Knowledge

2018 SingHealth data breach

Source 📝

217:
forensic examinations, resulting in delays diagnosing the issue. This is confirmed by the fourth day of the trial, where failings of judgement and organisational processes are exposed. For instance, meetings with the security management department were not conducted regularly, and no framework was created to set out appropriate responses to cybersecurity risks or to appoint covering officers if any staff go on leave. A clarification on processes was provided, where a standard operating procedure to escalate incidents was approved by the management in March 2018. It was also revealed the same day that staffers took six more days after 4 July to confirm the data breach as an IHiS employee mistakenly informed colleagues that no data was stolen, only confirmed after further tests are run by the superior finding that data was stolen. The queries were later recreated.
253:
will be held to update employees about the latest cyber threats, with log-in messages strengthened to hone the importance of data protection. Storytelling formats will also be used to explain these concepts. More cyber security exercises simulating data breaches were called for in a subsequent hearing, with these allowing professionals to be more familiar with what to do in case a similar incident happens again. In addition, the expert recommended all data within the system to be encrypted including inactive data. As full encryption would be unfeasible due to operational concerns, personal data could be anonymised instead with 2-factor authentication to de-anonymise it. That same hearing, it was updated that many of the written submissions were found to be useful.
261:
Health's chief data advisor pointed out that Internet separation resulted in longer wait times for patients, declined productivity, increased staff fatigue and new cyber risks, especially when anti-virus software updates are done only on some computers instead of all within the network. Hence, to continue ISS, these factors would need to be considered. The next day, a security expert recommended having a centralised incident management and tracking system that logs all incidents that occur during a breach to reduce miscommunication, which is one of the causes for delayed reporting. In addition, the usage of different chat platforms meant that crucial details about the attack were lost and hence there was not many linkages to the incident.
236:
bottleneck is not acceptable, adding that there was no written protocol on how to report SingHealth-related cybersecurity incidents should IHiS staff discover any incident. Another pointed out that annual cybersecurity exercises are mandated for critical information infrastructure (CII) operators, so staff should be able to identify advanced persistent threats (APTs). However, these tests were for classroom settings and may not necessarily apply to the SingHealth case, thus defeating the purpose of these exercises if situational awareness was not there. There were also plans for secure Internet browsing in the healthcare sector by 2018, but it had to be delayed by a year due to technical issues.
201:
attempts to log into the system, which was done with non-existent accounts or accounts that do not have much privileges in the system. Eventually, the cyberattacker successfully gained entry through a coding vulnerability on 26 June, and hence sent SQL queries until 4 July when it was stopped by an administrator. In addition, there were three periods where staff failed to respond or responded after a few days when knowledge of the cyberattack was first known. On the same day, two staff members said that while a framework was in place to report cyberattacks, there is insufficient training on what to do, hence it was unclear to staff about what actions should be taken.
213:. An assistant lead analyst who detected unusual activity investigated further even through that was not his scope, and sent alerts to different divisions to find the staff who can make sense of those queries. The analyst's supervisor told the analyst to continue monitoring the situation and that he assumed there was no medical data until being informed that there was such a leak. As the analyst informed a reporting officer, there was no point in reporting the query himself, asking the analyst to follow up on the queries. Details about reporting procedures and containment measures were mentioned. 228:, thereby being convenient for staff members to approach him in case help was needed. Once the counterparts resigned, there was no one at IHiS present to take over managing the server. Also, the IHiS director was not aware that the server was not managed by the firm in practice, only giving a directive in 2014 that IHiS will not manage research servers. The next day, a security loophole that was not plugged was scruntised. Even though the loophole was flagged by an IHiS employee, there was no action taken. In fact, the employee was dismissed after sending details of the flaw to a rival company. 269:
passwords are supposed to be 15 characters long, but one had a problematic password of eight characters which was unchanged since 2012. Lastly, even if measures were put in place to slow down cyberattacks, it is important to note that the attack was done via an advanced persistent threat (APT). Subsequently, the report was submitted to S. Iswaran on 31 December 2018 with the public version released on 10 January 2019.
126:(IHIS), the public healthcare IT provider, detected unusual activity on one of SingHealth's IT databases on 4 July, and implemented precautions against further intrusions. Network traffic monitoring was enhanced; additional malicious activity was detected after 4 July, but did not result in the theft of any data. Having ascertained that a cyberattack occurred, administrators notified the ministries and brought in the 278:
worse, vulnerabilities in the network and systems are not patched quickly, coupled with the fact that the attackers are well-skilled. As a result, the attackers found it easy to break in. The report did point that if the staff had been adequately trained and vulnerabilities fixed quickly, this attack could have been averted. The report also found that this is the work of an
427:
Bruce Liang. Three employees were commended by IHiS for handling the incident diligently even when not part of their job scope. IHiS has since fast-tracked a suite of 18 measures for enhancing cybersecurity. The next day, the Personal Data Protection Commission fined IHiS $ 750,000 and SingHealth $ 250,000 for not doing enough to safeguard personal data under the
110:(NRIC) numbers, addresses, dates of birth, race, and gender of patients who visited specialist outpatient clinics and polyclinics between 1 May 2015 and 4 July 2018 were maliciously accessed and copied. Information relating to patient diagnosis, test results and doctors' notes were unaffected. Information on Prime Minister 224:, compared to the normal duration where patches were done several times a month. Besides that, the computer's anti-virus software was too old and need to be reinstalled. The manager was not supposed to manage the server on paper, but in practice, was given the role in 2014 as the server was located at the 170:
A Committee of Inquiry was convened on 24 July 2018 to investigate the causes of the attack and identify measures to help prevent similar attacks. The four-member committee is chaired by former chief district judge Richard Magnus, and comprise leaders of a cyber-security firm, a healthcare technology
426:
After the report was released, on 16 January 2019, IHiS dismissed two employees and demoted one for being negligent in handling and misunderstanding the attack respectively, with financial penalties imposed on two middle management supervisors, and five members of the senior management including CEO
422:
IHiS has since strengthened public health systems against data breaches. All suspicious IT incidents will have to be reported within 24 hours. 18 other measures are also put in place, including two-factor authentication for all administrators, proactive threat hunting and intelligence, allowing only
268:
The closing submissions were held on 30 November 2018. Proposals to improve cybersecurity were shared, including the "assume breach" mindset in organisations thus taking necessary measures, having the right people and processes to complement those measures. It was also pointed out that administrator
248:
also found similar vulnerabilities in its investigation. Due to this, there will be "three lines of defence", where compliance checks are performed by the operations team, technology team and internal audit team, and training will be stepped up in IHiS so that early detection of attacks are ensured.
200:
being used did not have a patch that prevents attacks by that hacking tool. Between December 2017 and May 2018, the cyberattacker moved sideways and gained access to a workstation to infect other computers with malware. Other inadequacies identified include not being able to identify multiple failed
142:
on 20 July. The ten-day delay between the discovery of the attack and the public announcement was attributed to time needed to fortify the IT systems, conduct preliminary investigations, identify affected patients and prepare the logistics of the announcement. Text messages were subsequently sent to
369:
officer (MOH CISO) and the director of cybersecurity governance at IHiS will be separated, where the MOH CISO has a dedicated office and reports to the Permanent Secretary of MOH, while IHiS will have a separate director in charge of cybersecurity governance, with changes at the cluster level. This
277:
On 10 January 2019, the Committee of Inquiry released a report on the SingHealth breach. The report found that staff are inadequately trained in cybersecurity, thus they are unable to stop the attacks. The key staff did not take immediate action to stop the attacks fearing pressure. To make things
252:
Later in the hearings, SingHealth executives said that they will enhance cyber safety awareness for all employees, as well as roll out new systems to capture patients' data rigorously. It will also allow patients to update their particulars instead of only doing it over the counter. More townhalls
195:
The Committee of Inquiry hearings began on 21 September 2018. In the first hearing, Solicitor-General Kwek Mean Luck said that a series of staff missteps and gaps in the system contributed to the breach. Some examples mentioned are the EMR system, which was in place since 1999. In addition, it was
264:
On the final day, Cyber Security Agency chief David Koh suggested changing the way IT staff in the healthcare sector report incidents so that faster response can be ensured during a cyberattack, along with a review of the sector's IT processes and staff training carried out. It was also suggested
231:
Towards the end of the second tranche of hearings on 5 October, it was revealed a second attempt to hack into the servers was done on 19 July via another server. This was stopped immediately as soon as it began. In addition, malware used was customised for the system and evaded detection from top
398:
otherwise. The attack also renewed concerns among some healthcare practitioners regarding ongoing efforts to centralize electronic patient data in Singapore. Plans to pass laws in late 2018 making it compulsory for healthcare providers to submit data regarding patient visits and diagnoses to the
260:
director suggested having the Government and industry partners work together and share information to learn and update each other about new threats that pop up. That is so as current protection measures are insufficient against ever evolving vulnerabilities. In the same hearing, the Ministry of
235:
The third tranche of hearings started on 31 October. Evidence was shown that managers were reluctant to report the incidents as that would mean an increased amount of work, thereby creating a bottleneck. Meanwhile, the chief information officer told the team to escalate the incident, saying a
216:
On the third day, a cybersecurity employee at IHiS, who was on holiday when the incident happened, did not follow up after having read the emails as it was thought to have been collection of data from workstations for investigation. In addition, only one computer at IHiS was used to carry out
374:. All public healthcare staff will remain on Internet Surfing Separation, which was implemented immediately after the cyberattack, and the mandatory contribution of patient medical data to the National Electronic Health Record (NEHR) system will continue to be deferred. 423:
computers with latest security updates on hospital networks, and a new database activity monitoring. Studies are done to keep Internet Separation Scheme (ISS) permanent in some parts of the healthcare system with a virtual browser being piloted as an alternative.
