{"id":4314,"date":"2026-08-26T18:49:43","date_gmt":"2026-08-26T18:49:43","guid":{"rendered":"https:\/\/cyberasia.io\/?p=4314"},"modified":"2026-08-26T19:00:52","modified_gmt":"2026-08-26T19:00:52","slug":"bangladeshi-hacktivist-bnct-1360-attacks-bangladeshi-educational-institute-for-fun","status":"publish","type":"post","link":"https:\/\/cyberasia.io\/article\/defacement\/bangladeshi-hacktivist-bnct-1360-attacks-bangladeshi-educational-institute-for-fun\/","title":{"rendered":"Bangladeshi Hacktivist BNCT_1360 Attacks Bangladeshi Educational Institute For Fun?"},"content":{"rendered":"<p><!-- EXECUTIVE THREAT RADAR BADGE (BLUF) --><\/p>\n<div style=\"width: 100%;display: flex;align-items: center;justify-content: space-between;flex-wrap: wrap;gap: 12px;background: linear-gradient(90deg, rgba(239,68,68,0.15) 0%, rgba(249,115,22,0.05) 100%);border-left: 4px solid #ef4444;border-radius: 6px;padding: 14px 20px;margin-bottom: 24px\">\n<div style=\"display: flex;align-items: center;gap: 10px\">\n    <span style=\"display: inline-block;width: 10px;height: 10px;background-color: #ef4444;border-radius: 50%;box-shadow: 0 0 10px #ef4444\"><\/span><br \/>\n    <strong style=\"font-family: &apos;Fira Code&apos;, monospace;color: #ef4444;font-size: 0.9rem;letter-spacing: 0.05em\">INCIDENT_MONITORING \/\/ ACADEMIC_SECTOR_EXPLOITATION<\/strong>\n  <\/div>\n<div style=\"font-family: &apos;Fira Code&apos;, monospace;color: #a1a1aa;font-size: 0.85rem\">\n    THREAT_CELL: <span style=\"color: #f87171;padding: 2px 8px;border-radius: 4px;font-weight: bold\">BNCT_1360 (BLACK NIGHT CIVILIZATION TEAM)<\/span>\n  <\/div>\n<\/div>\n<p style=\"font-size: 1.08rem;line-height: 1.8;color: #e4e4e7\">In a striking display of opportunistic clout-chasing within South Asian cyber undergrounds, regional threat actors targeted a prominent <strong style=\"color: #f97316\">Bangladeshi Educational Institute<\/strong> web server to celebrate a social media subscriber milestone. The collective, operating under the moniker <mark style=\"background: #f97316;color: #000;padding: 2px 7px;border-radius: 3px;font-weight: 700\">BNCT_1360<\/mark> (Black Night Civilization Team), claimed responsibility for defacing Patgati Government Junior High School (<code style=\"color: #facc15\">pgjhs.edu.bd<\/code>) to commemorate reaching one thousand Telegram channel members.<\/p>\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"407\" height=\"504\" src=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_telegram_milestone_claim_censored.png\" alt=\"Bangladeshi Educational Institute - Telegram milestone claim by BNCT_1360 for CyberAsia\" class=\"wp-image-4312 size-large\" \/ loading=\"eager\" fetchpriority=\"high\" srcset=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_telegram_milestone_claim_censored.png 407w, https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_telegram_milestone_claim_censored-242x300.png 242w\" sizes=\"(max-width: 407px) 100vw, 407px\" \/><figcaption class=\"wp-element-caption\">Figure 1: Photographic evidence capturing BNCT_1360&#039;s Telegram broadcast claiming the compromise of pgjhs.edu.bd to celebrate reaching 1,000 members (invite links redacted by CyberAsia).<\/figcaption><\/figure>\n<h2 id=\"incident-overview\" style=\"color: #facc15\">1. Incident Overview and Target Institutional Profile<\/h2>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">The compromised domain belongs to <strong style=\"color: #f97316\">Patgati Government Junior High School (PGJHS)<\/strong>, a state-run academic establishment located in Gopalganj, Bangladesh. Serving hundreds of secondary students and administrative personnel, the institution maintains its primary digital portal on the national top-level academic domain (<code style=\"color: #facc15\">pgjhs.edu.bd<\/code>).<\/p>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">On August 24, 2026, threat actors gained unauthorized access to the web server&#8217;s root file system, replacing the legitimate school homepage with an intrusive dark-mode defacement index. Claim broadcasts published on Telegram explicitly framed the attack as an celebratory demonstration: <em>&#8220;Your website has been hacked to celebrate BNCT_1360 reaching 1K members.&#8221;<\/em><\/p>\n<p><!