cloud and TMS Consulting work together to deliver more efficient and sophisticated enterprise resource planning (ERP) solutions, helping companies in digital transformation and optimizing ERP systems. In implementing ERP in Indonesia, a number of challenges are faced, such as high costs for infrastructure, training and software licensing. Lack of understanding of the importance of digital transformation is also an obstacle.

In fact, looking at future potential, the use of ERP will help companies compete in the digital era, starting from increasing operational efficiency, higher competitiveness, digital transformation, to economic growth. Didi Mulyadi, Head of Infrastructure Solution TMS Consulting, explained that TMS Consulting’s approach to integrating Google Cloud and ERP involves analyzing business needs and assessing existing technology infrastructure to determine integration readiness.

TMS then designs a solution tailored to the client’s specific business needs, integrates the solution into the existing ERP system, and provides training to the client’s internal team.

“After implementation, TMS Consulting continues to monitor and optimize system performance as well as carry out regular evaluations and collect feedback to ensure the solution remains relevant and effective in meeting clients’ growing business needs,” said Didi in a written statement.

The advantages provided by Google Cloud in optimizing ERP, namely comprehensive connectivity, accelerated time to value, unlimited improvements with Google’s AI/ML, simplified integration and development. Then improving sustainability, combining SAP data with Google AI, and accelerating implementation. He conveyed that ERP through Google Cloud AI technology with other technologies, such as sophisticated AI intelligence because ERP through Google Cloud uses sophisticated AI to improve real-time data analysis, enabling companies to make decisions more quickly and accurately.

“Google Cloud’s AI also helps in predicting market trends, optimizing supply chains, and identifying previously unseen operational efficiency opportunities,” he said.

Then, other advances include integration and scalability as well as security and compliance.

https://www.evergreenfire.com/-/togel/

iCIO Community

iCIO Community Reminds the Importance of Mitigating Ransomware Threats in RI

Morrissey TechnologyThe ransomware that attacked the Temporary National Data Center (PDNS) 2 caught the attention of many parties, including the iCIO Community. They emphasized the importance of mitigating ransomware threats for organizations in Indonesia. iCIO Community is a community of Chief Information Officers and Executives in the ICT sector of companies and organizations in the country. This community is designed as a means of sharing practices and leadership in the ICT field.

“It is important for every organization to develop a comprehensive and proactive cybersecurity strategy. In a world that is increasingly connected and vulnerable to cyberattacks, data protection and collaboration between companies is not only important, but urgent. Let’s unite, share experiences, and strengthen organizational defenses Together, we can protect Indonesia’s digital future from growing threats,” said Iskak Hendrawan, Deputy Chair of the iCIO Community.

Moreover, the personal data protection law will complete its trial period in October this year.

“In the current digital era, ransomware attacks cannot be taken lightly. With the implementation of the Personal Data Protection Law in Indonesia, companies are required to be more serious in protecting users’ personal data. We from the iCIO Community hope that the government and public services can adopt this technology adequate and implementing good data governance procedures. This is not just about technology, but also about the responsibility to protect and manage information that is vital for the country and society,” said Harry Surjanto, Advisor to the iCIO Community.

While it is difficult to completely prevent ransomware attacks, proper mitigation measures can minimize their impact. Last year, this community admitted to having held a closed focus group discussion among its members to discuss the ransomware threat they faced. iCIO Community assesses the need for strict operational discipline to ensure rapid recovery in the face of cyber attacks. This covers several important aspects. First, securing infrastructure in the data center. All infrastructure in the organization must always be hardened and updated with critical security patches at the operating system and device firmware level.

“All data must be backed up regularly and stored securely and strictly,” said the iCIO Community representative.