393:
initiatives and a review of the public sector's cyber-security policies during that time. The review resulted in implementation of additional security measures, and urged public sector administrators to remove Internet access where possible and to use secure
243:
and cloud-based systems was brought up, showing more inadequacies in the systems managed by IHiS. The incident was reported by the operations team as "plugged" to the management without anyone verifying that works to fix these vulnerabilities were done. The
418:
told banks in Singapore to tighten customer verification processes in case leaked data was used to impersonate customers, with additional information requested. Banks are also told to conduct risk assessments and mitigate risks from misuse of information.
130:(CSA) on 10 July to carry out forensic investigations. The agency determined that perpetrators gained privileged access to the IT network by compromising a front-end workstation, and obtained login credentials to access the database, while hiding their 438:
identified a state-sponsored group, known as Whitefly, behind the cyberattack. Although the country is not identified, that group has been found to be behind several related cyberattacks against Singapore-based entities since 2017.
183:. The committee held closed-door and public hearings from 28 August, with another tranche of hearings from 21 September to 5 October. In addition, the Personal Data Protection Commission investigated into possible breaches of the 204:
At the next hearing on 24 September, it was revealed that Prime Minister Lee Hsien Loong's personal data and outpatient records along with two other unnamed people were searched by hackers who infiltrated into the servers using
356:
announced in Parliament that the Government accepted the recommendations of the report and will fully adopt them. It has also sped up the implementation of the Cybersecurity Act to increase security of CIIs. Separately,
232:
anti-virus software. A tool called PowerShell was used in the process, being disabled on 13 July. Meanwhile, IHiS stepped up security with changing passwords, removing compromised accounts and rebooting servers.
1846: 1877: 548: 249:
As pointed out the next day that even if the weaknesses were found, they may not be fixed as quickly as expected as public healthcare institutions operate around the clock resulting in little downtime.
465: 1750: 370:
will help boost operations and governance of the IT systems. In addition, MOH will establish an enhanced "Three Lines of Defence" system for public healthcare, and pilot a "Virtual Browser" for the
521: 1815: 1781: 2109: 2056: 31: 762: 1568: 688: 365:
announced that changes to enhance governance and operations in Singapore's healthcare institutions and IHiS will be made. The dual role of Ministry of Health's chief
2519: 631: 2004: 2539: 2136: 1838: 1465: 1439: 1413: 1049: 971: 893: 1647: 1335: 1257: 1869: 1595: 945: 1517: 1361: 997: 737: 540: 1309: 285:
In the same report, the Committee of Inquiry made 16 recommendations to boost cybersecurity, separated into priority and additional recommendations. They are:
1925: 1900: 102:
incident initiated by unidentified state actors, which happened between 27 June and 4 July 2018. During that period, personal particulars of 1.5 million
1179: 867: 571: 457: 1758: 1387: 1283: 1127: 1101: 919: 654: 1977: 517: 1231: 265:
that cybersecurity processes be considered as a key instead of it merely existing as an afterthought. The hearings thus concluded on 14 November 2018.
220:
It was also revealed on the fifth day that a server exploited by hackers did not receive security updates in more than a year since May 2017 due to the
1153: 2030: 1811: 1205: 1075: 1023: 1952: 1789: 209:
numbers. The rest of the queries were generally done on patient demographic data, like one that involved the first 20,000 records of such data from
1491: 2162: 2113: 2231: 196:
mentioned that the cyberattacker behind the incident started infecting workstations as early as August 2017 using a hacking tool. The version of
2060: 2205: 386:
from all public healthcare IT terminals with access to the healthcare network, and additional system monitoring and controls were implemented.
815: 428: 184: 180: 179:
to lead evidence, and the Attorney-General's Chambers appointed the Cyber Security Agency to lead the investigations with the support of the
3153: 1621: 1543: 2691: 789: 2509: 2083: 2499: 2453: 353: 160: 135: 605: 1673:"Public Report of the Committee of Inquiry (COI) into the cyber attack on Singapore Health Services Private Limited Patient Database" 841: 1839:"SingHealth cyber attack: Pause on Smart Nation projects lifted; 11 critical sectors told to review untrusted external connections" 487: 3087: 403:
announced on 6 August 2018 that the National Electrical Health Record (NEHR) will be reviewed by an independent group made up of
1672: 167:
to circumvent SingHealth's antivirus and security tools. Iswaran did not name any state in the interest of national security.
2268: 680: 123: 2623: 711: 627: 3037: 2504: 206: 107: 1782:"SingHealth cyberattack: IHiS, public healthcare system to see enhanced governance, changes to organisational structure" 3171: 2654: 2432: 2198: 1232:"SingHealth cyber attack COI: Senior manager reluctant to report attack because he did not want to deal with pressure" 946:"COI on SingHealth cyber attack: Alarm bells did not ring for key cyber-security employee despite suspicious activity" 3177: 2703: 2664: 2299: 404: 371: 245: 127: 3704: 3237: 3183: 2758: 2649: 2478: 842:"COI on SingHealth cyber attack: Lack of awareness, tardy response contributed to incident, says Solicitor-General" 225: 3231: 2585: 2422: 2324: 1466:"Longer wait times, declined productivity, higher cyber risks due to Internet separation: MOH chief data adviser" 415: 1128:"SingHealth COI hearing: Former IHiS CEO dismissed staff for ethical breach, didn't probe alleged vulnerability" 3694: 3634: 2644: 2417: 2386: 1901:"National e-records system to undergo 'rigorous' security review before proceeding with mandatory contribution" 1414:"Cyber-security exercises needed to better prepare for cyber attacks: Expert at COI on SingHealth cyber attack" 400: 362: 172: 139: 518:"Singapore health system hit by 'most serious breach of personal data' in cyberattack; PM Lee's data targeted" 3674: 2524: 2437: 2236: 2226: 2191: 411:
before asking doctors to submit all records to the NEHR, even though it was not affected by the cyberattack.
