Moneycontrol PRO
HomeNewsBusinessGovernment warns officials of phishing scams using fake NIC IDs, websites

Government warns officials of phishing scams using fake NIC IDs, websites

The advisory also highlighted attempts made by Pakistani intelligence operatives to target officials "posted in sensitive organisations by honey trapping them over social media".

July 04, 2023 / 13:15 IST
This is the latest in a string of cyber attacks on government bodies.

China-based threat actors are targeting government officials by approaching them with domains and websites that are similar to official NIC (National Informatics Centre) IDs and sites, a recent cybersecurity advisory for government officials accessed by Moneycontrol said.

The June 22 advisory listed domain names such as mydrive-nic.online and secure-nic.online, stating that they are being used by Chinese threat actors to perpetrate phishing scams. Other similar domain names include drive-nic.online, files-nic.link, files-nic.space, and nic-files.download.

The advisory also listed specific email ids, which the advisory said were being used by Chinese threat actors.

"Don't respond to unsolicited emails and junk email (spam). Don't unsubscribe from their emailing (sic) just let the spammer know that they have found the valid email address (sic). The safest path is to ignore and delete," officials were advised.

This is the latest in a long line of advisories released by government bodies, highlighting the growing number of incidents in which external threat actors have targeted sensitive and critical infrastructure in the country.

Moneycontrol has reached out to NIC and the Indian Computer Emergency Response Team (CERT-In) with queries in this regard. The article will be updated when a response is received.

This recent advisory follows a similar warning that the government aired regarding a "new wave of cyber attack campaign" where China-based threat actors have been targeting government bodies, such as the Unique Identification Authority of India (UIDAI) and the All India Institute of Medical Sciences (AIIMS).

Apart from that, the June 22 advisory also made a mention of attempts by Pakistani intelligence operatives (PIOs) to target officials "posted in sensitive organisations by honey-trapping them over social media".

The recent advisory that Moneycontrol reviewed said, "PIOs are using fake identities including posing as defence correspondents (sic) of ministries and  are using spoofed numbers to gain the trust of unsuspecting individuals to ferret out sensitive information."

Additionally, it urged higher officials to sensitise all employees in their respective organisations regarding this threat campaign.

This follows a similar advisory that a government body had released warning against a cyber-attack campaign, where officials have been receiving malware-laden emails disguised as recommendations on how to prevent honey trapping.

A few months ago, a DRDO employee was arrested for divulging sensitive information to Pakistan-based intelligence operatives in a suspected case of honey trapping.

Aihik Sur covers tech policy, drones, space tech among other beats at Moneycontrol
first published: Jul 4, 2023 01:15 pm

Discover the latest Business News, Sensex, and Nifty updates. Obtain Personal Finance insights, tax queries, and expert opinions on Moneycontrol or download the Moneycontrol App to stay updated!

Subscribe to Tech Newsletters

  • On Saturdays

    Find the best of Al News in one place, specially curated for you every weekend.

  • Daily-Weekdays

    Stay on top of the latest tech trends and biggest startup news.

Advisory Alert: It has come to our attention that certain individuals are representing themselves as affiliates of Moneycontrol and soliciting funds on the false promise of assured returns on their investments. We wish to reiterate that Moneycontrol does not solicit funds from investors and neither does it promise any assured returns. In case you are approached by anyone making such claims, please write to us at grievanceofficer@nw18.com or call on 02268882347