Second, strict monitoring. Monitoring system health and security through the command center and security operation center 7×24 hours is very important. Organizations must have a rapid reaction unit for recovery and dealing with hacking attacks. The three Disaster Recovery Centers (DRC). Organizations must have a DRC and regularly conduct disaster recovery drills. System recovery training activities for disasters must also be monitored and reported to the regulator

Basic security hygiene is a major concern and discipline that should not be ignored. According to the iCIO Community, this is the primary foundation for protecting organizations from ever-evolving threats. Cases such as the attack on PDN show how important it is to have a fast and effective response strategy. We hope the government can design and implement a comprehensive emergency plan to address ransomware attacks. Cross-sector collaboration and sharing information about new threats and attack tactics are crucial in strengthening national cyber threat defenses.

With these steps, the iCIO Community is confident that we can mitigate the negative impact of ransomware attacks and ensure the security of data that is critical to the national interest. And thanks to the adoption of adequate technology and good data governance, mitigation and recovery procedures, governments and public services can provide better services, increase public trust and protect the important information they hold.

https://bluewaysglobal.com/-/for4d/

Data Allegedly Leaked, KAI Ensures User Database is Safe

Data Allegedly Leaked, KAI Ensures User Database is Safe

Morrissey Technology – The social media world was abuzz with news of the alleged KAI Commuter data leak. The leaked data has also reportedly been sold on the dark web. The news of the alleged data leak was revealed by the @txttransportasi account on X (formerly Twitter).

“Oh, you know… KAI database?” upload the account on Tuesday (2/7).

The account also attached screenshots of cyber criminals’ uploads on Breachforums. However, the name of the account that uploaded KAI Commuter data on Breachforums was censored in the screenshot FOR4D.

The suspected hacker claimed that the leaked data included various personal information of KAI Commuter users, such as names, ticket codes, payment methods and transaction times. Responding to this issue, KAI Commuter claimed that its user data was safe, even though it had been hacked. KAI Commuter also said that it had coordinated with related agencies to handle this hack.

“KAI Commuter ensures the security of the Commuter Line user data base which was hacked by irresponsible parties,” Anne Purba FOR4D, Corporate Secretary of KAI Commuter said in a statement, Wednesday (3/7).

“Until now, KAI Commuter together with related parties continue to coordinate and carry out in-depth investigations to trace and handle the system hack,” he added.

Anne said that her party had taken steps to deal with it, including limiting access to both public networks and local networks.

“Currently all IT operational systems FOR4D in the KAI Commuter environment are still running well and all customer databases are safe,” explained Anne.

Furthermore, Anne asked the public not to worry about using all the service applications owned by KAI Commuter, because KAI Commuter has good information security management.

KAI Commuter is also said to have implemented ISO 27001:2013 as a standardization of the Information Security Management System at KAI Commuter. This security standardization, he said, is also regularly audited by independent auditors to ensure security in its implementation.

“KAI Commuter is committed to continuing to improve cyber security FOR4D in the application of information technology that makes it easier for people to use the Commuter Line and will thoroughly investigate this crime,” said Anne.

“For further steps, KAI Commuter will cooperate with the authorities to investigate this case,” he concluded.

Cyber ​​Attack Protection with Simas Cyber ​​Enterprise Insurance

Cyber ​​Attack Protection with Simas Cyber ​​Enterprise Insurance

Morrissey Technology – In today’s digital era, data is the most valuable asset for companies. We have learned enough from cases of data breaches, ransomware and other cyber attacks that have occurred recently. Without safe and protected data, company operations can be significantly disrupted. This not only has the potential to reduce revenue, but also directly harm customers.

In addition, the company’s reputation that has been built with great difficulty can be tarnished due to cyber attacks. Therefore, it is very important for companies to have a strict cybersecurity system.

In addition, the existence of regulations in Law Number 27 of 2022 concerning Personal Data Protection which requires companies to ensure data security and protection as well as the threat of sanctions in the form of administrative fines of up to 2% of annual revenue, further emphasizes the importance of strengthening company cyber security.

Cyber-security is like a fence that protects a house from thieves. However, even if you have installed a high fence, there is no guarantee that thieves cannot enter. Hackers could find loopholes and break into the system. Therefore, additional safety nets are needed to anticipate undesirable events.

