Analisis Pelanggaran Privasi Data Nasabah Akibat Serangan Siber Pada Aplikasi Mobile Banking
Studi Kasus: Bank Syariah Indonesia 2023
DOI:
https://doi.org/10.55606/juisik.v6i1.2012Keywords:
Bank Syariah Indonesia, Cyber Attacks, Data Privacy, Mobile Banking, Personal Data ProtectionAbstract
This study aims to evaluate a customer data privacy breach resulting from a cyberattack on Bank Syariah Indonesia's (BSI) mobile banking application in 2023. A ransomware attack carried out by the LockBit 3.0 group resulted in a 1.5 terabyte data leak and disrupted BSI's digital service system across the country. The research approach used was a qualitative descriptive case study to understand the causal factors, the types of breaches that occurred, and the mitigation measures taken by the bank. The results indicate that the privacy breach occurred due to weaknesses in the internal security system, delays in system updates, a lack of end-to-end encryption implementation, and low security awareness among both users and employees. Mitigation measures included security audits, collaboration with the National Cyber and Crypto Agency (BSSN), firewall strengthening, and digital security education for customers. These findings underscore the importance of collaboration between technology, regulation, and digital literacy in strengthening personal data protection in the banking sector. Consistent implementation of the Personal Data Protection Law (Law No. 27 of 2022) is key to building a safe, reliable, and ethical mobile banking ecosystem in Indonesia.
References
Antoine, R. A., Farizqa, N. S., Hasna, A. H., & Pasaribu, M. (2023). Penyalahgunaan data pribadi dalam teknologi transaksi digital di industri perbankan digital: Studi kasus PT Bank Syariah Indonesia. Jurnal Multidisiplin Ilmu Akademik.
Cahyono, D., Fahrudin, R., Alwiyah, A., & Sinclair, A. (2023). Pentingnya edukasi dalam mengatasi keamanan data mobile banking di Indonesia. Jurnal MENTARI: Manajemen, Pendidikan dan Teknologi Informasi, 3(1), 81-89.
Dengan format ini, referensi sudah terstruktur sesuai dengan gaya APA, dan DOI tetap dipertahankan di bagian yang relevan.
Firdaus, S. E., Hidayah, S., & Putro, H. (2023). Implementasi teknologi untuk penguatan keamanan data pribadi nasabah dalam sektor perbankan. Jurnal Ilmiah Nusantara, 2(1).
Hutagaol, B. J., Sitorus, R. S., & Hutagaol, N. (2024). Identifikasi tingkat kesadaran pengguna mobile banking terhadap ancaman cybercrime. Jurnal Teknologi Sistem Informasi dan Aplikasi, 7(3). https://doi.org/10.32493/jtsi.v7i3.41639
Hutagaol, B. J., Sitorus, R. S., & Hutagaol, N. (2024). Identifikasi tingkat kesadaran pengguna mobile banking terhadap ancaman cybercrime. Jurnal Teknologi Sistem Informasi dan Aplikasi, 7(3), 1043-1054. https://doi.org/10.32493/jtsi.v7i3.41639
ISO/IEC. (2019). ISO/IEC 27001:2019 Information security management systems. International Organization for Standardization.
Judijanto, L., Ariyanti, R., & Suryani, S. (2024). Analysis of the impact of mobile banking technology, fintech, and digital transaction security on customer loyalty at BUMN banks in Indonesia. West Science Social and Humanities Studies, 2(8), 1299-1309. https://doi.org/10.58812/wsshs.v2i08.1183
Kementerian Komunikasi dan Informatika Republik Indonesia. (2023). Pernyataan resmi penanganan insiden siber sektor keuangan.
Lutfi, M. P., Kurniasari, E., & Aida Putri, F. E. (2024). Urgensi perlindungan hukum terhadap data privasi nasabah bank di era perkembangan.
Muliawan, D., & Hasnawati, H. (2023). The influence of cyber security knowledge, cyber security awareness, and behaviour protection on intention to use among mobile banking users in Jakarta. Jurnal Indonesia Sosial Teknologi. https://doi.org/10.59141/jist.v5i11.8763
Muliawan, D., & Hasnawati, H. (2024). The influence of cyber security knowledge, cyber security awareness, and behaviour protection on intention to use among mobile banking users in Jakarta. Jurnal Indonesia Sosial Teknologi, 5(11), 4904-4916. https://doi.org/10.59141/jist.v5i11.8763
Otoritas Jasa Keuangan. (2022). POJK Nomor 11/POJK.03/2022 tentang penyelenggaraan teknologi informasi oleh bank umum.
Priyanto, Z. I., & Indraningsih, N. H. (2024). The impact of end-to-end encryption on the security of digital banking transactions: An in-depth analysis. Mantik Journal, 8(3).
Saputri, V. D. (2023). Implementation of biometric-based security system on mobile banking application. Jurnal Komputer Indonesia, 2(1), 25-32. https://doi.org/10.37676/jki.v2i1.565
Tursinah, M., Iqbal Fasa, M., & Susanto, I. (2023). Analisis peran keamanan data dalam meningkatkan kepuasan nasabah pada penggunaan mobile banking. Jurnal Ilmiah Ekonomi, Manajemen dan Syariah. https://doi.org/10.55883/jiemas.v3i3.87
Undang-Undang Republik Indonesia Nomor 27 Tahun 2022 tentang Perlindungan Data Pribadi.
Widya Annafa, S., & Simanjuntak, H. P. G. (2021). Tanggung jawab hukum bank dalam kasus kebocoran data nasabah. Jurnal Multidisiplin Ilmu Akademik, 1(6).
Basel Committee on Banking Supervision. (2018). Cyber-resilience: Range of practices. Bank for International Settlements.
Downloads
Published
How to Cite
Issue
Section
License
Copyright (c) 2026 Jurnal ilmiah Sistem Informasi dan Ilmu Komputer

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.







