HomeTechnologyIndia warns govt officials of Pakistan-linked threat actor exploiting WinRAR vulnerability to steal sensitive info

India warns govt officials of Pakistan-linked threat actor exploiting WinRAR vulnerability to steal sensitive info

In an advisory, the Union govt recommended officials to identify systems that have been infected by this threat actor and isolate them from the network

May 02, 2024 / 10:23 IST
Story continues below Advertisement
This is the latest in a string of cyber attacks that Indian government bodies have faced
This is the latest in a string of cyber attacks that Indian government bodies have faced

The Indian government has warned its officials of how a Pakistan-linked cyber threat actor is leveraging a security vulnerability in WinRAR to deliver trojans such as AllaKore, Ares etc on government entities. WinRAR is used for accessing zip files.

This is the latest in string of attacks that government organisations in India have been facing from foreign nation-state linked cyber threat actors. These threat actors typically target institutions such as defence bodies and so on to steal  sensitive information.

Story continues below Advertisement

Moneycontrol had previously reported how the government had warned officials of Pakistan and China-linked threat actors targeting officials.

The recent advisory, a copy of which Moneycontrol has reviewed, was issued by the government on April 9. It said that SideCopy, a Pakistan-linked cyber threat actor, was leveraging the vulnerability in WinRAR to execute a code that quietly deploys remote access trojans (RAT) such as AllaKore or Ares.