176: 3398: 2788: 2575: 2514: 2473: 2371: 395: 3135: 738:"SingHealth cyber attack hearings resume Sept 21; inquiry committee seeks recommendations from the public" 2893: 2391: 816:"COI for SingHealth cyberattack: IT gaps, staff missteps contributed to incident, says Solicitor-General" 106:
patients and records of outpatient dispensed medicines belonging to 160,000 patients were stolen. Names,
2728: 920:"COI for SingHealth cyberattacks: Officer took initiative to investigate even though it was not his job" 3699: 3582: 2923: 2778: 2570: 2463: 2407: 572:"Personal info of 1.5m SingHealth patients, including PM Lee, stolen in Singapore's worst cyber attack" 458:"Personal info of 1.5m SingHealth patients, including PM Lee, stolen in Singapore's worst cyber attack" 279: 240: 221: 210: 70: 2329: 1544:"SingHealth COI: IHiS' systems were built for business efficiency instead of security, says CSA chief" 3063: 3032: 2659: 2031:"SingHealth cyberattack: IHiS announces measures to protect healthcare sector against online threats" 1154:"SingHealth COI hearing: Employees questioned about their inaction over alleged coding vulnerability" 2618: 1622:"Improve staff awareness of cybersecurity, better incident response proposed as SingHealth COI ends" 3689: 3201: 2768: 2686: 2592: 2565: 1362:"COI on cyber attack: More will be done to deepen cyber-security awareness of SingHealth employees" 1258:"SingHealth data came under attack before plans to strengthen Internet protocols were put in place" 257: 1050:"Exploited server in SingHealth cyber attack did not get security update for 14 months, COI finds" 868:"SingHealth cyber attack: Not all IHiS employees aware of what to do in a cyber-security incident" 3357: 3021: 2494: 2427: 2273: 1596:"Organisations must prepare for cyber breaches, as if already under attack: SingHealth COI chair" 541:"Hackers stole data of PM Lee and 1.5 million patients in 'major cyberattack' on SingHealth" 321:
Enhanced safeguards must be put in place to protect confidentiality of electronic medical records
301:
Perform enhanced security checks, especially on critical information infrastructure (CII) systems
152: 1518:"COI on SingHealth cyber attack: Change the way security incidents are reported, says CSA chief" 3709: 2918: 2580: 2084:"IHiS sacks 2 employees, slaps financial penalty on CEO over lapses in SingHealth cyber attack" 1388:"SingHealth COI: Management concerned early announcement of breach would affect investigations" 1284:"SingHealth COI: IHiS officer's reluctance to report suspicious IT incidents shown up in court" 408: 26: 2560: 2110:"PDPC fines IHiS, SingHealth combined S$ 1 million for data breach following cyberattack" 3684: 3679: 3419: 3372: 3280: 3207: 2991: 2355: 1870:"Doctors raise concerns again over national e-records system after data breach at SingHealth" 894:"COI on SingHealth cyber attack: Hackers searched for PM Lee's records using his NRIC number" 2602: 2458: 2137:"SingHealth database hackers have targeted other systems here since at least 2017: Symantec" 1978:"SingHealth cyberattack: MAS orders financial institutions to tighten customer verification" 1725: 1336:"COI on SingHealth cyber attack: Operational challenges in fixing system weaknesses quickly" 292:
Adopting an enhanced security structure and readiness by IHiS and public health institutions
3016: 2381: 1492:"SingHealth COI: Communication problems hampered data breach response, says expert witness" 1206:"'Customised, uniquely tailored' malware not seen elsewhere used in SingHealth cyberattack" 1076:"COI on SingHealth cyberattack: Exploited server had not been updated for more than a year" 998:"COI on SingHealth cyber attack: IHiS staff took six days to discover data had been stolen" 597: 383: 366: 318:
IT security risk assessments and audits must be treated seriously and carried out regularly
239:
The following day, a 2016 audit that found systemic weaknesses in the network link between
1648:"Top-secret report on SingHealth attack submitted to Minister-in-charge of Cyber Security" 8: 3506: 2534: 2350: 1024:"COI on SingHealth cyberattack: IHiS officer hesitated before reporting suspected breach" 2863: 1440:"COI on SingHealth cyber attack: US expert calls for collective defence against threats" 1310:"COI on SingHealth cyber attack: Weaknesses flagged in 2016 internal audit not remedied" 310:
Forge partnerships between industries and the Government to achieve higher cybersecurity
295:
Review online security processes to assess ability to defend and respond to cyberattacks
3644: 3639: 3536: 3165: 2928: 2854: 2544: 2345: 2005:"New measures to strengthen public healthcare systems following SingHealth data breach" 2867: 2376: 3649: 3531: 3501: 3105: 2961: 2319: 2283: 1812:"SingHealth cyberattack: Internet surfing delinked at all public healthcare clusters" 197: 131: 3577: 3429: 3352: 3001: 2938: 2813: 2262: 1699: 304:
Subject privileged administrator accounts to tighter control and greater monitoring
3275: 2057:"SingHealth cyberattack: IHiS sacks 2 employees, imposes financial penalty on CEO" 1102:"COI examines alleged security 'loophole' discovered in 2014 in SingHealth system" 163:, attributed the attack to sophisticated state-linked actors who wrote customized 3587: 3562: 3526: 3454: 3367: 3362: 3006: 2798: 2708: 2412: 1751:"SingHealth cyberattack: Govt to fully adopt COI recommendations, S Iswaran says" 111: 763:"Schedule of Public Hearing Convened by COI into the Cyber Attack on SingHealth" 3326: 3321: 3011: 2996: 2986: 2981: 2913: 2888: 2883: 2878: 2823: 2597: 2278: 655:"4-member Committee of Inquiry convened to investigate SingHealth cyber attack" 435: 2468: 333:
Implement an Internet access strategy that limits exposure to external threats
3668: 3449: 2908: 2859: 1953:"MAS tells financial institutions to tighten customer verification processes" 1926:"MAS directs financial institutions to tighten customer verification process" 1180:"SingHealth COI: Hackers tried to attack network again on July 19 amid probe" 22: 972:"COI on SingHealth cyber attack: Failings in judgment, organisation exposed" 3393: 3347: 3147: 3111: 2966: 2956: 2849: 2844: 2839: 2713: 2529: 390: 358: 399:
National Electronic Health Record system were postponed. In addition, the
3629: 3619: 3567: 3475: 3331: 3141: 2971: 2833: 2698: 99: 336:
Clearer guidelines on when and how to respond to cybersecurity incidents
3572: 3557: 3485: 3225: 3129: 3081: 3057: 3045: 2903: 2828: 2818: 2808: 2793: 2753: 2678: 2309: 2183: 1569:"Conclusion of Scheduled Hearings for COI into SingHealth Cyber Attack" 349: 156: 103: 3603: 3480: 3444: 3434: 3306: 3123: 2873: 2803: 2743: 2304: 790:"Singapore's privacy watchdog to investigate SingHealth data breach" 3511: 3439: 3424: 3243: 3219: 3093: 3075: 2976: 2898: 2733: 2718: 339:
Improve competence of computer security incident response personnel
3541: 3414: 3377: 3311: 3290: 3260: 3213: 3195: 3117: 3051: 2748: 2738: 2723: 2163:"Cyber espionage group Whitefly behind SingHealth hack: Symantec" 342:
Consider a post-breach independent forensic review of the network
330:
Implement a software upgrade policy with a focus on cybersecurity
164: 3624: 3516: 3470: 3285: 3099: 3069: 2948: 2933: 2763: 2314: 3249: 3189: 3159: 134:. The attack was made public in a statement released by the 80:
Inadequate training of staff, slow fixing of vulnerabilities
3521: 3316: 628:"Singapore Minister: Major Cyberattack May Be State-Linked" 382:
Following the cyberattack, Internet access was temporarily
2500:
Hollywood Presbyterian Medical Center ransomware incident
431:, making it the largest fine imposed for data breaches. 187:
in protecting data and hence determine possible action.
