AIRLINK 196.51 Increased By ▲ 4.67 (2.43%)
BOP 10.07 Increased By ▲ 0.20 (2.03%)
CNERGY 7.81 Increased By ▲ 0.14 (1.83%)
FCCL 38.46 Increased By ▲ 0.60 (1.58%)
FFL 15.72 Decreased By ▼ -0.04 (-0.25%)
FLYNG 24.54 Decreased By ▼ -0.77 (-3.04%)
HUBC 130.10 Decreased By ▼ -0.07 (-0.05%)
HUMNL 13.70 Increased By ▲ 0.11 (0.81%)
KEL 4.60 Decreased By ▼ -0.07 (-1.5%)
KOSM 6.20 Decreased By ▼ -0.01 (-0.16%)
MLCF 45.05 Increased By ▲ 0.76 (1.72%)
OGDC 206.65 Decreased By ▼ -0.22 (-0.11%)
PACE 6.60 Increased By ▲ 0.04 (0.61%)
PAEL 39.70 Decreased By ▼ -0.85 (-2.1%)
PIAHCLA 17.15 Decreased By ▼ -0.44 (-2.5%)
PIBTL 7.98 Decreased By ▼ -0.09 (-1.12%)
POWER 9.12 Decreased By ▼ -0.12 (-1.3%)
PPL 179.40 Increased By ▲ 0.84 (0.47%)
PRL 38.51 Decreased By ▼ -0.57 (-1.46%)
PTC 24.20 Increased By ▲ 0.06 (0.25%)
SEARL 109.15 Increased By ▲ 1.30 (1.21%)
SILK 1.01 Increased By ▲ 0.04 (4.12%)
SSGC 37.78 Decreased By ▼ -1.33 (-3.4%)
SYM 18.80 Decreased By ▼ -0.32 (-1.67%)
TELE 8.51 Decreased By ▼ -0.09 (-1.05%)
TPLP 12.12 Decreased By ▼ -0.25 (-2.02%)
TRG 64.69 Decreased By ▼ -1.32 (-2%)
WAVESAPP 12.01 Decreased By ▼ -0.77 (-6.03%)
WTL 1.64 Decreased By ▼ -0.06 (-3.53%)
YOUW 3.87 Decreased By ▼ -0.08 (-2.03%)
BR100 12,000 Increased By 69.2 (0.58%)
BR30 35,548 Decreased By -112 (-0.31%)
KSE100 114,256 Increased By 1049.3 (0.93%)
KSE30 35,870 Increased By 304.3 (0.86%)

ISLAMABAD: Hackers from India and North Korea are said to be attacking Pakistan’s most valuable data including that of financial services, defence, and Ministry of Foreign Affairs (MoFA).

According to a letter sent to all the ministries and their attached departments, Pakistan’s Cyber Space remains a target of cyber offensive activities of global security giants. Cyberattacks are increasing in intricacy and magnitude of impact across all organisations which possess the most valuable data including financial services, government, education and health sectors, etc.

Threat intelligence report for the period (November 22, 2022 to January 1, 2023) is as follows: (i) analysis reveals that attack vectors have not targeted Secure ISP users; (ii) major attack vectors for targeting institutes are macro-enabled files, phishing, dropping payloads, domain phishing, Microsoft office base payloads; (iii) 35x malicious samples identified targeting critical information infrastructure including Ministry of Foreign Affairs (MoFA), Prime Minister Office (PMO), Defence Organizations, PAF, Army, banks and educational institutions;(iv) 21x suspicious domain names impersonating ministries, defence services, educational institutes and Anti-Virus service providers were identified; and (v) India and North Korea were among key initiators of targeted cyberattacks.

The suspicious file/ domain names are: (i) IBO- Lodhran.doc (target GoP-CTD);(ii) USDeptof-Statefundallocationsfor Pakistan. Dox (target GoP-CTD);(iii) Prime Minister’s visit to Turkiye.doc (target PM Office &MoFA );(iv) 4x doc file(RFQQUOTA-TION.doc s6604166915347 892625382 RFQQUOATION.doc, NEWOR-DER.doc, 59NEW_ORD-ER.doc)( GoP&Defence Services);(v) 3x impersonating domains (mofs-gov.org,mailv.mots-gov.org, mailpakbj.online (target Ministry of Finance);(vi) nbpfunds.online 68.65.122.49 (National Bank of Pakistan); and (vii) Bloggerboy.buzz 64.190. 113.97 orangeholister.buzz (target Pakistan Government and military, etc.

Copyright Business Recorder, 2023

Comments

Comments are closed.