Monday , August 3 2026

First Half Of 2024 Report
Bangladeshi 32.4% government websites face cyber attack: NAS report

National Attack Surface (NAS) report for the first half of 2024 reveals that 56.6% of cyberattacks in Bangladesh targeted educational institutions, indicating a serious lack of maintenance and updates for school websites, making them highly vulnerable.

During this period, 32.4% of attacks targeted government websites, revealing significant security flaws. The remaining 11% affected private and business websites, highlighting the broad reach of cyber threats in the country.

CISA alerts to cyberattacks affecting U.S. water utilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns of a big rise in attacks on internet-connected programmable logic controllers...
Read More
CISA alerts to cyberattacks affecting U.S. water utilities

“CyberStrike” AI-Driven Security Platform for Automated Testing

A new open-source project named CyberStrike aims to be the first AI tool made for offensive security. It can turn...
Read More
“CyberStrike” AI-Driven Security Platform for Automated Testing

AIDCQ Propose to invest $2 billion in AI data center in Bangladesh

Many countries are now showing interest to invest in the data center industry in Banglades especially in AI data centers....
Read More
AIDCQ Propose to invest $2 billion in AI data center in Bangladesh

NVIDIA BlueField Flaw Enables Code Execution Attacks

NVIDIA has revealed a big flaw with its BlueField DPUs and ConnectX networking systems. This issue could let attackers run...
Read More
NVIDIA BlueField Flaw Enables Code Execution Attacks

Massive customer data from India’s Bank of Baroda surfaced online

India's leading state-owned lender Bank of Baroda acknowledged Monday a security incident after reports that approximately 1 terabyte of customer...
Read More
Massive customer data from India’s Bank of Baroda surfaced online

Active Exploits Hit Fortinet, Arista: AI Discovered Linux Kernel Zero-Day

CISA has put the Fortinet FortiOS vulnerability CVE-2025-68686 in its list of known exploited flaws after ongoing attacks. The flaw...
Read More
Active Exploits Hit Fortinet, Arista: AI Discovered Linux Kernel Zero-Day

Sam Altman Claims AI “singularity” has arrived, Where Systems Improve by Themselves

OpenAI's CEO Sam Altman says that AI has reached a big milestone. The technology can now make itself better, leading...
Read More
Sam Altman Claims AI “singularity” has arrived, Where Systems Improve by Themselves

Shinyhunters claimed and set deadline to publish E&Y data

ShinyHunters has publicly claimed responsibility for the Ernst & Young (EY) data breach. The group posted a message on their...
Read More
Shinyhunters claimed and set deadline to publish E&Y data

Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security

Nvidia and over 30 tech firms started a group on Monday to create open-source AI tools for protecting against cyber...
Read More
Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security

Google Search Results Reportedly Show Claude AI Shared Chats

Claude's share links from Anthropic showed up in public search results. This raised new privacy worries for users who shared...
Read More
Google Search Results Reportedly Show Claude AI Shared Chats

Attack Patterns:

The NAS report, prepared by BCSI, also outlined the primary patterns of attacks across Bangladeshi websites:

Pie chart
        Image created by Canva, information source BCSI

* Attackers damaged the public image and functionality of 51.6% of websites by defacing them.
* 27.85% experienced DDoS attacks, disrupting services and access to important resources.
* 13.24% experienced significant data breaches, risking the exposure of sensitive information to unauthorized individuals.
* 7.31% of websites remained vulnerable because attackers still had access to their admin panels.

The National Attack Surface (NAS) report for the first half of 2024 reveals a concerning trend: 56.6% of cyberattacks in Bangladesh targeted educational institutions. This suggests a significant failure to maintain and update school websites, making them vulnerable to these attacks.

Meanwhile, The ransomware group “KillSec” has attacked “বঙ্গবন্ধু সরকারি কলেজ, তারাকান্দা, ময়মনসিংহ,” stealing sensitive data. They announced the breach on their Dark Web site on October 4th, revealing control over student records, academic data, and the college’s application systems. A countdown for the full data release is set for 7 days, 2 hours, and 59 minutes, but KillSec has not revealed their ransom demands.

According to KillSec’s description, the data they have taken includes:

File system structure, directory names, and file names
Application framework structure and database information
Error logs and configuration files
Student records, including academic data and course information
Student names, exam dates, subject names, grade levels, student IDs, and marks/scores
Institutional details like academic years, class sections, and curriculum details

This isn’t KillSec’s first attack on a Bangladeshi institution. Earlier this year, they breached a financial organization, raising concerns about the nation’s cybersecurity. Their recent attack on Bangabandhu Government College further establishes them as one of the most dangerous cyber threats to Bangladesh’s digital infrastructure.

Cyberattacks are becoming more common and advanced, so all sectors must focus on cybersecurity by updating systems regularly and training staff to handle threats effectively.

Related article:

Check Also

Bank of Baroda

Massive customer data from India’s Bank of Baroda surfaced online

India’s leading state-owned lender Bank of Baroda acknowledged Monday a security incident after reports that …