681:"COI hearings on SingHealth cyber attack from Aug 28" 434:
Subsequently, on 6 March 2019, cybersecurity company
1726:"COI on SingHealth cyber attack: 16 recommendations" 840:Tham, Irene; Baharudin, Hariz (21 September 2018). 712:"Hearings on SingHealth cyber breach from Sept 21" 389:The attack led to a two-week pause in Singapore's 1698:Tham, Irene; Baharudin, Hariz (10 January 2019). 3666: 1700:"COI on SingHealth cyber attack: 5 key findings" 892:Tan, Tam Mei; Lai, Linette (24 September 2018). 190: 2540:Russian interference in the 2016 U.S. elections 488:"SingHealth's IT System Target of Cyberattack" 2199: 2055:Mohan, Matthew; Sim, Fann (14 January 2019). 1697: 1074:Sim, Fann; Chia, Lianne (27 September 2018). 1022:Sim, Fann; Chia, Lianne (26 September 2018). 839: 1204:Sim, Fann; Mohan, Matthew (5 October 2018). 16:Patients records were stolen from SingHealth 2510:Democratic National Committee cyber attacks 354:Minister for Communications and Information 327:Implement a robust patch management process 161:Minister for Communications and Information 2454:Office of Personnel Management data breach 2206: 2192: 767:Ministry of Communications and Information 175:respectively. The committee called on the 136:Ministry of Communications and Information 2134: 1779: 1723: 1593: 1515: 1489: 1463: 1437: 1411: 995: 678: 595: 298:Improving staff awareness on cyberattacks 2213: 2054: 1203: 1073: 1021: 324:Improve domain security against attacks 3667: 1780:Abu Baker, Jalelah (15 January 2019). 996:Baharudin, Hariz (26 September 2018). 891: 2187: 2160: 2107: 2028: 1619: 1594:Baharudin, Hariz (30 November 2018). 1516:Baharudin, Hariz (14 November 2018). 1490:Baharudin, Hariz (13 November 2018). 1464:Baharudin, Hariz (12 November 2018). 1438:Baharudin, Hariz (12 November 2018). 1385: 1281: 1151: 1125: 813: 515: 256:Towards the final hearings, a former 124:Integrated Health Information Systems 2081: 2002: 1950: 1898: 1867: 1836: 1724:Baharudin, Hariz (10 January 2019). 1645: 1412:Baharudin, Hariz (9 November 2018). 1359: 1333: 1307: 1229: 1177: 1099: 1047: 969: 943: 917: 865: 787: 736:Wong, Pei Ting (11 September 2018). 735: 709: 652: 569: 535: 533: 531: 511: 509: 455: 272: 122:The database administrators for the 2505:Commission on Elections data breach 1880:from the original on 17 August 2018 1849:from the original on 17 August 2018 1818:from the original on 17 August 2018 1541: 1255: 691:from the original on 17 August 2018 634:from the original on 17 August 2018 630:. Associated Press. 6 August 2018. 608:from the original on 17 August 2018 468:from the original on 22 August 2018 307:Improve incident response processes 108:National Registration Identity Card 13: 2112:. Channel NewsAsia. Archived from 2108:Mohan, Matthew (15 January 2019). 2059:. Channel NewsAsia. Archived from 1386:Mohan, Matthew (5 November 2018). 1152:Kwang, Kevin (28 September 2018). 1126:Kwang, Kevin (28 September 2018). 918:Chia, Lianne (25 September 2018). 866:Chua, Alfred (22 September 2018). 814:Kwang, Kevin (21 September 2018). 679:Baharudin, Hariz (8 August 2018). 596:Baharudin, Hariz (7 August 2018). 524:from the original on 26 July 2018. 143:patients whose data was affected. 14: 3721: 2665:Jeff Bezos phone hacking incident 2135:Baharudin, Hariz (6 March 2019). 1757:. 15 January 2019. Archived from 1620:Kwang, Kevin (30 November 2018). 1100:Tham, Irene (28 September 2018). 1048:Tham, Irene (27 September 2018). 970:Tham, Irene (26 September 2018). 944:Tham, Irene (25 September 2018). 710:Tham, Irene (12 September 2018). 551:from the original on 21 July 2018 528: 506: 372:National University Health System 181:Criminal Investigation Department 3238:Microarchitectural Data Sampling 2474:Ukrainian Power Grid Cyberattack 2382:Cyberterrorism attack of June 25 1646:Tham, Irene (31 December 2018). 1282:Kwang, Kevin (31 October 2018). 1256:Tan, Tam Mei (1 November 2018). 226:National Cancer Centre Singapore 146: 2586:2017 Ukraine ransomware attacks 2423:2014 JPMorgan Chase data breach 2154: 2128: 2101: 2082:Tham, Irene (14 January 2019). 2075: 2048: 2029:Yusof, Amir (1 November 2018). 2022: 2003:Tham, Irene (1 November 2018). 1996: 1970: 1944: 1918: 1899:Choo, Cynthia (6 August 2018). 1892: 1868:Wong, Pei Ting (23 July 2018). 1861: 1830: 1804: 1773: 1743: 1717: 1691: 1665: 1639: 1613: 1587: 1561: 1535: 1509: 1483: 1457: 1431: 1405: 1379: 1360:Tham, Irene (5 November 2018). 1353: 1334:Tham, Irene (2 November 2018). 1327: 1308:Tham, Irene (1 November 2018). 1301: 1275: 1249: 1230:Tham, Irene (31 October 2018). 1223: 1197: 1171: 1145: 1119: 1093: 1067: 1041: 1015: 989: 963: 937: 911: 885: 859: 833: 807: 781: 755: 729: 703: 416:Monetary Authority of Singapore 2418:2014 celebrity nude photo leak 1542:Sim, Fann (14 November 2018). 1178:Tham, Irene (5 October 2018). 672: 646: 620: 589: 563: 480: 449: 173:National Trades Union Congress 1: 2655:Bulgarian revenue agency hack 2433:Russian hacker password theft 2161:Kwang, Kevin (6 March 2019). 1837:Tham, Irene (3 August 2018). 516:Kwang, Kevin (20 July 2018). 442: 396:Information Exchange Gateways 191:Committee of Inquiry hearings 2789:Bangladesh Black Hat Hackers 2265:(publication of 2009 events) 788:Tham, Irene (24 July 2018). 653:Tham, Irene (24 July 2018). 570:Tham, Irene (20 July 2018). 456:Tham, Irene (20 July 2018). 429:Personal Data Protection Act 377: 185:Personal Data Protection Act 117: 7: 2650:Baltimore ransomware attack 1951:Hong, Jose (24 July 2018). 222:WannaCry ransomware attacks 177:Attorney-General's Chambers 114:was specifically targeted. 