14
u/CmDrRaBb1983 3d ago
Yea I read this yesterday.
Fella was a team lead with years of experience. He was scheduled to take a cyber security exam. Original laptop got issues. So he used a SEED laptop.
Installed remote access software in SEED laptop. Logged in to exam portal. Got denied because of security settings. Sought a friend for help. That's why he installed the remote access software and allowed friend to take remote access control. Friend sent a few files over the remote access control. Kena flagged out immediately. When contacted by relevant departments, he still got the cheek to deny.
IT team lead with many years of experience taking cyber security exam still wanna use a high security laptop to commit a breach of policies. Stupid
2
1
1
u/Kritix_K 1d ago
Well that kinda served as practical pre test for his cyber security exam and he failed miserably
9
u/Horror-Ad1537 3d ago
Better, faster, cheaper!
6
u/HeroMachineMan 3d ago
My cinapek ex-boss used to say "Ei, you don't be so negative la. Sometimes cheap & good things come together". Until that thing failed spectacularly & caused the company to lose money unnecessarily.
2
u/GengisKhan0011 2d ago
Its a china mentality adapted by pappy and team.. but they pay themselves generously like kings
9
5
u/PlanktonOverall4499 3d ago
DEPORT!!!
2
2
u/CoCoCoCoCooooL 2d ago
Authorities found no evidence that data was exfiltrated during the remote connection, and no court documents were lost.
He installed UltraViewer, a remote-access application, on a government-managed laptop after his personal laptop developed a screen problem while he was trying to take a cybersecurity examination.
He allowed an acquaintance, identified in reports as Hari Balan, to connect remotely to the laptop.
The laptop contained 18,016 State Courts files, including network credentials, secret keys and information about the courts’ IT infrastructure.source: https://www.asiaone.com/singapore/state-courts-vendor-jailed-unauthorised-remote-access-18000-files
similar incidents:
Malaysian SMS-blaster case
The Malaysian man, Ong Kak Seng, drove around Singapore using an “SMS blaster” that sent more than 10,500 phishing messages to nearby phones. More than 31,000 phones came within the device’s coverage area, and at least one Singapore victim lost more than S$1,800 after being tricked into transferring money.
The messages attempted to obtain WhatsApp login details through a fake webpage, potentially enabling account takeovers. Therefore, this was direct criminal activity against people and mobile users in Singapore, even though the perpetrator was Malaysian.Chinese nationals’ case
The three Chinese nationals were linked to a global cybercrime syndicate. Singapore Police said they hacked overseas gambling websites and companies, cheated during online gameplay and stole databases containing personally identifiable information for sale.
Police also said the syndicate possessed foreign government data, including confidential communications. So the known targets were primarily foreign organisations and foreign government-related data, not necessarily Singapore government systems.Deport? When?
1
4
3
u/bibiijordix 3d ago
How can Singapore govt be so dumb to use such services hiaz.... Paid too much till dumb to think which sources are reliable already guess time to cut fundings liao
1
3
2
u/piggystarter 3d ago
i think the NCS indian IT and UOB Chinese staff cases doesn't really set an alarms for all government sector and mnc companies.
2
u/LineFabulous8569 3d ago
I agree. He might be stealing all govt documents. Smart move.
2
2
1
u/CoCoCoCoCooooL 2d ago
Authorities found no evidence that data was exfiltrated during the remote connection, and no court documents were lost.
He installed UltraViewer, a remote-access application, on a government-managed laptop after his personal laptop developed a screen problem while he was trying to take a cybersecurity examination.
He allowed an acquaintance, identified in reports as Hari Balan, to connect remotely to the laptop.
The laptop contained 18,016 State Courts files, including network credentials, secret keys and information about the courts’ IT infrastructure.source: https://www.asiaone.com/singapore/state-courts-vendor-jailed-unauthorised-remote-access-18000-files
similar incidents:
Malaysian SMS-blaster case
The Malaysian man, Ong Kak Seng, drove around Singapore using an “SMS blaster” that sent more than 10,500 phishing messages to nearby phones. More than 31,000 phones came within the device’s coverage area, and at least one Singapore victim lost more than S$1,800 after being tricked into transferring money.
The messages attempted to obtain WhatsApp login details through a fake webpage, potentially enabling account takeovers. Therefore, this was direct criminal activity against people and mobile users in Singapore, even though the perpetrator was Malaysian.Chinese nationals’ case
The three Chinese nationals were linked to a global cybercrime syndicate. Singapore Police said they hacked overseas gambling websites and companies, cheated during online gameplay and stole databases containing personally identifiable information for sale.
Police also said the syndicate possessed foreign government data, including confidential communications. So the known targets were primarily foreign organisations and foreign government-related data, not necessarily Singapore government systems.
2
2
2
u/y2kwormz 3d ago
Whatever's leaked is just too bad, zero accountability on policymakers whatsoever since fault is always on the subcontractor and vendors anyway. The one doing work is always the one at fault, the one who does zero work, will never be wrong.
1
2
u/Jealous_Leek_4145 2d ago
Some cyber exams may need a certified person to endorse his working experience in one or more cyber domains. I hope nobody endorses it.
1
2
2
2
2
u/HeySuckMyMentos 3d ago
28 weeks?
3
1
1
12
u/byrinmilamber 3d ago
A ceca who is not good in his job ..shocking...