PT Asuransi Sinar Mas understands that cyber crime will pose a risk of harming various business institutions in Indonesia. To anticipate this, Sinar Mas Insurance has prepared a liability insurance product, namely Simas Cyber ​​Enterprise FOR4D.

“Currently we see that cyber security has become the biggest challenge in the digital era. Protection of customer data is crucial. For this reason, Asuransi Sinar Mas has prepared Simas Cyber ​​Enterprise as protection in facing this risk,” said Director and Corporate Secretary of PT Asuransi Sinar Mas Dumasi M M Samosir, in a written statement, Tuesday (2/7/2024)

“We hope that by using this product, business sectors in Indonesia will get protection against cyber attacks in doing business,” he continued.

Simas Cyber ​​Enterprise provides guarantees for the costs of restoring electronic data affected by cyber attacks, business interruption compensation, Forensic IT services for investigating cyber attacks, threats of extortion by hackers to pay a sum of money to end a cyber attack and other guarantees.

“One of the advantages of our Simas Cyber ​​Enterprise is the fast acceptance process and effective claim settlement process,” explained Dumasi.

Simas Cyber ​​Enterprise can be used for protection for companies that have concerns about the data security of companies that manage customer personal data or store valuable digital assets on a large scale, such as financial institutions, banks, marketplaces and hospitals. Apart from corporations, Sinar Mas Insurance is also developing Cyber ​​Insurance products to be marketed to the individual segment.

Sinar Mas Insurance also provides a Simas Cyber ​​Enterprise FOR4D product consultation service which can be accessed via the following link. Apart from that, Sinar Mas Insurance is also committed to providing education so that the public has an understanding of information technology system security, cyber attacks and what can be done to minimize risks. Education will be carried out through social media and the website www.sinarmas.co.id.

Facing AI, the World of Work Needs Digital Skills and Collective Bargaining

Facing AI, the World of Work Needs Digital Skills and Collective Bargaining

Morrissey Technology – The development of Artificial Intelligence (AI) has various impacts on humans. Especially in the employment context. So that AI can continue to provide benefits to the world of work, there needs to be collective bargaining between workers, corporations and AI technology providers.

“To ensure that AI can bring prosperity to humanity, there needs to be a serious policy regarding employment carried out through collective bargaining,” emphasized Celeste Drake, Deputy Director General of the International Labor Organization (ILO) – UN, at the Artificial Intelligence and Implications on the Indonesian Labor Market Forum.

The ILO, the UN organization that focuses on employment issues, also provides a number of additional pre-conditions, to ensure that AI does not necessarily “threaten” existing jobs.

“Efforts need to be made to ensure digital skills and lifelong learning for the workforce, so that they can then utilize AI technology,” said Celeste at the event which was also attended by ICT Watch at the invitation of ILO FOR4D – Jakarta.

He also added that adequate governance regarding the use of AI in the world of work also needs to be in place. “Which AI can be used and which should not be used, there needs to be governance,” he stressed.

According to him, with adequate AI governance, anticipatory steps can be taken to minimize discrimination against workers related to the use of AI technology or the recommendations produced by it.

The ILO is currently studying in depth and continuously whether and how AI technology can disrupt the employment sector. This is for example how algorithmic management practices are often associated with work efficiency and effectiveness, such as ranking systems, supervision and control through tracking devices, online recording of working hours, the use of various forms of work, and so on.

In a study included in ILO Working Paper 96 as of August 2023, it was shown that most jobs and industries are exposed to AI only in automation and are more likely to “supplement” rather than “replace” with the latest Generative AI technologies, such as chatGPT. Therefore, according to the ILO, the biggest impact of AI technology is likely not to be the loss of jobs, but rather the potential changes to the quality of work, especially work intensity and autonomy.

https://danestanynews.ir/for4d/

Huawei

No Longer Needed, Huawei Completely Abandons Android

Morrissey TechnologyHuawei officially launched HarmonyOS NEXT, the latest version of its operating system, at Huawei’s annual developer conference, HDC 2024, which is the stage for the company’s biggest announcement. This announcement comes after years of development of the HarmonyOS operating system, which was originally known as Hongmeng.

