Hundreds of Batam SPMB Data Allegedly Leaked, Security Systems Tightened
Allegations of a data leak involving participants of the New Student Admissions Selection (SPMB) in Batam City have resurfaced following indications that approximately 1,495 registrant data entries were exposed in a cyber security incident. The government, together with relevant parties, is now tightening the security system and accelerating the digital investigation process.
Handling of the case is currently ongoing under the coordination of the National Cyber and Crypto Agency (BSSN), which is conducting digital forensics to ascertain whether the data was truly accessed by irresponsible parties and to trace the perpetrators through Internet Protocol (IP) address analysis.
As an initial mitigation measure, the Batam City SPMB application system has been reinforced with the installation of Endpoint Detection and Response (EDR). This technology functions as an early detection system for suspicious activities, including potential cyber-attacks or malware intrusions into the system.
Head of the Batam City Communication and Informatics Agency (Diskominfo), Rudy Pandjaitan, stated that the system strengthening measures resulted from cross-agency coordination between Diskominfo, the Education Agency, and the Ministry of Communication and Digital Affairs. He explained that the EDR installation is part of efforts to strengthen the resilience of public service systems within the Batam City Government.
“This device is used to detect early if there is abnormal activity or indications of an attack, so that preventive measures can be taken immediately,” he said on Friday (3/7).
Currently, the digital forensics team from BSSN is still conducting an in-depth investigation of the affected system. In addition, an information technology audit is also being carried out to verify the validity of the data leak claims that had previously circulated. Diskominfo emphasised that the identity of the perpetrator cannot yet be confirmed. The entire technical investigation process is fully under the authority of BSSN.
Following up on the incident, the regional government has also requested all electronic system operators (PSE) within the Batam City Government to tighten cyber security standards. Every public service application is required to implement standard operating procedures (SOP) for security and an early warning system to detect digital threats.
From the regional institutional side, the management of the affected education system is under the coordination of the Batam City Education Agency, which is also collaborating in the security evaluation process of the new student admissions system.
Previously, the alleged data leak surfaced after a claim from an unknown party stating they possessed SPMB participant registration data and disseminated it on a digital forum. The Batam City Government confirmed that the investigation is still ongoing to identify the source of the leak and to strengthen the security of public service systems going forward.