Hackers reportedly targeted govt’s 2-factor authentication system
By MYBRANDBOOK
A recent study by Secureonix found that threat actors were targeting the government’s email system, Kavach. It is reportedly said that this attack was similar to methods used by SideCopy, a threat actor attributed to Pakistan. Kavach is a 2-factor authentication system that was implemented last year to strengthen the government’s email infrastructure.
According to Secureonix, the first stage of the process included a phishing campaign. When a government official clicks a link in one of the phishing emails, .LNK files (attached to those emails) would execute code, resulting in the execution of a remote access trojan.
The cybersecurity firm said, “Like with many attacks we see today, the initial infection begins with a phishing email containing a compressed file attachment (11222022.zip). When opened by the user, the file contains a single shortcut file designed to trick the user into opening it. The email’s shortcut file appears to be a harmless image file from websites such as Income Tax Delhi. “The purpose of the shortcut file is to appear simply as ‘scanimg.png’ to the user, thus tempting them into thinking they are opening a harmless image file.”
This is not the first time Kavach has been targeted. Talos Intelligence discovered that SideCopy/Transparent Tribe targeted Kavach by deceiving government officials into installing malware that posed as an installer or updater for Kavach.
Talos Intelligence said, “This campaign, which has been ongoing since at least June 2021, uses fake domains mimicking legitimate government and related organizations to deliver malicious payloads, a common Transparent tribe tactic.”
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
EXATRON SERVERS MANUFACTURING PVT. LTD.
LENOVO INDIA PVT. LTD.
BHARAT ELECTRONICS LTD.
POLYCAB INDIA PVT. LTD
SHAKTIKANTA DAS
Shaktikanta Das is serving as the current & 25th governor of the Reser...
Icons Of India : Dr. Arvind Gupta
Arvind Gupta is the Head and Co-Founder of the Digital India Foundatio...
Icons Of India : Anil Agarwal
Anil Agarwal, the Founder and Chairman of Vedanta Resources Ltd., is r...
C-DOT - Center of Development of Telematics
India’s premier research and development center focused on telecommu...
NSE - National Stock Exchange
NSE is the leading stock exchange in India....
NIC - National Informatics Centre
NIC serves as the primary IT solutions provider for the government of ...
Indian Tech Talent Excelling The Tech World - Dheeraj Pandey, CEO, DevRev
Dheeraj Pandey, Co-founder and CEO at DevRev , has a remarkable journe...
Indian Tech Talent Excelling The Tech World - Vinod Dham, Founder & Executive Managing Partner, IndoUS Venture Partners
Vinod Dham, known as the “Father of the Pentium Chip,” has left an...
Indian Tech Talent Excelling The Tech World - ANJALI SUD, CEO – Tubi
Anjali Sud, the former CEO of Vimeo, now leads Tubi, Fox Corporation...