This Chinese-developed operating system (OS) completely ditches the Linux kernel and Android Open Source Project (AOSP) codebase in favor of a completely independent architecture built around Huawei’s Hongmeng kernel and system.

Huawei claims that the new system architecture delivers a 30% improvement in overall machine performance and a 20% reduction in power consumption. Currently in beta testing, HarmonyOS NEXT is looking for developers and a number of early adopters to participate. Those interested should be aware that the beta version may be unstable and may cause data incompatibility issues.

The main feature of HarmonyOS NEXT is the ability to bridge the gap between different devices. According to Huawei, developers only need to create one version of an app to ensure a consistent user experience across different screen sizes in the Huawei ecosystem FOR4D.

This was demonstrated at the conference with popular apps such as Taobao, Yiche, and Bilibili running smoothly across different devices. Additionally, HarmonyOS NEXT offers a unique “App Continuation” function. Imagine starting a video call on your tablet and seamlessly transferring it to your phone with one click. This system also allows easy sharing of data between devices. For example, you can easily cut and paste images from your phone to your tablet while working on a document.

HarmonyOS NEXT FOR4D is claimed to be more than just device connectivity. This system integrates artificial intelligence (AI) capabilities directly into the system, referred to as “Harmony Intelligence.”

This integration unlocks a variety of features, including:

  • AIGC image creation: Create unique images from line drawings, colorize existing photos, or even enlarge them.
  • Industry-first AI voice repair: This feature aims to help people with speech disorders by improving communication.
  • “Xiaoyi Sees the World” for visually impaired users: This feature uses AI to “read images” by describing their content aloud, potentially helping users identify objects around them.
  • AI-powered control: HarmonyOS NEXT allows third-party apps to leverage the system’s AI for features like real-time text reading, smart form filling, and image/text translation.
  • Then Huawei’s virtual assistant feature, Xiaoyi, has received an upgrade and is called Xiaoyi Intelligent Agent. Xiaoyi no longer requires a wakeup word and can be “summoned” by simply dragging and dropping content onto the navigation bar.

This allows for more intuitive interactions where Xiaoyi can analyze content and offer relevant actions, such as creating charts from images or summarizing documents. Security remains a top priority for Huawei. HarmonyOS NEXT FOR4D introduces the new Star Shield security architecture, designed to keep user data safe. This architecture implements several steps:

  • Rigorous application inspection: Code and applications that do not meet security standards will be blocked from being installed.
  • Multi-device data encryption: Data is encrypted end-to-end across multiple devices for increased protection.
  • Hardware-level encryption: Individual files are encrypted with a unique key stored on the device’s hardware.
  • Permission control: Restrict unnecessary app permissions to minimize privacy risks.
  • HarmonyOS NEXT is still in the development phase, with a commercial launch expected in Q4 2024. The beta testing phase has begun, and Huawei is actively seeking developers and early adopters to provide feedback and help improve the system.

https://psychcjr.com/for4d/

Ransomware National Data Center

National Data Center Down, Cyber ​​Expert Says Suspected of Being Attacked by Ransomeware

Morrissey TechnologyThe National Data Center (PDN) experienced disruption from Thursday (20/6/2024) until today there are no signs of progress towards returning to normal operations. Cyber ​​experts suspect that PDN suffered a Ransomeware cyber attack. As a result, PDN experienced problems resulting in long queues carrying out the immigration process not only at Soekarno-Hatta Airport, but at all Immigration Offices throughout the country.

Chairman of the CISSReC Cyber ​​Security Research Institute, Pratama Persadha, revealed several things that could cause total disruption like this, including electricity supply disruption, server damage, internet connection disruption, as well as cyber attacks such as DDoS or Ransomware.