-- TARGET PROFILE DOSSIER (100% FULL-WIDTH TERMINAL BOX) --><\/p>\n<div style=\"width: 100%;border: 1px solid #f97316;border-radius: 6px;padding: 20px;margin: 26px 0\">\n<div style=\"display: flex;align-items: center;gap: 8px;margin-bottom: 14px\">\n    <strong style=\"font-family: &apos;Fira Code&apos;, monospace;color: #f97316;font-size: 1rem\">&gt; TARGET_PROFILE \/\/ ACADEMIC_INFRASTRUCTURE<\/strong>\n  <\/div>\n<ul style=\"margin: 0;padding-left: 24px;color: #d4d4d8;font-size: 0.95rem;line-height: 1.8\">\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #f97316\">Victim Organization:<\/strong> Patgati Government Junior High School (PGJHS)<\/li>\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #f97316\">Target Domain:<\/strong> <code style=\"color: #facc15\">https:\/\/pgjhs.edu.bd\/<\/code><\/li>\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #f97316\">Jurisdiction:<\/strong> Gopalganj District, Bangladesh (.edu.bd)<\/li>\n<li style=\"margin-bottom: 0\"><strong style=\"color: #f97316\">Attack Vector:<\/strong> Unauthorized Web File System Modification \/ Content Management Overwrite<\/li>\n<\/ul>\n<\/div>\n<h2 id=\"educational-institution-breach\" style=\"color: #facc15\">2. Targeting the Bangladeshi Educational Institute Sector: Milestone Exploitations<\/h2>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">The breach of a <strong style=\"color: #f97316\">Bangladeshi Educational Institute<\/strong> exemplifies the phenomenon of &#8220;milestone hacking&#8221; prevalent among low to mid-tier threat syndicates. Rather than executing strategic espionage, extortion, or disruptive ransomware, these groups treat public-facing institutional web assets as vanity scoreboards to prove technical activity to their followers.<\/p>\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"543\" src=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/pgjhs_bangladesh_school_defacement_wm.png\" alt=\"Bangladeshi Educational Institute - live defacement capture on pgjhs.edu.bd by BNCT_1360 for CyberAsia\" class=\"wp-image-4313 size-large\" \/ loading=\"lazy\" srcset=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/pgjhs_bangladesh_school_defacement_wm.png 1024w, https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/pgjhs_bangladesh_school_defacement_wm-300x159.png 300w, https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/pgjhs_bangladesh_school_defacement_wm-768x407.png 768w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Figure 2: Photographic evidence capturing the live web defacement of pgjhs.edu.bd displaying the Black Night Civilization Team (BNCT_1360) insignia and prayer tribute (CyberAsia intelligence visual).<\/figcaption><\/figure>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Interestingly, while the primary motivation was declared as a subscriber celebration, the embedded defacement message featured a dual ideological tone. Below their official insignia, the threat actors injected a religious tribute honoring martyrs: <em>&#8220;Your security is weak Peace and deep respect&#8230; honor to all those martyr brothers and sisters who sacrificed their lives&#8230; O Allah, grant them Jannatul Firdaus.&#8221;<\/em> This pairing of casual clout-farming with solemn religious invocations is a recurring hallmark of decentralized South Asian hacktivist aesthetics.<\/p>\n<p><!-- THREAT ACTOR DOSSIER (100% FULL-WIDTH TERMINAL BOX) --><\/p>\n<div style=\"width: 100%;border: 1px solid #facc15;border-radius: 6px;padding: 20px;margin: 26px 0\">\n<div style=\"display: flex;align-items: center;gap: 8px;margin-bottom: 14px\">\n    <strong style=\"font-family: &apos;Fira Code&apos;, monospace;color: #facc15;font-size: 1rem\">&gt; THREAT_ACTOR_DOSSIER \/\/ ATTRIBUTION_MATRIX<\/strong>\n  <\/div>\n<ul style=\"margin: 0;padding-left: 24px;color: #d4d4d8;font-size: 0.95rem;line-height: 1.8\">\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #facc15\">Threat Collective:<\/strong> BNCT_1360 (Black Night Civilization Team)<\/li>\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #facc15\">Affiliated Coalition:<\/strong> International Black Hat Hacker Group<\/li>\n<li style=\"margin-bottom: 8px\"><strong style=\"color: #facc15\">Regional Theater:<\/strong> Bangladesh and South Asian Cyber Underground<\/li>\n<li