Ransomware

Indonesia Says a Cyberattack Has Compromised Its Data Center but It Won’t Pay the $8 Million Ransom

Indonesia’s national data center has been compromised by a hacking group asking for a $8 million ransom that the government won’t pay.

Indonesia’s national data center has been compromised by a hacking group asking for a $8 million ransom that the government won’t pay.

Indonesia’s national data center has been compromised by a hacking group asking for a $8 million ransom that the government won’t pay, authorities said Monday.

The cyberattack has disrupted services of more than 200 government agencies at both the national and regional levels since June 20, said Samuel Abrijani Pangerapan, the director general of informatics applications with the Communications and Informatics Ministry.

Some government services have returned — immigration services at airports and elsewhere are now functional — but efforts continue at restoring other services such as investment licensing, Pangerapan told reporters.

The attackers have held data hostage and offered a key for access in return for the $8 million ransom, said PT Telkom Indonesia’s director of network & IT solutions, Herlan Wijanarko, without giving further details.

Wijanarko said the company, in collaboration with authorities at home and abroad, is investigating and trying to break the encryption that made data inaccessible.

Communication and Informatics Minister Budi Arie Setiadi told journalists that the government won’t pay the ransom.

Advertisement. Scroll to continue reading.

“We have tried our best to carry out recovery while the (National Cyber and Crypto Agency) is currently carrying out forensics,” Setiadi added.

The head of that agency, Hinsa Siburian, said they had detected samples of the Lockbit 3.0 ransomware.

Related: Multiple Chinese APTs Targeted Southeast Asian Government for Two Years

Related: Newly Detected Chinese Group Targeting Military, Government Entities

Related: Cyberespionage Campaign Targets Government, Energy Entities in India

Related Content

Ransomware

The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication.

Data Breaches

The Anubis cybercrime group has taken credit for the attack and is threatening to leak data.

Data Breaches

The PEAR ransomware group claimed to have stolen 3 TB of information from the medical business management company.

Data Breaches

A hacker claims to have stolen the information of 2 million Origin Energy customers and is threatening to leak it. 

ICS/OT

An updated advisory from federal agencies provides information on the techniques used to hack programmable logic controllers.

Data Breaches

The Anubis ransomware group claims to have stolen 1 TB of confidential data from the Coca-Cola subsidiary.

Data Breaches

Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025.

Compliance

Industry professionals broadly agree that the suspension pauses third-party CMMC audits but not the underlying legal obligation to protect CUI.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version