ITS strengthens cybersecurity following hacking incident
FEU Advocate
July 13, 2020 11:58

File photo
Far Eastern University (FEU) Information Technology Services (ITS) has been taking different measures to secure stakeholder’s data after the hacking of Student Portal.
After incident reports, ITS disabled the Student Portal's public URL address and advised the students to change their passwords while investigation is ongoing.
“As an immediate response to this alleged intrusion of the Student Portal, we disabled its public URL address. ITS prompted all FEU students to change their passwords in their other FEU accounts as an initial security measure,” IT Head Victorino Tolosa II told FEU Advocate.
Upon verification, Tolosa confirmed the post included names of 44 existing FEU students with student ID, name, postal address, FEU email address, student portal password, birthday, program, and contact number.
Students identified in the uploaded link were directly contacted through their Microsoft Outlook and Canvas accounts.
The message read, “We regret to inform you that you are receiving this message because your personal information was compromised in an attack on FEU student portal last June 17, 2020.”
The University filed a report to the National Privacy Commission (NPC) upon receipt of reports and was acknowledged a day after, assigning the University with corresponding reference of NPC BN No. 20-105.
Together with the NPC-accredited third-party cybersecurity service provider, ITS is in the process of strengthening the “vulnerability” of the Student Portal and hardening application security.
Hacking incident
On June 17 about 1:00 am, ITS received reports regarding an online post containing personal data of at least 500 FEU students on a “pastebin” website.
Tolosa furthered, the hackers used a Structured Query Language (SQL) injection attack known to execute malicious SQL statements which control a database server behind a web application.
Prior the incident, a report from Philippine News (PhilNews) released last June 4 claimed an alleged breach of 300,000 students and faculty members’ data including SSS, PAGIBIG, and TIN accounts.
Tolosa did not confirm nor deny the alleged incident as it is still under investigation. He added that the FEU Data Privacy Office will release additional information to keep the students informed and updated.
“The FEU Data Privacy Office will also be releasing FAQs so we can collectively combat this digital challenge,” Tolosa ended.
- Dianne M. Romero and Janna Mae Bobier
Other Stories

Organisasyong magsusulong ng wikang Filipino sa FEU, itinatag
May 16, 2021 11:41

FEU’s Tolentin scores 2 to keep undefeated record
April 13, 2024 11:14

FEU IL Dean steps down after 9 years in service
January 26, 2023 09:40

The Pillars Behind Greatness: Arwind Santos recalls parents’ impact on journey during tribute speech
August 12, 2020 09:55

FEU stumbles on fourth quarter run by UE, 58-65
October 07, 2023 14:41

FEU-SSO controls fire incident on time
June 02, 2016 22:36

FEUCSO, student-led orgs nanawagan sa COMELEC: voter’s registration, palawigin
September 03, 2021 09:22

FEU SDev recognizes 3 Tamaraw honorees for TOSS award 2023
July 30, 2023 08:55

FEU Nursing student hailed as Miss Manila 2023 2nd runner up
June 28, 2023 12:18

FEU studes express dismay over 2nd semester enrollment
January 09, 2024 05:04