Cisco unit warns of cyber-attack campaign against Indian government employees, military personnel

The cyber-attack campaign used malicious Microsoft Office documents (maldoc) and malicious archives to gain access to confidential information related to government and defence agencies.

September 24, 2021 05:16 pm | Updated 05:16 pm IST

Cisco unit warns of cyber-attack campaign against Indian government employees, military personnel.

Cisco unit warns of cyber-attack campaign against Indian government employees, military personnel.

Cisco's threat intelligence unit has discovered a malicious campaign targeting government employees and military personnel in India.

(Subscribe to our Today's Cache newsletter for a quick snapshot of top 5 tech stories. Click here to subscribe for free.)

The cyber-attack campaign used malicious Microsoft Office documents (maldoc) and malicious archives to gain access to confidential information related to government and defence agencies.

According to the unit, the earliest instance of this campaign was observed in December 2020 and continues to operate today. The content of maldocs ranged from security advisories, to meeting schedules, to software installations notes.

The lures used in the campaign were primarily around documents related to the Government of India’s Kavach application. It is a two-factor authentication (2FA) application used by government employees to access their emails.

The attackers relied on a compromised websites and fake domains to carry out their campaign.

Cisco said the campaign focussed on compromising quasi-military or government-related websites to host malicious payloads. This could have been done to appear legitimate to victims and analysts.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.