style=\"margin-bottom: 0\"><strong style=\"color: #facc15\">Tactical Profile:<\/strong> CMS Exploitation, Web Defacements, Clout-Driven Social Broadcasting<\/li>\n<\/ul>\n<\/div>\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"442\" height=\"681\" src=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_march3_disclaimer_wm.png\" alt=\"Bangladeshi Educational Institute - March 3 Telegram disclaimer by BNCT_1360 for CyberAsia\" class=\"wp-image-4315 size-large\" \/ loading=\"lazy\" srcset=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_march3_disclaimer_wm.png 442w, https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_march3_disclaimer_wm-195x300.png 195w\" sizes=\"auto, (max-width: 442px) 100vw, 442px\" \/><figcaption class=\"wp-element-caption\">Figure 3: Telegram intelligence telemetry from March 3 documenting BNCT_1360&#8217;s early compliance notice claiming the channel was strictly for gaming APKs and website demos (CyberAsia intelligence visual).<\/figcaption><\/figure>\n<h3 style=\"color: #f97316;font-size: 1.15rem;margin-top: 24px\">The Ideological Identity Crisis: From Gaming Disclaimers to Religious Defacements<\/h3>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">A retrospective analysis of the collective&#8217;s historical channel telemetry reveals a confusing, highly contradictory ideological trajectory. In early channel records dating back to <strong style=\"color: #f97316\">March 3, 2026<\/strong>, the channel administrator published an anxious, defensive notice directly addressed to the <em>&#8220;Telegram Team and Channel Members.&#8221;<\/em><\/p>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">In the March 3 disclaimer, the operator insisted that the channel was established solely for <code style=\"color: #facc15\">\"website and apk, gaming related content,\"<\/code> explicitly denying any involvement in illegal activities or weapon distribution to evade administrative bans from Telegram moderators. Yet, months later, the nascent team executed a sharp pivot, rebranding as the <strong style=\"color: #f97316\">Black Night Civilization Team<\/strong>, affiliating with the <em>International Black Hat Hacker Group<\/em>, and launching public web defacements against domestic educational infrastructure.<\/p>\n<p><!-- IDEOLOGICAL DISSONANCE DOSSIER (100% FULL-WIDTH TERMINAL BOX) --><\/p>\n<div style=\"width: 100%;border: 1px solid #facc15;border-radius: 6px;padding: 22px;margin: 26px 0\">\n<div style=\"display: flex;align-items: center;gap: 8px;margin-bottom: 14px\">\n    <strong style=\"font-family: &#039;Fira Code&#039;, monospace;color: #facc15;font-size: 1rem\">&gt; THREAT_TELEMETRY \/\/ IDEOLOGICAL_DISSONANCE<\/strong>\n  <\/div>\n<ul style=\"margin: 0;padding-left: 24px;color: #d4d4d8;font-size: 0.95rem;line-height: 1.8\">\n<li style=\"margin-bottom: 10px\"><strong style=\"color: #facc15\">March 3 Baseline:<\/strong> Timid disclaimers claiming non-malicious gaming APK modding to evade platform bans.<\/li>\n<li style=\"margin-bottom: 10px\"><strong style=\"color: #facc15\">August 24 Transformation:<\/strong> Pivot to aggressive &#8220;Black Hat&#8221; persona, targeting educational portals for subscriber vanity milestones.<\/li>\n<li style=\"margin-bottom: 0\"><strong style=\"color: #facc15\">Muddled Operational Doctrine:<\/strong> An awkward juxtaposition of casual clout-chasing with solemn religious invocations, demonstrating the lack of a mature, cohesive strategic ideology.<\/li>\n<\/ul>\n<\/div>\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"355\" height=\"391\" src=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_channel_bio_peaceful_manifesto_wm.png\" alt=\"Bangladeshi Educational Institute - BNCT_1360 channel biography and peaceful manifesto for CyberAsia\" class=\"wp-image-4317 size-large\" \/ loading=\"lazy\" srcset=\"https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_channel_bio_peaceful_manifesto_wm.png 355w, https:\/\/cyberasia.io\/people\/wp-content\/uploads\/2026\/08\/bnct1360_channel_bio_peaceful_manifesto_wm-272x300.png 272w\" sizes=\"auto, (max-width: 355px) 100vw, 355px\" \/><figcaption class=\"wp-element-caption\">Figure 4: Telegram channel profile of BNCT_1360 recording 1,052 subscribers and claiming a peaceful advocacy mission despite executing offensive web defacements (CyberAsia intelligence visual).