96:2018 SingHealth data breach 38:2018 SingHealth data breach 10: 3726: 2924:Tailored Access Operations 2571:WannaCry ransomware attack 2464:Ashley Madison data breach 2408:Anthem medical data breach 2325:PlayStation network outage 280:Advanced Persistent Threat 241:Singapore General Hospital 211:Singapore General Hospital 71:Advanced persistent threat 3612: 3596: 3550: 3494: 3463: 3407: 3386: 3340: 3299: 3268: 3259: 3030: 2947: 2777: 2677: 2660:WhatsApp snooping scandal 2637: 2611: 2553: 2525:Indian Bank data breaches 2487: 2446: 2400: 2364: 2338: 2292: 2255: 2248: 2219: 88:Unidentified state actors 84: 76: 66: 58: 50: 42: 3202:Speculative Store Bypass 2769:Ukrainian Cyber Alliance 2566:2017 Macron e-mail leaks 258:National Security Agency 3705:Healthcare in Singapore 2576:Westminster data breach 2495:Bangladesh Bank robbery 2438:2014 Yahoo! data breach 2428:2014 Sony Pictures hack 2387:2013 Yahoo! data breach 2372:South Korea cyberattack 2274:Operation Olympic Games 2269:Australian cyberattacks 20: 2919:Syrian Electronic Army 2629:SingHealth data breach 2392:Singapore cyberattacks 2330:RSA SecurID compromise 409:PricewaterhouseCoopers 46:27 June to 4 July 2018 32:considered for merging 3695:Internet in Singapore 3208:Lazy FP state restore 2992:Kristoffer von Hassel 2645:Sri Lanka cyberattack 2515:Vietnam Airport Hacks 2356:Operation High Roller 414:On 24 July 2018, the 405:Cyber Security Agency 246:Cyber Security Agency 128:Cyber Security Agency 3675:Hacking in the 2010s 3154:Silent Bob is Silent 2214:Hacking in the 2010s 1814:. Channel NewsAsia. 598:"Ministers' answers" 520:. Channel NewsAsia. 367:information security 348:On 15 January 2019, 151:On 6 August 2018 in 3088:SS7 vulnerabilities 2624:Atlanta cyberattack 2593:Equifax data breach 2351:Stratfor email leak 2300:Canadian government 2279:Operation ShadowNet 2116:on 11 November 2020 769:. 20 September 2018 363:Minister for Health 39: 3537:Petya and NotPetya 3166:ROCA vulnerability 2929:The Shadow Brokers 2855:Iranian Cyber Army 2781:persistent threats 2581:Petya and NotPetya 2545:2016 Bitfinex hack 2520:DCCC cyber attacks 2479:SWIFT banking hack 2063:on 7 November 2020 1575:. 14 November 2018 401:Ministry of Health 140:Ministry of Health 132:digital footprints 37: 3700:2018 in Singapore 3662: 3661: 3658: 3657: 3650:ZeroAccess botnet 2962:Mustafa Al-Bassam 2729:New World Hackers 2692:associated events 2673: 2672: 2469:VTech data breach 2320:Operation AntiSec 2284:Operation Payback 2243: 2242: 2141:The Straits Times 2088:The Straits Times 2009:The Straits Times 1957:The Straits Times 1843:The Straits Times 1792:on 2 October 2020 1761:on 2 October 2020 1730:The Straits Times 1704:The Straits Times 1679:. 10 January 2019 1652:The Straits Times 1600:The Straits Times 1522:The Straits Times 1496:The Straits Times 1470:The Straits Times 1444:The Straits Times 1418:The Straits Times 1366:The Straits Times 1340:The Straits Times 1314:The Straits Times 1262:The Straits Times 1236:The Straits Times 1184:The Straits Times 1106:The Straits Times 1054:The Straits Times 1002:The Straits Times 976:The Straits Times 950:The Straits Times 898:The Straits Times 846:The Straits Times 794:The Straits Times 716:The Straits Times 685:The Straits Times 659:The Straits Times 602:The Straits Times 576:The Straits Times 462:The Straits Times 273:Release of report 198:Microsoft Outlook 92: 91: 3717: 3266: 3265: 2939:Yemen Cyber Army 2263:Operation Aurora 2253: 2252: 2222: 2221: 2208: 2201: 2194: 2185: 2184: 2178: 2177: 2175: 2173: 2167:Channel NewsAsia 2158: 2152: 2151: 2149: 2147: 2132: 2126: 2125: 2123: 2121: 2105: 2099: 2098: 2096: 2094: 2079: 2073: 2072: 2070: 2068: 2052: 2046: 2045: 2043: 2041: 2035:Channel NewsAsia 2026: 2020: 2019: 2017: 2015: 2000: 1994: 1993: 1991: 1989: 1982:Channel NewsAsia 1974: 1968: 1967: 1965: 1963: 1948: 1942: 1941: 1939: 1937: 1922: 1916: 1915: 1913: 1911: 1896: 1890: 1889: 1887: 1885: 1865: 1859: 1858: 1856: 1854: 1834: 1828: 1827: 1825: 1823: 1808: 1802: 1801: 1799: 1797: 1788:. Archived from 1786:Channel NewsAsia 1777: 1771: 1770: 1768: 1766: 1755:Channel NewsAsia 1747: 1741: 1740: 1738: 1736: 1721: 1715: 1714: 1712: 1710: 1695: 1689: 1688: 1686: 1684: 1669: 1663: 1662: 1660: 1658: 1643: 1637: 1636: 1634: 1632: 1626:Channel NewsAsia 1617: 1611: 1610: 1608: 1606: 1591: 1585: 1584: 1582: 1580: 1565: 1559: 1558: 1556: 1554: 1548:Channel NewsAsia 1539: 1533: 1532: 1530: 1528: 1513: 1507: 1506: 1504: 1502: 1487: 1481: 1480: 1478: 1476: 1461: 1455: 1454: 1452: 1450: 1435: 1429: 1428: 1426: 1424: 1409: 1403: 1402: 1400: 1398: 1392:Channel NewsAsia 1383: 1377: 1376: 1374: 1372: 1357: 1351: 1350: 1348: 1346: 1331: 1325: 1324: 1322: 1320: 1305: 1299: 1298: 1296: 1294: 1288:Channel NewsAsia 1279: 1273: 1272: 1270: 1268: 1253: 1247: 1246: 1244: 1242: 1227: 1221: 1220: 1218: 1216: 1210:Channel NewsAsia 1201: 1195: 1194: 1192: 1190: 1175: 1169: 1168: 1166: 1164: 1158:Channel NewsAsia 1149: 1143: 1142: 1140: 1138: 1132:Channel NewsAsia 1123: 1117: 1116: 1114: 1112: 1097: 1091: 1090: 1088: 1086: 1080:Channel NewsAsia 1071: 1065: 1064: 1062: 1060: 1045: 1039: 1038: 1036: 1034: 1028:Channel NewsAsia 1019: 1013: 1012: 1010: 1008: 993: 987: 986: 984: 982: 967: 961: 960: 958: 956: 941: 935: 934: 932: 930: 924:Channel NewsAsia 915: 909: 908: 906: 904: 889: 883: 882: 880: 878: 863: 857: 856: 854: 852: 837: 831: 830: 828: 826: 820:Channel NewsAsia 811: 805: 804: 802: 800: 785: 779: 778: 776: 774: 759: 753: 752: 750: 748: 733: 727: 726: 724: 722: 707: 701: 700: 698: 696: 676: 670: 669: 667: 665: 650: 644: 643: 641: 639: 624: 618: 617: 615: 613: 593: 587: 586: 584: 582: 567: 561: 560: 558: 556: 547:. 20 July 2018. 