Blog & News

Stay Ahead With Simply Data

Explore expert insights, industry news, and updates about our services.

FortiClient EMS Zero-Day CVE-2026-35616: Patch Now

FortiClient EMS Zero-Day CVE-2026-35616: Patch Now

CVE-2026-35616 is a critical (CVSS 9.1) pre-authentication remote code execution zero-day in Fortinet FortiClient EMS — the management server that pushes endpoint-security policy to every FortiClient-managed device in an organisation. An unauthenticated attacker who reaches the EMS API can bypass all authentication and authorisation controls, execute arbitrary code on the server, and take command over […]

What Does a DFIR Report Contain? Inside a Simply Data Digital Forensics Investigation

What Does a DFIR Report Contain? Inside a Simply Data Digital Forensics Investigation

What Is a DFIR Report? A DFIR report is the final deliverable from a Digital Forensics and Incident Response engagement. Unlike a standard IT incident report, a DFIR report is structured as forensic evidence — meaning every finding is tied to a specific artefact, every conclusion is supported by documented evidence, and every gap in […]

IoT Penetration Testing: Real Findings from 7 Enterprise IoT Devices

IoT Penetration Testing: Real Findings from 7 Enterprise IoT Devices

What actually happens during IoT penetration testing? Our team physically tested 7 enterprise IoT devices — CCTV, NVR, intercoms, facial recognition — and found real vulnerabilities including a live firmware extraction proof-of-concept.

Why Your Business Needs Real-Time Security Intelligence to Stay Ahead of Cyber Threats

Why Your Business Needs Real-Time Security Intelligence to Stay Ahead of Cyber Threats

In today’s interconnected world, businesses are under constant threat from cybercriminals looking to exploit vulnerabilities in digital infrastructure. To stay ahead, organizations must invest in real-time security intelligence, a critical aspect of a Security Operations Center (SOC). Simply Data Threat Intelligence Database, specifically built for Malaysia, offers actionable insights to help businesses detect, prevent, and […]

Penetration Testing Malaysia: What Is VAPT, Why Your Business Needs It, and What to Look For in a Provider

Penetration Testing Malaysia: What Is VAPT, Why Your Business Needs It, and What to Look For in a Provider

Penetration testing in Malaysia is now a regulatory requirement for financial institutions and a best practice for all businesses. Learn what VAPT covers, what NACSA and BNM RMiT require, and how to choose a CREST-certified provider.

PDPA Malaysia 2024 Amendment: What Every Malaysian Business Must Do Before You Get Fined

PDPA Malaysia 2024 Amendment: What Every Malaysian Business Must Do Before You Get Fined

Malaysia’s PDPA Amendment Act 2024 introduces mandatory 72-hour breach notifications, fines up to RM1 million, and expanded data subject rights. Here’s what your business must do to stay compliant in 2025 and beyond.

1 2 3 4 8
Simply Data Sdn Bhd Becomes a Licensed Provider in SOC and Pentest by NACSA

Simply Data Sdn Bhd Becomes a Licensed Provider in SOC and Pentest by NACSA

As a NACSA certified licensed SOC pentest provider in Malaysia, Simply Data meets the stringent requirements set by the National Cyber Security Agency for delivering Security Operations Centre and penetration testing services. This recognition is a mark of technical excellence in the Malaysia cybersecurity industry. Simply Data Sdn Bhd is pleased to announce that we […]

Simply Data Sdn Bhd Achieves ISO 27001:2022 Certification

Simply Data Sdn Bhd Achieves ISO 27001:2022 Certification

ISO 27001 certification Malaysia demonstrates Simply Data commitment to the highest standards of information security management. This internationally recognised certification confirms our processes meet rigorous requirements for protecting client data and managing security risks. We are proud to announce that Simply Data Sdn Bhd has achieved the ISO 27001:2022 certification, affirming our commitment to the […]

Simply Data Sdn Bhd Announces Key Industry Certifications and Achievements

Simply Data Sdn Bhd Announces Key Industry Certifications and Achievements

Our growing portfolio of cybersecurity certifications Malaysia businesses can rely on reflects Simply Data ongoing investment in quality, compliance, and technical excellence. Each certification represents a commitment to meeting the highest standards in our industry. 1. Simply Data Earns MSC Status from MDEC for Cybersecurity Certifications Malaysia We are thrilled to announce that Simply Data […]

1 2
PDPA Data Breach Notification Malaysia: What You Must Do Within 72 Hours

PDPA Data Breach Notification Malaysia: What You Must Do Within 72 Hours

Malaysia’s 2024 PDPA amendments make data breach notification mandatory. Step-by-step guide to the 72-hour reporting requirement, who to notify, and how to avoid penalties.

