• 3 minuti
  • Pubblicato

MUIS: No mass data leak after ransomware hits mosque payroll system

Barbara Carminati Autrice di cybersecurity e privacy QWERTYmag

Scritto da Barbara Carminati

MUIS: No mass data leak after ransomware hits mosque payroll system QWERTYmag © www.qwertymag.it
MUIS: No mass data leak after ransomware hits mosque payroll system © www.qwertymag.it

Singapore's Islamic Religious Council says no large-scale data theft occurred after a ransomware attack on the SmartHRMS payroll system. Data was recovered, operations continued, and no ransom was paid.

Singapore's Islamic Religious Council (MUIS) says there was no ransom, no mass data leak, and no disruption to religious services after a ransomware attack on the SmartHRMS payroll system used by mosques and madrasahs. Early concerns about stolen sensitive data have not been confirmed by investigators.

The breach was first spotted by software vendor Avelogic on August 30 and 31. The system holds names, contact details, salaries, and bank account numbers for staff at 48 mosques, four madrasahs, the Islamic Learning Hub and Management Office, and Mosque-Madrasah-Wakaf Shared Services. MUIS says this data was encrypted at the application level, and independent cybersecurity experts have found no sign that large amounts of information were stolen. Forensic analysis using AWS telemetry showed that malicious activity was limited to a short period, with no evidence of mass data transfer.

Avelogic, which provides SmartHRMS, quickly recovered the affected data and brought in outside specialists to review the incident. MUIS filed a police report and confirmed that no ransom was paid. The payroll system is still offline for further checks, but staff have continued to receive their salaries through alternative arrangements. Avelogic also clarified that the incident affected clients in several sectors, not just religious organizations, and that recovery followed strict cybersecurity procedures.

While earlier reports in the Straits Times raised concerns about exposed HR records, MUIS now says all affected institutions have stayed open, with no impact on religious or public services. The Cyber Security Agency of Singapore is supporting MUIS as the investigation continues. As of September 17, authorities and contractors were still reviewing the case, and no official numbers on data loss or financial impact have been released.

  • "Independent forensic analysis found no evidence of large-scale data exfiltration, with sensitive fields in SmartHRMS protected by application-level encryption and AWS telemetry confirming limited malicious activity." - Avelogic Forensics Team, Incident Response Lead

    This case comes amid a rise in ransomware attacks across the region, including recent incidents targeting critical infrastructure. In contrast, the MUIS case was contained quickly, with open communication and no ransom negotiations.

    Singapore's approach here is straightforward: strong encryption, fast response, and a refusal to pay ransoms can limit the damage from even serious attacks. Payroll and essential services continued without interruption, showing the value of contingency planning and cooperation between agencies. For organizations handling sensitive data, the takeaway is clear: proactive security and operational resilience are essential defenses against ransomware.

  • Articoli correlati