<\/figcaption><\/figure>\n<h3 style=\"color: #f97316;font-size: 1.15rem;margin-top: 24px\">The &#8216;Peaceful Advocacy&#8217; Paradox: Rhetoric vs. Offensive Reality<\/h3>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Further illustrating the muddled doctrine of BNCT_1360 is the glaring paradox between the collective&#8217;s official channel biography and its real-world cyber activity. The group&#8217;s public profile, boasting <code style=\"color: #facc15\">1,052 subscribers<\/code> (confirming the achievement of their 1K milestone target), opens with traditional Islamic greetings and presents a pacifist mission statement:<\/p>\n<blockquote style=\"border-left: 3px solid #facc15;padding: 14px 18px;margin: 18px 0;color: #a1a1aa;font-style: italic;font-size: 0.95rem;line-height: 1.7\"><p>\n  &#8220;BNCT_1360 Team aims to raise awareness against discrimination, injustice, and oppression, unite people for positive purposes, and peacefully advocate for justice through digital platforms.&#8221;\n<\/p><\/blockquote>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">The contradiction between claiming to <strong style=\"color: #f97316\">peacefully advocate for justice<\/strong> while simultaneously joining the <em>International Black Hat Hacker Group<\/em> and compromising domestic secondary schools exemplifies the cognitive dissonance within immature hacktivist networks. The pursuit of social media notoriety and collective vanity frequently overtakes their stated ethical rhetoric, leading cells to target vulnerable academic servers simply to demonstrate technical dominance to their followers.<\/p>\n<h2 id=\"underground-syndication\" style=\"color: #facc15\">3. Regional Syndication and Underground Dynamics<\/h2>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">As highlighted in CyberAsia&#8217;s investigation on <a href=\"https:\/\/cyberasia.io\/article\/hacktivism\/underground-hacktivist-alliances\/\" style=\"color: #facc15;text-decoration: none\">Underground Hacktivist Alliances<\/a>, groups like BNCT_1360 frequently operate within loose, multi-admin alliance networks. Collectives across Bangladesh, India, Pakistan, and Indonesia routinely cross-promote each other&#8217;s defacements, sharing attack mirrors across syndicated channels to inflate perceived operational influence.<\/p>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Similar to recent opportunistic campaigns, including our analysis on how <a href=\"https:\/\/cyberasia.io\/article\/hacktivism\/indonesian-hackers-breach-russian-geological-engineering\/\" style=\"color: #facc15;text-decoration: none\">Indonesian threat actors breached Russian geological engineering portals<\/a>, these collectives leverage automated vulnerability scanners to identify unpatched third-party plugins, outdated PHP frameworks, and default administrative credentials across underfunded public sector portals.<\/p>\n<h3 style=\"color: #f97316;font-size: 1.15rem;margin-top: 24px\">Cross-Border Campaigns: Retaliatory Operations Against Indian Infrastructure<\/h3>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Beyond casual milestone defacements targeting domestic academic portals, telemetry indicates that <strong style=\"color: #f97316\">BNCT_1360 actively conducts cross-border cyber assaults targeting Indian infrastructure<\/strong>. Operating under the banner of regional resistance, the collective routinely deploys coordinated web application attacks, SQL injection exploits, and distributed denial-of-service (DDoS) barrages against Indian government, commercial, and educational web portals.<\/p>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">The group explicitly frames its persistent offensive against India as direct digital retaliation against <strong style=\"color: #f97316\">Islamophobia, communal tensions, and perceived anti-Muslim discrimination<\/strong> across the subcontinent. This operational dynamic mirrors the broader regional cyber conflicts documented in CyberAsia&#8217;s briefing on <a href=\"https:\/\/cyberasia.io\/article\/data-leak\/indonesian-group-xh4x-cyb3r-declares-war-on-india-data-leak-ddos\/\" style=\"color: #facc15;text-decoration: none\">XH4X CYB3R&#8217;s operations against India<\/a>, where allied South Asian collectives collaborate under unified geopolitical hashtags to strike common national targets.