Research & News

Industry news, security insights, and technical deep dives from our cybersecurity experts.

Clickjacking vulnerability in Mozilla Firefox (CVE-2026-12322)
clickjacking cve firefox browser-security vulnerability

Clickjacking vulnerability in Mozilla Firefox (CVE-2026-12322)

A penetration tester from Sawah Cyber Security identified a clickjacking (UI redress) vulnerability in the legacy GTK file picker of Mozilla Firefox on Linux, discovered by Sawah Cyber Security, assigned CVE-2026-12322 (MFSA 2026-57) and fixed in Firefox 152.

Aurelia Licca
Aurelia Licca 19 Jun 2026 · 8 min read
Sawah Cyber Security Starts ISO/IEC 27001:2022 Certification Process
ISO 27001 ISO/IEC 27001:2022 certification ISMS information security cybersecurity

Sawah Cyber Security Starts ISO/IEC 27001:2022 Certification Process

PT Sawah Cyber Security has started its ISO/IEC 27001:2022 certification process through an independent certification body in Indonesia — putting the information security program we already run under the eyes of a critical, independent auditor.

Jeffrey Jansen
Jeffrey Jansen 12 Jun 2026 · 1 min read
Cyber Secure Indonesia 02: Bali Cyber Security Network and Forum Event (Education, Government and Private Industry)
Cyber Security Bali Cybersecurity Community Indonesia Cyber Resilience Bali

Cyber Secure Indonesia 02: Bali Cyber Security Network and Forum Event (Education, Government and Private Industry)

Cyber Secure Indonesia 02 brought together cybersecurity professionals, educators, government representatives, students, and industry leaders in Bali to discuss cyber resilience, cybersecurity education, emerging cyber threats, and digital transformation. Sponsored by Sawah Cyber Security, the event featured insightful sessions on phishing awareness, cybersecurity talent development, child cybersecurity education, and the importance of collaboration between government, academia, and industry in building a safer digital future for Indonesia.

Aurelia Licca
Aurelia Licca 09 Jun 2026 · 4 min read
Sawah Cyber Security x Timedoor Indonesia: Strengthening DevSecOps Integration
DevSecOps Indonesia Secure Code Review Indonesia DevSecOps services

Sawah Cyber Security x Timedoor Indonesia: Strengthening DevSecOps Integration

Sawah x Timedoor: Bridging the Gap Between Speed and Security Discover how Sawah Cyber Security and Timedoor Indonesia are transforming the development lifecycle. Learn how integrating DevSecOps and Secure Code Review helps organizations move from reactive patching to a proactive "Secure-by-Design" approach.

Aurelia Licca
Aurelia Licca 13 Apr 2026 · 3 min read
AI: Power or Problem? – Sawah Cyber Security at the Yorindo Community Event in Bali
ai cybersecurity yorindo bali event healthcare

AI: Power or Problem? – Sawah Cyber Security at the Yorindo Community Event in Bali

Our team shared insights on how AI is transforming organizations and the security challenges that come with it at the Yorindo Community event in Bali.

Jeffrey Jansen
Jeffrey Jansen 06 Mar 2026 · 1 min read
React2Shell Vulnerabilities & How Sawah Cyber Security Responds to It
react2shell cve nextjs rce vulnerability zero-day

React2Shell Vulnerabilities & How Sawah Cyber Security Responds to It

Two highly severe vulnerabilities (CVE-2025-55182 and CVE-2025-66478) known as React2Shell were discovered in React Server Components and Next.js. Learn how Sawah Cyber Security responds.

Jeffrey Jansen
Jeffrey Jansen 12 Dec 2025 · 3 min read
Sawah Cyber Security Sponsors NCSC 2025 Event: Towards a Cyber Secure Indonesia and a Safer Digital World
ncsc conference jakarta sponsorship event indonesia

Sawah Cyber Security Sponsors NCSC 2025 Event: Towards a Cyber Secure Indonesia and a Safer Digital World

Sawah Cyber Security is proud to announce its participation in the National Cyber Security Conference (NCSC) 2025 as Gold sponsor, taking place on 29-30 October 2025 in Jakarta.

Jeffrey Jansen
Jeffrey Jansen 28 Oct 2025 · 1 min read
Why is the IDOR Vulnerability Prevalent and the Worst Thing for Your Data?
idor vulnerability web-security penetration-testing owasp

Why is the IDOR Vulnerability Prevalent and the Worst Thing for Your Data?

Imagine a hacker being able to access your customer's sensitive information just by changing a number in the URL. This is the reality of Insecure Direct Object References (IDOR).

Jeffrey Jansen
Jeffrey Jansen 16 Sep 2025 · 4 min read
Press Release: Sawah Cyber Security and Timedoor Indonesia Announce Strategic Partnership to Deliver Secure and Innovative Applications in Indonesia
partnership timedoor ssdlc secure-development indonesia press-release

Press Release: Sawah Cyber Security and Timedoor Indonesia Announce Strategic Partnership to Deliver Secure and Innovative Applications in Indonesia

Sawah Cyber Security and Timedoor Indonesia officially announced their strategic partnership to strengthen Indonesia's digital ecosystem through the creation of more Secure Web and Mobile Apps.

Jeffrey Jansen
Jeffrey Jansen 08 Sep 2025 · 2 min read
CTF Bali 2025 – Capture The Flag Hacking Competition
ctf hacking competition bali ethical-hacking event

CTF Bali 2025 – Capture The Flag Hacking Competition

Join the Capture The Flag (CTF) competition by Sawah Cyber Security this August in Bali! On 23 August 2025, we invite all cybersecurity enthusiasts, students, and professionals to challenge themselves.

Jeffrey Jansen
Jeffrey Jansen 25 Jun 2025 · 2 min read
Sawah Cyber Security and Politeknik Negeri Bali (PNB) Partnership for Building Cyber Talent
partnership education pnb bali cyber-talent indonesia

Sawah Cyber Security and Politeknik Negeri Bali (PNB) Partnership for Building Cyber Talent

Sawah Cyber Security is proud to announce the partnership with Politeknik Negeri Bali (PNB), a leading vocational university in Bali for applied technology and engineering.

Jeffrey Jansen
Jeffrey Jansen 20 May 2025 · 3 min read
Do You Know What Attackers Can See About Your IT Infrastructure?
attack-surface penetration-testing asm cybersecurity vulnerability-management

Do You Know What Attackers Can See About Your IT Infrastructure?

IT environments are getting more complex every day. Misconfigured cloud services, forgotten subdomains, exposed API services and shadow IT are the blind spots attackers exploit.

Jeffrey Jansen
Jeffrey Jansen 09 Mar 2025 · 4 min read
Sawah Cyber Security Successfully Organized the First Cyber Secure Indonesia Community in Bali!
meetup community cyber-secure-indonesia bali event

Sawah Cyber Security Successfully Organized the First Cyber Secure Indonesia Community in Bali!

Sawah Cyber Security has successfully organized the first Cyber Secure Indonesia meetup on January 30, 2025 in Denpasar, Bali.

Jeffrey Jansen
Jeffrey Jansen 31 Jan 2025 · 2 min read
Announcing the Launch of Sawah Cyber Security on 1 December 2024
launch announcement bali cybersecurity sawah-cyber-security

Announcing the Launch of Sawah Cyber Security on 1 December 2024

We are excited to announce the official launch of PT Sawah Cyber Security on December 1, 2024, the first cybersecurity firm based in Bali.

Jeffrey Jansen
Jeffrey Jansen 01 Dec 2024 · 3 min read