537: 526: 525: 513: 504: 503: 501: 499: 484: 478: 477: 475: 473: 453: 40: 36: 3725: 3724: 3720: 3719: 3718: 3716: 3715: 3714: 3690:Internet events 3665: 3664: 3663: 3654: 3608: 3592: 3546: 3490: 3459: 3403: 3382: 3336: 3295: 3255: 3035: 3033:vulnerabilities 3026: 2943: 2836:(confederation) 2799:Charming Kitten 2780: 2773: 2709:Goatse Security 2669: 2633: 2607: 2598:Deloitte breach 2549: 2535:Dyn cyberattack 2483: 2442: 2413:Operation Tovar 2396: 2360: 2334: 2288: 2249:Major incidents 2244: 2215: 2212: 2182: 2181: 2171: 2169: 2159: 2155: 2145: 2143: 2133: 2129: 2119: 2117: 2106: 2102: 2092: 2090: 2080: 2076: 2066: 2064: 2053: 2049: 2039: 2037: 2027: 2023: 2013: 2011: 2001: 1997: 1987: 1985: 1976: 1975: 1971: 1961: 1959: 1949: 1945: 1935: 1933: 1924: 1923: 1919: 1909: 1907: 1897: 1893: 1883: 1881: 1866: 1862: 1852: 1850: 1835: 1831: 1821: 1819: 1810: 1809: 1805: 1795: 1793: 1778: 1774: 1764: 1762: 1749: 1748: 1744: 1734: 1732: 1722: 1718: 1708: 1706: 1696: 1692: 1682: 1680: 1671: 1670: 1666: 1656: 1654: 1644: 1640: 1630: 1628: 1618: 1614: 1604: 1602: 1592: 1588: 1578: 1576: 1567: 1566: 1562: 1552: 1550: 1540: 1536: 1526: 1524: 1514: 1510: 1500: 1498: 1488: 1484: 1474: 1472: 1462: 1458: 1448: 1446: 1436: 1432: 1422: 1420: 1410: 1406: 1396: 1394: 1384: 1380: 1370: 1368: 1358: 1354: 1344: 1342: 1332: 1328: 1318: 1316: 1306: 1302: 1292: 1290: 1280: 1276: 1266: 1264: 1254: 1250: 1240: 1238: 1228: 1224: 1214: 1212: 1202: 1198: 1188: 1186: 1176: 1172: 1162: 1160: 1150: 1146: 1136: 1134: 1124: 1120: 1110: 1108: 1098: 1094: 1084: 1082: 1072: 1068: 1058: 1056: 1046: 1042: 1032: 1030: 1020: 1016: 1006: 1004: 994: 990: 980: 978: 968: 964: 954: 952: 942: 938: 928: 926: 916: 912: 902: 900: 890: 886: 876: 874: 864: 860: 850: 848: 838: 834: 824: 822: 812: 808: 798: 796: 786: 782: 772: 770: 761: 760: 756: 746: 744: 734: 730: 720: 718: 708: 704: 694: 692: 677: 673: 663: 661: 651: 647: 637: 635: 626: 625: 621: 611: 609: 594: 590: 580: 578: 568: 564: 554: 552: 539: 538: 529: 514: 507: 497: 495: 486: 485: 481: 471: 469: 454: 450: 445: 380: 275: 193: 149: 120: 112:Lee Hsien Loong 35: 17: 12: 11: 5: 3723: 3713: 3712: 3707: 3702: 3697: 3692: 3687: 3682: 3677: 3660: 3659: 3656: 3655: 3653: 3652: 3647: 3642: 3637: 3632: 3627: 3622: 3616: 3614: 3610: 3609: 3607: 3606: 3600: 3598: 3594: 3593: 3591: 3590: 3585: 3580: 3575: 3570: 3565: 3560: 3554: 3552: 3548: 3547: 3545: 3544: 3539: 3534: 3529: 3524: 3519: 3514: 3509: 3504: 3498: 3496: 3492: 3491: 3489: 3488: 3483: 3478: 3473: 3467: 3465: 3461: 3460: 3458: 3457: 3452: 3447: 3442: 3437: 3432: 3427: 3422: 3420:Black Energy 3 3417: 3411: 3409: 3405: 3404: 3402: 3401: 3396: 3390: 3388: 3384: 3383: 3381: 3380: 3375: 3370: 3365: 3360: 3355: 3350: 3344: 3342: 3338: 3337: 3335: 3334: 3329: 3327:Metulji botnet 3324: 3319: 3314: 3309: 3303: 3301: 3297: 3296: 3294: 3293: 3288: 3283: 3281:Black Energy 2 3278: 3272: 3270: 3263: 3257: 3256: 3254: 3253: 3247: 3241: 3235: 3229: 3223: 3217: 3211: 3205: 3199: 3193: 3187: 3181: 3175: 3169: 3163: 3157: 3151: 3145: 3139: 3136:Broadcom Wi-Fi 3133: 3127: 3121: 3115: 3109: 3103: 3097: 3091: 3085: 3079: 3073: 3067: 3061: 3055: 3049: 3042: 3040: 3028: 3027: 3025: 3024: 3019: 3014: 3009: 3004: 2999: 2997:Junaid Hussain 2994: 2989: 2987:Jeremy Hammond 2984: 2982:Elliott Gunton 2979: 2974: 2969: 2964: 2959: 2953: 2951: 2945: 2944: 2942: 2941: 2936: 2931: 2926: 2921: 2916: 2914:Stealth Falcon 2911: 2906: 2901: 2896: 2891: 2889:PLA Unit 61486 2886: 2884:PLA Unit 61398 2881: 2879:Numbered Panda 2876: 2871: 2857: 2852: 2847: 2842: 2837: 2831: 2826: 2824:Equation Group 2821: 2816: 2811: 2806: 2801: 2796: 2791: 2785: 2783: 2775: 2774: 2772: 2771: 2766: 2761: 2756: 2751: 2746: 2741: 2736: 2731: 2726: 2721: 2716: 2711: 2706: 2701: 2696: 2695: 2694: 2683: 2681: 2675: 2674: 2671: 2670: 2668: 2667: 2662: 2657: 2652: 2647: 2641: 2639: 2635: 2634: 2632: 2631: 2626: 2621: 2615: 2613: 2609: 2608: 2606: 2605: 2600: 2595: 2590: 2589: 2588: 2578: 2573: 2568: 2563: 2557: 2555: 2551: 2550: 2548: 2547: 2542: 2537: 2532: 2527: 2522: 2517: 2512: 2507: 2502: 2497: 2491: 2489: 2485: 2484: 2482: 2481: 2476: 2471: 2466: 2461: 2456: 2450: 2448: 2444: 2443: 2441: 2440: 2435: 2430: 2425: 2420: 2415: 2410: 2404: 2402: 2398: 2397: 2395: 2394: 2389: 2384: 2379: 2374: 2368: 2366: 2362: 2361: 2359: 2358: 2353: 2348: 2342: 2340: 2336: 2335: 2333: 2332: 2327: 2322: 2317: 2315:HBGary Federal 2312: 2307: 2302: 2296: 2294: 2290: 2289: 2287: 2286: 2281: 2276: 2271: 2266: 2259: 2257: 2250: 2246: 2245: 2241: 2240: 2234: 2229: 2220: 2217: 2216: 2211: 2210: 2203: 2196: 2188: 2180: 2179: 2153: 2127: 2100: 2074: 2047: 2021: 1995: 1984:. 24 July 2018 1969: 1943: 1932:. 24 July 2018 1917: 1891: 1860: 1829: 1803: 1772: 1742: 1716: 1690: 1664: 1638: 1612: 1586: 1560: 1534: 1508: 1482: 1456: 1430: 1404: 1378: 1352: 1326: 1300: 1274: 1248: 1222: 1196: 1170: 1144: 1118: 1092: 1066: 1040: 1014: 988: 962: 936: 910: 884: 858: 832: 806: 780: 754: 728: 702: 671: 645: 619: 588: 562: 527: 505: 494:. 20 July 2018 479: 447: 446: 444: 441: 379: 376: 346: 345: 344: 343: 340: 337: 334: 331: 328: 325: 322: 319: 313: 312: 311: 308: 305: 302: 299: 296: 293: 274: 271: 192: 189: 148: 145: 119: 116: 90: 89: 86: 82: 81: 78: 74: 73: 68: 64: 63: 60: 56: 55: 52: 48: 47: 44: 15: 9: 6: 4: 3: 2: 3722: 3711: 3710:Data breaches 3708: 3706: 3703: 3701: 3698: 3696: 3693: 3691: 3688: 3686: 3683: 3681: 3678: 3676: 3673: 3672: 3670: 3651: 3648: 3646: 3643: 3641: 3638: 3636: 3633: 3631: 3628: 3626: 3623: 3621: 3618: 3617: 3615: 3611: 3605: 3602: 3601: 3599: 3595: 3589: 3586: 3584: 3581: 3579: 3576: 3574: 3571: 3569: 3566: 3564: 3561: 3559: 3556: 3555: 3553: 3549: 3543: 3540: 3538: 3535: 3533: 3530: 3528: 3525: 3523: 3520: 3518: 3515: 3513: 3510: 3508: 3505: 3503: 3500: 3499: 3497: 3493: 3487: 3484: 3482: 3479: 3477: 3474: 3472: 3469: 3468: 3466: 3462: 3456: 3453: 3451: 3450:Gameover ZeuS 3448: 3446: 3443: 3441: 3438: 3436: 3433: 3431: 3428: 3426: 3423: 3421: 3418: 3416: 3413: 3412: 3410: 3406: 3400: 3397: 3395: 3392: 3391: 3389: 3385: 3379: 3376: 3374: 3371: 3369: 3366: 3364: 3361: 3359: 3356: 3354: 3351: 3349: 3346: 3345: 3343: 3339: 3333: 3330: 3328: 3325: 3323: 3320: 3318: 3315: 3313: 3310: 3308: 3305: 3304: 3302: 3298: 3292: 3289: 3287: 3284: 3282: 3279: 3277: 3274: 3273: 3271: 3267: 3264: 3262: 3258: 3251: 3248: 3245: 3242: 3239: 3236: 3233: 3230: 3227: 3224: 3221: 3218: 3215: 3212: 3209: 3206: 3203: 3200: 3197: 3194: 3191: 3188: 3185: 3182: 3179: 3176: 3173: 3170: 3167: 3164: 3161: 3158: 3155: 3152: 3149: 3146: 3143: 3140: 3137: 3134: 3131: 3128: 3125: 3122: 3119: 3116: 3113: 3110: 3107: 3104: 3101: 3098: 3095: 3092: 3089: 3086: 3083: 3080: 3077: 3074: 3071: 3068: 3065: 3062: 3059: 3056: 3053: 3050: 3047: 3044: 3043: 3041: 3039: 3034: 3029: 3023: 3020: 3018: 3015: 3013: 3010: 3008: 3005: 