<\/p>\n<p><!-- ANTI-ISLAMOPHOBIA RETALIATION DOSSIER (100% FULL-WIDTH TERMINAL BOX) --><\/p>\n<div style=\"width: 100%;border: 1px solid #facc15;border-radius: 6px;padding: 22px;margin: 26px 0\">\n<div style=\"display: flex;align-items: center;gap: 8px;margin-bottom: 14px\">\n    <strong style=\"font-family: &#039;Fira Code&#039;, monospace;color: #facc15;font-size: 1rem\">&gt; OFFENSIVE_OPERATION \/\/ ANTI_ISLAMOPHOBIA_RETALIATION_AGAINST_INDIA<\/strong>\n  <\/div>\n<ul style=\"margin: 0;padding-left: 24px;color: #d4d4d8;font-size: 0.95rem;line-height: 1.8\">\n<li style=\"margin-bottom: 10px\"><strong style=\"color: #facc15\">Targeted Cyberspace:<\/strong> Indian public sector websites, municipal servers, and educational institutions.<\/li>\n<li style=\"margin-bottom: 10px\"><strong style=\"color: #facc15\">Stated Ideological Casus Belli:<\/strong> Retaliation against systemic Islamophobia, religious marginalization, and communal hostilities.<\/li>\n<li style=\"margin-bottom: 0\"><strong style=\"color: #facc15\">Coalition Mobilization:<\/strong> Synchronized operations coordinated alongside the <em>International Black Hat Hacker Group<\/em> to amplify DDoS traffic and defacement volume across Indian subdomains.<\/li>\n<\/ul>\n<\/div>\n<h2 id=\"technical-analysis\" style=\"color: #facc15\">4. Technical Analysis: Web Application Weaknesses in Public Academic Portals<\/h2>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Educational portals in developing regions frequently suffer from severe resource constraints, resulting in unpatched web application frameworks and shared hosting vulnerabilities. In alignment with techniques cataloged in the <a href=\"https:\/\/attack.mitre.org\/\" target=\"_blank\" rel=\"noopener noreferrer\" style=\"color: #facc15;text-decoration: none\">MITRE ATT&amp;CK Framework<\/a> under Exploit Public-Facing Application (T1190), attackers typically exploit arbitrary file upload vulnerabilities to upload web shells, enabling full write access over the web root index.<\/p>\n<h2 id=\"actionable-defense\" style=\"color: #facc15\">5. Actionable Defense: Hardening Academic and Public Sector Web Assets<\/h2>\n<p style=\"font-size: 1.05rem;line-height: 1.8;color: #d4d4d8\">Mitigating opportunistic defacements across academic portals requires rigorous baseline hygiene and robust perimeter filtering.<\/p>\n<h3 style=\"color: #f97316;font-size: 1.15rem;margin-top: 24px\">For Academic Institutions and Web Administrators:<\/h3>\n<ul style=\"margin-top: 10px;padding-left: 20px;line-height: 1.8;color: #d4d4d8\">\n<li><strong style=\"color: #facc15\">Disable Execution Permissions in Upload Directories.<\/strong> Configure web servers (Apache\/Nginx) to explicitly prohibit the execution of script extensions (<code style=\"color: #facc15\">.php<\/code>, <code style=\"color: #facc15\">.phtml<\/code>, <code style=\"color: #facc15\">.sh<\/code>) within user-accessible upload directories (<code style=\"color: #facc15\">\/uploads<\/code>, <code style=\"color: #facc15\">\/media<\/code>).<\/li>\n<li><strong style=\"color: #facc15\">Implement Web Application Firewall (WAF) Protections.<\/strong> Follow <a href=\"https:\/\/www.cisa.gov\/\" target=\"_blank\" rel=\"noopener noreferrer\" style=\"color: #facc15;text-decoration: none\">CISA Cybersecurity Guidelines<\/a> by deploying Cloudflare or ModSecurity rulesets to inspect incoming POST requests and block known web shell payloads and directory traversal vectors.<\/li>\n<li><strong style=\"color: #facc15\">Enforce Continuous File Integrity Monitoring (FIM).<\/strong> Set up automated integrity watchdogs to instantly alert administrators and auto-revert unauthorized modifications to index files (<code style=\"color: #facc15\">index.php<\/code>, <code style=\"color: #facc15\">index.html<\/code>).<\/li>\n<li><strong style=\"color: #facc15\">Maintain Secure Offline Backups and Credential Audits.<\/strong> Implement automated, offsite database and file backups. For confidential security incident reporting, submit via <a href=\"https:\/\/cyberasia.io\/secure-drop\/\" style=\"color: #facc15;text-decoration: none\">CyberAsia Secure Drop<\/a>.