“If the disruption occurs due to a cyber attack, then the risk is even greater because it not only disrupts services but can also result in personal data being leaked,” said Pratama in his written statement.

Previously there had also been a cyber attack on Immigration which resulted in the leak of personal data, namely the leak of 34 million passport data. What’s even more dangerous, said Pratama, is if hackers can access the servers at the National Data Center, of course the data leak that occurs will not only affect the Directorate General of Immigration but also other institutions that use PDN to store citizen data.

If we look at the pattern of disturbances that occur, Pratama believes that there is a possibility that the problems that occurred at PDN were caused by cyber attacks using the ransomware method, as was the case that happened to Bank Syariah Indonesia previously.

“If the problem faced by PDN is a technical problem, it certainly won’t take that long. The electricity supply problem can be resolved immediately by using electricity supply from another substation or using a generator for temporary supply,” he said.

Likewise, if the problem is an internet connection, such as a break in the fiber optic cable entering the PDN, it can still be resolved quickly using a Point-to-Point radio connection which has a large bandwidth and doesn’t take long to install.

“Similarly, if you are hit by a cyber attack using the DDoS method, the response time required will not be that long because it can be easily resolved by utilizing Anti-DDoS devices and collaborating with ISPs to increase bandwidth capacity and help overcome DDoS from the ISP side,” he explained. .

By seeing this incident, Pratama said that using PDN could endanger the country if it is not equipped with strong security, so that each government agency hosting PDN must create a strong Business Continuity Plan (BCP) so that it does not depend 100 ℅ on PDN infrastructure.

He said that with the PDN down incident, the government must clearly explain what happened and from the start explain BCP from this kind of risk. It should be noted that the PDN currently being built only provides the infrastructure to store data from each agency that owns the SPBE.

“The cyber security factor also still needs special attention because what PDN managers currently guarantee is the cyber security of the PDN infrastructure itself, while the cyber security of each SPBE application is still the responsibility of the agency that owns the SPBE,” he concluded.

https://jakartautara.imigrasi.go.id/js/sdemo/

http://nem-lb.com/web/-/togelonline/

https://smkwalisongojakarta.sch.id/-/togelonline/

https://gidapp.bangkok.go.th/cibma/-/togelonline/

Apple and Meta

Apple and Meta Face Regulatory Challenges in Europe, Why?

Morrissey Technology – Two giant American technology companies, Apple and Meta, are reportedly facing new regulatory challenges in Europe. Apple is related to its application store App Store, while Meta is centered on artificial intelligence (AI) assistants.

Based on a report from the Financial Times (FT), the European Commission (EC) will file charges against Apple. The iPhone maker did not comply with requirements that allow app developers to direct users to offers available outside the App Store BO Togel without charging them.

If such charges are indeed filed against Apple, it could be the first time the EC has done so under the recently implemented Digital Markets Act (DMA), according to the report. The European Commission said in March that it was using its powers under the DMA to investigate Apple, Alphabet and Meta.

The report adds that regulators are only making preliminary findings, they may reassess any final decision if Apple changes its practices, and that the timing of any decision is subject to change.

“We believe our plans comply with the DMA, and we will continue to engage constructively with the European Commission as they conduct their investigation,” Apple FOR4D said in a statement.

Meta, meanwhile, said earlier that it had paused plans to launch its AI assistant, Meta AI, in Europe after the Irish Data Protection Commission (DPC), on behalf of the European data protection authority (DPA), asked it to postpone training of large language models ( LLM) with content shared by adults on Facebook and Instagram Meta platforms.

Meta said in an update that it was disappointed with the request, that it had incorporated feedback from DPA Europe and that the request marked a step backwards for European innovation.

“We are committed to bringing Meta AI FOR4D, along with the models that power it, to more people around the world, including in Europe,” Meta said in the update.

“However, simply put, without including local information, we can only offer people a second-class experience. This means we cannot launch Meta AI in Europe at this time,” he continued.