AIRLINK 201.40 Increased By ▲ 7.84 (4.05%)
BOP 10.18 Increased By ▲ 0.23 (2.31%)
CNERGY 7.63 Decreased By ▼ -0.30 (-3.78%)
FCCL 40.05 Decreased By ▼ -0.60 (-1.48%)
FFL 16.81 Decreased By ▼ -0.05 (-0.3%)
FLYNG 26.65 Decreased By ▼ -1.10 (-3.96%)
HUBC 132.46 Decreased By ▼ -0.12 (-0.09%)
HUMNL 13.95 Increased By ▲ 0.06 (0.43%)
KEL 4.65 Increased By ▲ 0.05 (1.09%)
KOSM 6.60 Decreased By ▼ -0.02 (-0.3%)
MLCF 46.66 Decreased By ▼ -0.94 (-1.97%)
OGDC 212.30 Decreased By ▼ -1.61 (-0.75%)
PACE 6.90 Decreased By ▼ -0.03 (-0.43%)
PAEL 41.29 Increased By ▲ 0.05 (0.12%)
PIAHCLA 17.00 Decreased By ▼ -0.15 (-0.87%)
PIBTL 8.14 Decreased By ▼ -0.27 (-3.21%)
POWER 9.43 Decreased By ▼ -0.21 (-2.18%)
PPL 181.50 Decreased By ▼ -0.85 (-0.47%)
PRL 41.70 Decreased By ▼ -0.26 (-0.62%)
PTC 24.80 Decreased By ▼ -0.10 (-0.4%)
SEARL 111.70 Increased By ▲ 4.86 (4.55%)
SILK 0.99 No Change ▼ 0.00 (0%)
SSGC 44.11 Increased By ▲ 4.01 (10%)
SYM 18.89 Increased By ▲ 1.42 (8.13%)
TELE 8.86 Increased By ▲ 0.02 (0.23%)
TPLP 12.99 Increased By ▲ 0.24 (1.88%)
TRG 67.50 Increased By ▲ 0.55 (0.82%)
WAVESAPP 11.41 Increased By ▲ 0.08 (0.71%)
WTL 1.79 No Change ▼ 0.00 (0%)
YOUW 3.98 Decreased By ▼ -0.09 (-2.21%)
BR100 12,187 Increased By 141.8 (1.18%)
BR30 36,636 Increased By 55.5 (0.15%)
KSE100 114,933 Increased By 894.7 (0.78%)
KSE30 36,123 Increased By 329.1 (0.92%)

Symantec Corp, a digital security company, says it has identified a sustained cyber spying campaign, likely state-sponsored, against Indian and Pakistani entities involved in regional security issues. In a threat intelligence report that was sent to clients in July, Symantec said the online espionage effort dated back to October 2016.
The campaign appeared to be the work of several groups, but tactics and techniques used suggest that the groups were operating with "similar goals or under the same sponsor", probably a nation state, according to the threat report, which was reviewed by Reuters. It did not name a state. The detailed report on the cyber spying comes at a time of heightened tensions in the region.
India's military has raised operational readiness along its border with China following a face-off in Bhutan near their disputed frontier, while Indo-Pakistan tensions are also simmering over the disputed Kashmir region. A spokesman for Symantec said the company does not comment publicly on the malware analysis, investigations and incident response services it provides clients. Symantec did not identify the likely sponsor of the attack. But it said that governments and militaries with operations in South Asia and interests in regional security issues would likely be at risk from the malware. The malware utilizes the so-called "Ehdoor" backdoor to access files on computers.
"There was a similar campaign that targeted Qatar using programs called Spynote and Revokery," said a security expert, who requested anonymity. "They were backdoors just like Ehdoor, which is a targeted effort for South Asia." To install the malware, Symantec found, the attackers used decoy documents related to security issues in South Asia. The documents included reports from Reuters, Zee News, and the Hindu, and were related to military issues, Kashmir, and an Indian secessionist movement.
The malware allows spies to upload and download files, carry out processes, log keystrokes, identify the target's location, steal personal data, and take screenshots, Symantec said, adding that the malware was also being used to target Android devices. In response to frequent cyber-security incidents, India in February established a center to help companies and individuals detect and remove malware. The center is operated by the Indian Computer Emergency Response Team (CERT-In).

Comments

Comments are closed.