india pakistan hit by spy malware
Last Updated : GMT 05:17:37
Emiratesvoice, emirates voice
Emiratesvoice, emirates voice
Last Updated : GMT 05:17:37
Emiratesvoice, emirates voice

India, Pakistan hit by spy malware

Emiratesvoice, emirates voice

Emiratesvoice, emirates voice India, Pakistan hit by spy malware

The detailed report on the cyber spying comes at a time
Abu Dhabi - Emirates Voice

Symantec Corp, a digital security company, says it has identified a sustained cyber spying campaign, likely state-sponsored, against Indian and Pakistani entities involved in regional security issues.

In a threat intelligence report that was sent to clients in July, Symantec said the online espionage effort dated back to October 2016.

The campaign appeared to be the work of several groups, but tactics and techniques used suggest that the groups were operating with "similar goals or under the same sponsor", probably a nation state, according to the threat report, which was reviewed by Reuters. It did not name a state.

The detailed report on the cyber spying comes at a time of heightened tensions in the region.

India's military has raised operational readiness along its border with China following a face-off in Bhutan near their disputed frontier, while Indo-Pakistan tensions are also simmering over the disputed Kashmir region.

A spokesman for Symantec said the company does not comment publicly on the malware analysis, investigations and incident response services it provides clients.
Symantec did not identify the likely sponsor of the attack. But it said that governments and militaries with operations in South Asia and interests in regional security issues would likely be at risk from the malware. The malware utilizes the so-called "Ehdoor" backdoor to access files on computers.

"There was a similar campaign that targeted Qatar using programs called Spynote and Revokery," said a security expert, who requested anonymity. "They were backdoors just like Ehdoor, which is a targeted effort for South Asia."

CLICKBAIT

To install the malware, Symantec found, the attackers used decoy documents related to security issues in South Asia. The documents included reports from Reuters, Zee News, and the Hindu, and were related to military issues, Kashmir, and an Indian secessionist movement.

The malware allows spies to upload and download files, carry out processes, log keystrokes, identify the target's location, steal personal data, and take screenshots, Symantec said, adding that the malware was also being used to target Android devices.
In response to frequent cyber-security incidents, India in February established a center to help companies and individuals detect and remove malware. The center is operated by the Indian Computer Emergency Response Team (CERT-In).

Gulshan Rai, the director general of CERT-In, declined to comment specifically on the attack cited in the Symantec report, but added: "We took prompt action when we discovered a backdoor last October after a group in Singapore alerted us." He did not elaborate.

Symantec's report said an investigation into the backdoor showed that it was constantly being modified to provide "additional capabilities" for spying operations.
A senior official with Pakistan's Federal Investigation Agency said it had not received any reports of malware incidents from government information technology departments. He asked not to be named due to the sensitivity of the matter.

A spokesman for FireEye, another cybersecurity company, said that based on an initial review of the malware, it had concluded that an internet protocol address in Pakistan had submitted the malware to a testing service. The spokesman requested anonymity, citing company policy.

Another FireEye official said the attack reported by Symantec was not surprising.
"South Asia is a hotbed of geopolitical tensions, and wherever we find heightened tensions we expect to see elevated levels of cyber espionage activity," said Tim Wellsmore, FireEye's director of threat intelligence for the Asia Pacific region.

The Symantec report said the 'Ehdoor' backdoor was initially used in late 2016 to target government, military and military-affiliated targets in the Middle East and elsewhere.

Source: Khaleej Times

 

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

india pakistan hit by spy malware india pakistan hit by spy malware

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

india pakistan hit by spy malware india pakistan hit by spy malware

 



GMT 10:18 2016 Wednesday ,23 March

cartoon seven

GMT 09:54 2018 Wednesday ,24 January

'Friendly and kind' N. Korean skaters

GMT 16:17 2018 Thursday ,30 August

Five Saudi women pilots granted GACA licences

GMT 14:45 2017 Wednesday ,08 November

Real estate a 'powerful' tool of UAE-India economic

GMT 07:16 2017 Friday ,28 July

Arab singer Balqees Fathi to perform at DSS

GMT 22:23 2017 Friday ,17 November

Tesla unveils new semi-truck, new Roadster sports car

GMT 01:29 2012 Wednesday ,16 May

Meatball sandwich

GMT 12:17 2014 Sunday ,14 September

You can classify words in your sleep

GMT 11:06 2017 Friday ,12 May

Final push on Syria's Raqa in early summer

GMT 12:40 2017 Saturday ,29 July

Expats, Pakistanis hail court ruling

GMT 16:56 2017 Friday ,01 September

Nearly 1,500 Russian athletes took doping tests

GMT 02:56 2015 Friday ,08 May

Super Bowl win not tainted by 'Deflategate'

GMT 14:01 2014 Tuesday ,06 May

Best house furniture

GMT 16:34 2017 Sunday ,12 November

Bahrain’s human rights record praised

GMT 04:59 2017 Sunday ,18 June

Boeing, Airbus take dogfight to Paris

GMT 04:52 2018 Monday ,22 January

West's 'Russiaphobia' worse than

GMT 01:52 2017 Wednesday ,18 October

Shaikh Khalid bin Hamad receives Owner of Switch

GMT 23:26 2017 Tuesday ,07 February

James, Irving bail out Cavs in thriller vs. Wizards

GMT 08:32 2017 Saturday ,19 August

Bahrain leaders condole with Spain

GMT 11:50 2017 Tuesday ,19 December

Irish pilot union agrees to Ryanair talks

GMT 09:47 2017 Tuesday ,15 August

Boost to BAS-Swissport partnership

GMT 14:49 2014 Thursday ,20 February

Egyptian veiled rapper among nominees
Emiratesvoice, emirates voice
 
 Emirates Voice Facebook,emirates voice facebook  Emirates Voice Twitter,emirates voice twitter Emirates Voice Rss,emirates voice rss  Emirates Voice Youtube,emirates voice youtube  Emirates Voice Youtube,emirates voice youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

emiratesvoieen emiratesvoiceen emiratesvoiceen emiratesvoiceen
emiratesvoice emiratesvoice emiratesvoice
emiratesvoice
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
emiratesvoice, Emiratesvoice, Emiratesvoice