3003: 3000: 2998: 2995: 2993: 2990: 2988: 2985: 2983: 2980: 2978: 2975: 2973: 2970: 2968: 2965: 2963: 2960: 2958: 2955: 2954: 2952: 2950: 2946: 2940: 2937: 2935: 2932: 2930: 2927: 2925: 2922: 2920: 2917: 2915: 2912: 2910: 2909:Rocket Kitten 2907: 2905: 2902: 2900: 2897: 2895: 2892: 2890: 2887: 2885: 2882: 2880: 2877: 2875: 2872: 2869: 2865: 2861: 2860:Lazarus Group 2858: 2856: 2853: 2851: 2848: 2846: 2843: 2841: 2838: 2835: 2832: 2830: 2827: 2825: 2822: 2820: 2817: 2815: 2812: 2810: 2807: 2805: 2802: 2800: 2797: 2795: 2792: 2790: 2787: 2786: 2784: 2782: 2776: 2770: 2767: 2765: 2762: 2760: 2757: 2755: 2752: 2750: 2747: 2745: 2742: 2740: 2737: 2735: 2732: 2730: 2727: 2725: 2722: 2720: 2717: 2715: 2712: 2710: 2707: 2705: 2702: 2700: 2697: 2693: 2690: 2689: 2688: 2685: 2684: 2682: 2680: 2676: 2666: 2663: 2661: 2658: 2656: 2653: 2651: 2648: 2646: 2643: 2642: 2640: 2636: 2630: 2627: 2625: 2622: 2620: 2617: 2616: 2614: 2610: 2604: 2603:Disqus breach 2601: 2599: 2596: 2594: 2591: 2587: 2584: 2583: 2582: 2579: 2577: 2574: 2572: 2569: 2567: 2564: 2562: 2559: 2558: 2556: 2552: 2546: 2543: 2541: 2538: 2536: 2533: 2531: 2528: 2526: 2523: 2521: 2518: 2516: 2513: 2511: 2508: 2506: 2503: 2501: 2498: 2496: 2493: 2492: 2490: 2486: 2480: 2477: 2475: 2472: 2470: 2467: 2465: 2462: 2460: 2457: 2455: 2452: 2451: 2449: 2445: 2439: 2436: 2434: 2431: 2429: 2426: 2424: 2421: 2419: 2416: 2414: 2411: 2409: 2406: 2405: 2403: 2399: 2393: 2390: 2388: 2385: 2383: 2380: 2378: 2377:Snapchat hack 2375: 2373: 2370: 2369: 2367: 2363: 2357: 2354: 2352: 2349: 2347: 2346:LinkedIn hack 2344: 2343: 2341: 2337: 2331: 2328: 2326: 2323: 2321: 2318: 2316: 2313: 2311: 2308: 2306: 2303: 2301: 2298: 2297: 2295: 2291: 2285: 2282: 2280: 2277: 2275: 2272: 2270: 2267: 2264: 2261: 2260: 2258: 2254: 2251: 2247: 2239: → 2238: 2235: 2233: 2230: 2228: 2225:←  2224: 2223: 2218: 2209: 2204: 2202: 2197: 2195: 2190: 2189: 2186: 2168: 2164: 2157: 2142: 2138: 2131: 2115: 2111: 2104: 2089: 2085: 2078: 2062: 2058: 2051: 2036: 2032: 2025: 2010: 2006: 1999: 1983: 1979: 1973: 1958: 1954: 1947: 1931: 1927: 1921: 1906: 1902: 1895: 1879: 1875: 1871: 1864: 1848: 1844: 1840: 1833: 1817: 1813: 1807: 1791: 1787: 1783: 1776: 1760: 1756: 1752: 1746: 1731: 1727: 1720: 1705: 1701: 1694: 1678: 1674: 1668: 1653: 1649: 1642: 1627: 1623: 1616: 1601: 1597: 1590: 1574: 1570: 1564: 1549: 1545: 1538: 1523: 1519: 1512: 1497: 1493: 1486: 1471: 1467: 1460: 1445: 1441: 1434: 1419: 1415: 1408: 1393: 1389: 1382: 1367: 1363: 1356: 1341: 1337: 1330: 1315: 1311: 1304: 1289: 1285: 1278: 1263: 1259: 1252: 1237: 1233: 1226: 1211: 1207: 1200: 1185: 1181: 1174: 1159: 1155: 1148: 1133: 1129: 1122: 1107: 1103: 1096: 1081: 1077: 1070: 1055: 1051: 1044: 1029: 1025: 1018: 1003: 999: 992: 977: 973: 966: 951: 947: 940: 925: 921: 914: 899: 895: 888: 873: 869: 862: 847: 843: 836: 821: 817: 810: 795: 791: 784: 768: 764: 758: 743: 739: 732: 717: 713: 706: 690: 686: 682: 675: 660: 656: 649: 633: 629: 623: 607: 603: 599: 592: 577: 573: 566: 550: 546: 542: 536: 534: 532: 523: 519: 512: 510: 493: 489: 483: 467: 463: 459: 452: 448: 440: 437: 432: 430: 424: 420: 417: 412: 410: 406: 402: 397: 392: 387: 385: 375: 373: 368: 364: 360: 355: 351: 341: 338: 335: 332: 329: 326: 323: 320: 317: 316: 314: 309: 306: 303: 300: 297: 294: 291: 290: 288: 287: 286: 283: 281: 270: 266: 262: 259: 254: 250: 247: 242: 237: 233: 229: 227: 223: 218: 214: 212: 208: 202: 199: 188: 186: 182: 178: 174: 171:firm and the 168: 166: 162: 158: 154: 147:Investigation 144: 141: 137: 133: 129: 125: 115: 113: 109: 105: 101: 97: 87: 83: 79: 75: 72: 69: 65: 61: 57: 53: 49: 45: 41: 33: 29: 28: 27:Infobox event 24: 19: 3685:Cyberattacks 3680:Cyberwarfare 3394:CryptoLocker 3148:DoublePulsar 2967:Cyber Anakin 2957:Ryan Ackroyd 2850:Helix Kitten 2845:Hacking Team 2840:Guccifer 2.0 2714:Lizard Squad 2628: 2530:Surkov leaks 2459:Hacking Team 2170:. Retrieved 2166: 2156: 2144:. Retrieved 2140: 2130: 2118:. Retrieved 2114:the original 2103: 2091:. Retrieved 2087: 2077: 2065:. Retrieved 2061:the original 2050: 2038:. Retrieved 2034: 2024: 2012:. Retrieved 2008: 1998: 1986:. Retrieved 1981: 1972: 1960:. Retrieved 1956: 1946: 1934:. Retrieved 1929: 1920: 1908:. Retrieved 1904: 1894: 1882:. Retrieved 1873: 1863: 1851:. Retrieved 1842: 1832: 1820:. Retrieved 1806: 1794:. Retrieved 1790:the original 1785: 1775: 1763:. Retrieved 1759:the original 1754: 1745: 1733:. Retrieved 1729: 1719: 1707:. Retrieved 1703: 1693: 1681:. Retrieved 1676: 1667: 1655:. Retrieved 1651: 1641: 1629:. Retrieved 1625: 1615: 1603:. Retrieved 1599: 1589: 1577:. Retrieved 1572: 1563: 1551:. Retrieved 1547: 1537: 1525:. Retrieved 1521: 1511: 1499:. Retrieved 1495: 1485: 1473:. Retrieved 1469: 1459: 1447:. Retrieved 1443: 1433: 1421:. Retrieved 1417: 1407: 1395:. Retrieved 1391: 1381: 1369:. Retrieved 1365: 1355: 1343:. Retrieved 1339: 1329: 1317:. Retrieved 1313: 1303: 1291:. Retrieved 1287: 1277: 1265:. Retrieved 1261: 1251: 1239:. Retrieved 1235: 1225: 1213:. Retrieved 1209: 1199: 1187:. Retrieved 1183: 1173: 1161:. Retrieved 1157: 1147: 1135:. Retrieved 1131: 1121: 1109:. Retrieved 1105: 1095: 1083:. Retrieved 1079: 1069: 1057:. Retrieved 1053: 1043: 1031:. Retrieved 1027: 1017: 1005:. Retrieved 1001: 991: 979:. Retrieved 975: 965: 953:. Retrieved 949: 939: 927:. Retrieved 923: 913: 901:. Retrieved 897: 887: 875:. Retrieved 871: 861: 849:. Retrieved 845: 835: 823:. Retrieved 819: 809: 797:. Retrieved 793: 783: 771:. Retrieved 766: 757: 745:. Retrieved 741: 731: 719:. Retrieved 715: 705: 693:. Retrieved 684: 674: 662:. Retrieved 658: 648: 636:. Retrieved 622: 610:. Retrieved 601: 591: 579:. Retrieved 575: 565: 553:. Retrieved 544: 496:. Retrieved 491: 482: 470:. Retrieved 461: 451: 433: 425: 421: 413: 391:Smart Nation 388: 381: 359:Gan Kim Yong 347: 315:Additional: 284: 276: 267: 263: 255: 251: 238: 234: 230: 219: 215: 203: 194: 169: 150: 121: 95: 93: 85:Participants 25: 18: 3630:NetTraveler 3568:LogicLocker 3476:Hidden Tear 3373:Red October 3232:Dragonblood 3142:EternalBlue 3106:Stagefright 