Explorer

Pakistani Hacker Targets Indian And Afghan Govt Portals To Steal Credentials: Report

This revelation came after Meta had recently announced that it had initiated action against four separate Pakistani and Syrian malicious cyber groups.

New Delhi: A threat actor from Pakistan successfully socially engineered several ministries in Afghanistan and a shared government computer in India to stealthily obtain confidential information and gain access to Twitter, Facebook and Google credentials of its targets, reported IANS. 

Anti-malware software, Malwarebyte, in its latest finding detailed about the new ways and tools adopted by the APT Group which was known as SideCopy. It was named so as it attempts to mimic the infection chains associated with another group SideWinder and mislead attribution. 

Researcher at Malwarebyte, Hossein Jazi said, "The lures used by SideCopy APT are usually archive files that have embedded one of these files: LNK, Microsoft Publisher or Trojanized Applications.” The report stated that the embedded files were tailored to target government and military officials based in India and Afghanistan. 

This revelation came after Meta recently announced that it had initiated action against four separate Pakistani and Syrian malicious cyber groups, found targeting people in Afghanistan which also included journalists, humanitarian organisations and anti-regime military forces, as reported by the Hacker News. 

The report stated that some of the prominent attacks were aimed at people associated with the Administration Office of The President of Afghanistan, Ministry of Affairs, Ministry of Finance and the National Procurement Authority which resulted in theft of social media passwords and password protected documents. It was reported that SideCopy also hacked into a shared computer in India and harvested credentials from government and education services. 

The report further said that the threat actor was said to have gained access to several Microsoft Office documents which included names, numbers and email addresses of officials and databases which had information about identity cards, diplomatic visas, and asset registrations from Afghan government websites. It is being expected that the threat actor would use this as future decoys or to fuel further attacks against the individuals, as per the report.

Top Headlines

EPFO 3.0 Is Here: How You Can Access PF Services Online In Minutes
EPFO 3.0 Is Here: How You Can Access PF Services Online In Minutes
Dhurandhar 2 Will Not Stream On Netflix; This OTT Platform Acquired Rights For Rs 150 Cr
Dhurandhar 2 Will Not Stream On Netflix; This OTT Platform Acquired Rights For Rs 150 Cr
Downloading 'Dhurandhar 2' From Tamilrockers, Filmyzilla, Telegram, Movierulz? Get Ready To Pay Rs 3 Lakh Fine
Downloading 'Dhurandhar 2' From Tamilrockers, Filmyzilla, Telegram, Movierulz? Get Ready To Pay Rs 3 Lakh Fine
How Much Does 24K Gold iPhone 17 Pro Max Cost? More Than What You’d Pay For A Car
How Much Does 24K Gold iPhone 17 Pro Max Cost? More Than What You’d Pay For A Car

Videos

LPG Crisis Hits Jaipur: Factories & Households Struggle as Cylinders Remain Scarce
LPG Crisis Hits India: Restaurants Shift to Diesel & Wood Stoves Amid Severe Cylinder Shortage
Urgent: Israel Declares Mustafa Khamenei Top Target as Iran’s New Supreme Leader Amid War
Breaking: Iran Retaliates with Massive Missile Strikes on Israel After Larijani’s Assassination
PARLIAMENT FAREWELL: Narendra Modi praises outgoing MPs, legacy lives on

Photo Gallery

25°C
New Delhi
Rain: 100mm
Humidity: 97%
Wind: WNW 47km/h
See Today's Weather
powered by
Accu Weather
Embed widget