BNM RMiT Compliance Checklist 2026: What Malaysian Financial Institutions Must Do

BNM RMiT Compliance Checklist 2026: What Malaysian Financial Institutions Must Do

A practical BNM RMiT compliance checklist for Malaysian financial institutions in 2026, covering Domain 10 cybersecurity requirements, Domain 11 resilience, man

PDPA Compliance Malaysia 2026: Complete Guide for Businesses

PDPA Compliance Malaysia 2026: Complete Guide for Businesses

A complete guide to PDPA compliance in Malaysia for 2026, covering the 7 data protection principles, 2024 amendments, mandatory breach notification, and an 8-st

Cyber Security Act 2024 Malaysia: What Every Business Must Know

Cyber Security Act 2024 Malaysia: What Every Business Must Know

The Cyber Security Act 2024 (CSA 2024) introduces mandatory licensing, incident reporting, and penalties up to RM 500,000 for Malaysian businesses. Here’s your

1 2
Ransomware Hits Malaysian Critical Infrastructure: Lessons From the KTMB Leak-Site Claim

Ransomware Hits Malaysian Critical Infrastructure: Lessons From the KTMB Leak-Site Claim

A ransomware group reportedly claimed KTMB on a public leak site. Learn what Malaysian NCII operators must do under the Cyber Security Act 2024 — and a 6-step hardening checklist.

Critical Infrastructure Malaysia 2026: Cyber Attacks, NACSA Advisories & Protection Guide

Critical Infrastructure Malaysia 2026: Cyber Attacks, NACSA Advisories & Protection Guide

Protecting critical infrastructure Malaysia from cyber attacks is a national security priority. With NACSA designating 11 CNII sectors, here are the latest advisories, real attack cases, and protection strategies for 2026.

Cybersecurity Framework Malaysia: NIST vs ISO 27001 vs CIS Controls Compared

Cybersecurity Framework Malaysia: NIST vs ISO 27001 vs CIS Controls Compared

Choosing the right cybersecurity framework Malaysia — NIST CSF, ISO 27001, or CIS Controls — shapes your entire security programme. Side-by-side comparison with Malaysia-specific guidance for CISOs and IT leaders.

Vulnerability Assessment Malaysia vs Penetration Testing: Key Differences Explained

Vulnerability Assessment Malaysia vs Penetration Testing: Key Differences Explained

VA vs PT: what each covers, when each is required, pricing benchmarks and what deliverables to expect — a practical guide for Malaysian organisations planning their cybersecurity programme.

What Does a Compromise Assessment Report Contain? A Complete Guide for Malaysian Organisations

What Does a Compromise Assessment Report Contain? A Complete Guide for Malaysian Organisations

What Is a Compromise Assessment Report? A compromise assessment report is the formal deliverable produced at the end of a Compromise Assessment engagement. It documents every suspicious activity detected across your environment during a defined observation window, the analyst’s investigation verdict for each indicator, and the recommended remediation steps. Unlike a penetration testing report — […]

MDR vs MSSP Malaysia: Which Managed Security Service Does Your Business Need?

MDR vs MSSP Malaysia: Which Managed Security Service Does Your Business Need?

MDR and MSSP are not the same thing — and choosing the wrong one for your Malaysian business can leave critical gaps. This guide compares both models, pricing,

SIEM Malaysia: What It Is, How It Works & Whether Your Business Needs It

SIEM Malaysia: What It Is, How It Works & Whether Your Business Needs It

Understand what SIEM is, how it works, whether your Malaysian business needs it, and how it helps with BNM RMiT compliance, PDPA audit trails, and the Cyber Sec

VAPT Penetration Testing Malaysia: How We Scope & Size Your Security Assessment

VAPT Penetration Testing Malaysia: How We Scope & Size Your Security Assessment

Before any penetration testing engagement begins, Simply Data conducts a structured scoping exercise with the client. This step is what separates a meaningful security assessment from a checkbox exercise. In Malaysia’s regulatory environment, where Bank Negara Malaysia (BNM) RMiT, PDPA, and the Cyber Security Act 2024 impose specific obligations on organisations, getting the scope right […]

SOC-as-a-Service Malaysia: What It Is, How It Works & What to Look For

SOC-as-a-Service Malaysia: What It Is, How It Works & What to Look For

For many Malaysian businesses, the question is no longer whether to invest in a Security Operations Centre — it is whether to build one or buy one. Building an in-house SOC requires significant capital investment: specialised security analysts, enterprise SIEM platforms, 24/7 shift rotations, threat intelligence feeds, and ongoing training. For most Malaysian SMEs, mid-market […]

1 2 3

Get Your Free
Consultation Now!

We’re here to help! Whether you have questions about our Services!