<\/li>\n<\/ul>\n<h3 style=\"color: #f97316;font-size: 1.15rem;margin-top: 24px\">For Students, Faculty, and Public Observers:<\/h3>\n<ul style=\"margin-top: 10px;padding-left: 20px;line-height: 1.8;color: #d4d4d8\">\n<li><strong>Do Not Submit Credentials on Altered Pages.<\/strong> If an academic portal displays unauthorized banners or unexpected defacements, immediately refrain from entering student IDs or passwords.<\/li>\n<li><strong>Notify Institutional IT Support Promptly.<\/strong> Report visual alterations directly to school administrators via official alternate communication channels.<\/li>\n<\/ul>\n<p><!-- ADSENSE THREAT INTEL DISCLAIMER --><\/p>\n<div style=\"margin-top: 40px;padding: 16px 20px;border-left: 3px solid #71717a;border-radius: 4px\">\n<p style=\"font-size: 0.85rem;line-height: 1.6;color: #a1a1aa;margin: 0\">\n    <em>Disclaimer: The information presented in this threat intelligence report is for educational and cybersecurity research purposes only. CyberAsia reports on cyber incidents to help organizations understand and defend against emerging threats. We do not provide hacking instructions, host stolen data, or endorse illegal activities.<\/em>\n  <\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>INCIDENT_MONITORING \/\/ ACADEMIC_SECTOR_EXPLOITATION THREAT_CELL: BNCT_1360 (BLACK NIGHT CIVILIZATION TEAM) In a striking display of opportunistic clout-chasing within South Asian cyber undergrounds, regional threat actors targeted a prominent Bangladeshi Educational Institute web server to celebrate a social media subscriber milestone. The collective, operating under the moniker BNCT_1360 (Black Night Civilization Team), claimed responsibility for defacing Patgati [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":4313,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1528],"tags":[1785,1809,1787,1774,1769,1771,1770,1811,1803,1784,1804,1775,1788,1810,1540,1776,1812,1777,1761,1772,1513,1783,1773,1786,60,1789,483,1752,1791,1799,1800,1798,1796,1263,1792,1790,1797,1801,1802,1257,1779,1782,1778,1781,1780,1808,1807,1805,1793,1795,1794,1806],"threat_actors":[],"class_list":["post-4314","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-defacement","tag-ancaman-siber-akademik","tag-anti-islamophobia-cyber-operations","tag-banglades-siber-saldiri","tag-bangladesh-cyber-attack","tag-bangladeshi-educational-institute","tag-black-night-civilization-team","tag-bnct_1360","tag-cross-border-hacktivism","tag-cyber-attack-sa-bangladesh","tag-deface-laman-web-sekolah","tag-defacement-ng-website-sa-paaralan","tag-educational-sector-cyber-threats","tag-egitim-sektoru-siber-tehditleri","tag-india-bangladesh-cyber-warfare","tag-india-cyber-attack","tag-international-black-hat-hacker-group","tag-international-black-hat-hacker-group-india","tag-milestone-hacking","tag-opportunistic-cyber-attacks","tag-patgati-government-junior-high-school","tag-penggodam-bangladesh","tag-peretasan-portal-pendidikan","tag-pgjhs-breach","tag-serangan-siber-bangladesh","tag-threat-intelligence","tag-web-sitesi-tahrifati","tag-website-defacement","tag-web","tag-1791","tag-1799","tag-1800","tag-1798","tag-1796","tag-1263","tag-1792","tag-1790","tag-1797","tag-1801","tag-1802","tag-1257","tag-1779","tag-1782","tag-1778","tag-1781","tag-1780","tag-1808","tag-1807","tag-1805","tag-1793","tag-1795","tag-1794","tag-1806"],"_links":{"self":[{"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/posts\/4314","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/comments?post=4314"}],"version-history":[{"count":3,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/posts\/4314\/revisions"}],"predecessor-version":[{"id":4319,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/posts\/4314\/revisions\/4319"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/media\/4313"}],"wp:attachment":[{"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/media?parent=4314"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/categories?post=4314"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/tags?post=4314"},{"taxonomy":"threat_actor","embeddable":true,"href":"https:\/\/cyberasia.io\/people\/wp-json\/wp\/v2\/threat_actors?post=4314"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}