2972:George Hotz 2949:Individuals 2699:CyberBerkut 2120:3 September 2067:3 September 2014:17 February 1910:3 September 1874:TODAYonline 1796:3 September 1765:3 September 1735:3 September 1709:3 September 1657:17 February 1579:17 February 581:3 September 545:TODAYonline 100:data breach 21:‹ The 3669:Categories 3573:Rensenware 3558:BrickerBot 3486:TeslaCrypt 3276:Bad Rabbit 3226:Foreshadow 3130:Cloudbleed 3082:Row hammer 3064:Shellshock 3058:Heartbleed 3046:Evercookie 3022:The Jester 2904:Red Apollo 2864:BlueNorOff 2834:GOSSIPGIRL 2829:Fancy Bear 2819:Elfin Team 2814:DarkMatter 2809:Dark Basin 2794:Bureau 121 2754:Teamp0ison 2679:Hacktivism 2310:DNSChanger 799:20 January 773:22 January 747:22 January 721:22 January 664:20 January 443:References 350:S. Iswaran 289:Priority: 157:S. Iswaran 153:Parliament 104:SingHealth 3604:VPNFilter 3481:Rombertik 3445:FinFisher 3435:DarkHotel 3399:DarkSeoul 3307:Coreflood 3172:BlueBorne 3124:Dirty COW 3038:disclosed 3036:publicly 2874:NSO Group 2804:Cozy Bear 2744:PayPal 14 2687:Anonymous 2561:SHAttered 2305:DigiNotar 1884:16 August 1853:16 August 1822:16 August 695:16 August 638:16 August 612:16 August 555:2 October 498:13 August 472:2 October 378:Aftermath 118:Discovery 62:Singapore 30:is being 3645:Titanium 3588:XafeCopy 3583:WannaCry 3512:KeRanger 3440:Duqu 2.0 3425:Carbanak 3244:BlueKeep 3220:SigSpoof 3178:Meltdown 3094:WinShock 3076:Rootpipe 2977:Guccifer 2899:Pranknet 2894:PLATINUM 2868:AndAriel 2779:Advanced 2734:NullCrew 2719:LulzRaft 2619:Trustico 2232:Timeline 1878:Archived 1847:Archived 1816:Archived 1683:22 April 689:Archived 632:Archived 606:Archived 549:Archived 522:Archived 492:MOH, MCI 466:Archived 436:Symantec 59:Location 51:Duration 34:. › 23:template 3542:X-Agent 3532:Pegasus 3415:Brambul 3378:Shamoon 3322:Kelihos 3312:Alureon 3291:Stuxnet 3261:Malware 3214:TLBleed 3196:Exactis 3184:Spectre 3118:Badlock 3052:iSeeYou 3017:Topiary 2749:RedHack 2739:OurMine 2724:LulzSec 384:removed 282:group. 165:malware 3625:Joanap 3578:Triton 3517:Necurs 3507:Jigsaw 3502:Hitler 3471:Dridex 3430:Careto 3353:Dexter 3286:SpyEye 3252:(2019) 3246:(2019) 3240:(2019) 3234:(2019) 3228:(2018) 3222:(2018) 3216:(2018) 3210:(2018) 3204:(2018) 3198:(2018) 3192:(2018) 3186:(2018) 3180:(2018) 3174:(2017) 3168:(2017) 3162:(2017) 3156:(2017) 3150:(2017) 3144:(2017) 3138:(2017) 3132:(2017) 3126:(2016) 3120:(2016) 3114:(2016) 3108:(2015) 3102:(2015) 3100:JASBUG 3096:(2014) 3090:(2014) 3084:(2014) 3078:(2014) 3072:(2014) 3070:POODLE 3066:(2014) 3060:(2014) 3054:(2013) 3048:(2010) 3031:Major 3012:Track2 2934:xDedic 2764:UGNazi 2172:2 July 2146:2 July 2093:3 July 2040:3 July 1988:3 July 1962:3 July 1936:3 July 1631:3 July 1605:3 July 1553:3 July 1527:3 July 1501:3 July 1475:3 July 1449:3 July 1423:3 July 1397:3 July 1371:3 July 1345:3 July 1319:3 July 1293:3 July 1267:3 July 1241:3 July 1215:3 July 1189:3 July 1163:3 July 1137:3 July 1111:3 July 1085:3 July 1059:2 July 1033:2 July 1007:2 July 981:2 July 955:2 July 929:2 July 903:2 July 877:2 July 851:2 July 825:2 July 98:was a 54:8 days 3640:Tinba 3527:Mirai 3455:Regin 3368:Mahdi 3363:Flame 3348:Carna 3332:Stars 3250:Kr00k 3190:EFAIL 3160:KRACK 3112:DROWN 2237:2020s 2227:2000s 1905:Today 872:Today 742:Today 77:Cause 3635:R2D2 3620:Grum 3613:2019 3597:2018 3563:Kirk 3551:2017 3522:MEMZ 3495:2016 3464:2015 3408:2014 3387:2013 3341:2012 3317:Duqu 3300:2011 3269:2010 3007:Sabu 2759:TDO 2704:GNAA 2638:2019 2612:2018 2554:2017 2488:2016 2447:2015 2401:2014 2365:2013 2339:2012 2293:2011 2256:2010 2174:2021 2148:2021 2122:2019 2095:2021 2069:2019 2042:2021 2016:2020 1990:2021 1964:2021 1938:2021 1912:2019 1886:2018 1855:2018 1824:2018 1798:2019 1767:2019 1737:2019 1711:2019 1685:2021 1659:2020 1633:2021 1607:2021 1581:2020 1555:2021 1529:2021 1503:2021 1477:2021 1451:2021 1425:2021 1399:2021 1373:2021 1347:2021 1321:2021 1295:2021 1269:2021 1243:2021 1217:2021 1191:2021 1165:2021 1139:2021 1113:2021 1087:2021 1061:2021 1035:2021 1009:2021 983:2021 957:2021 931:2021 905:2021 879:2021 853:2021 827:2021 801:2020 775:2020 749:2020 723:2020 697:2018 666:2020 640:2018 614:2018 583:2019 557:2018 500:2022 474:2018 407:and 207:NRIC 138:and 94:The 67:Type 43:Date 3358:FBI 3002:MLT 2866:) ( 1930:MAS 1677:MCI 1573:MCI 3671:: 2165:. 2139:. 2086:. 2033:. 2007:. 1980:. 1955:. 1928:. 1903:. 1876:. 1872:. 1845:. 1841:. 1784:. 1753:. 1728:. 1702:. 1675:. 1650:. 1624:. 1598:. 1571:. 1546:. 1520:. 1494:. 1468:. 1442:. 1416:. 1390:. 1364:. 1338:. 1312:. 1286:. 1260:. 1234:. 1208:. 1182:. 1156:. 1130:. 1104:. 1078:. 1052:. 1026:. 1000:. 974:. 948:. 922:. 896:. 870:. 844:. 818:. 792:. 765:. 740:. 714:. 687:. 683:. 657:. 604:. 600:. 574:. 543:. 530:^ 508:^ 490:. 464:. 460:. 361:, 352:, 159:, 155:, 2870:) 2862:( 2207:e 2200:t 2193:v 2176:. 2150:. 2124:. 2097:. 2071:. 2044:. 2018:. 1992:. 1966:. 1940:. 1914:. 1888:. 1857:. 1826:. 1800:. 1769:. 1739:. 1713:. 1687:. 1661:. 1635:. 1609:. 1583:. 1557:. 1531:. 1505:. 1479:. 1453:. 1427:. 1401:. 1375:. 1349:. 1323:. 1297:. 1271:. 1245:. 1219:. 1193:. 1167:. 1141:. 1115:. 1089:. 1063:. 1037:. 1011:. 985:. 959:. 933:. 907:. 881:. 855:. 829:. 803:. 777:. 751:. 725:. 699:. 668:. 642:. 616:. 585:. 559:. 502:. 476:.

Index

template
Infobox event
considered for merging
Advanced persistent threat
data breach
SingHealth
National Registration Identity Card
Lee Hsien Loong
Integrated Health Information Systems
Cyber Security Agency
digital footprints
Ministry of Communications and Information
Ministry of Health
Parliament
S. Iswaran
Minister for Communications and Information
malware
National Trades Union Congress
Attorney-General's Chambers
Criminal Investigation Department
Personal Data Protection Act
Microsoft Outlook
NRIC
Singapore General Hospital
WannaCry ransomware attacks
National Cancer Centre Singapore
Singapore General Hospital
Cyber Security Agency
National Security Agency
Advanced Persistent Threat

Text is available under the Creative Commons Attribution-ShareAlike License. Additional terms may apply.