City
Epaper

Cyber Attack on Indian Air Force: Attempt to Steal Data via Email

By Lokmat English Desk | Updated: February 2, 2024 17:57 IST

Unidentified cyber attackers recently attempted to breach the internal computer systems of the Indian Air Force (IAF) with the ...

Open in App

Unidentified cyber attackers recently attempted to breach the internal computer systems of the Indian Air Force (IAF) with the aim of stealing sensitive data. The attackers exploited open-source malware developed using a programming language created at Google. Fortunately, the IAF did not experience any data loss during the incident.

According to a report from the US-based cyber threat intelligence firm Cyble on January 17, a variant of the Go Stealer malware was identified. This malware, publicly available on GitHub, was specifically designed to target IAF systems. The exact timing of the attack remains unclear. Sources familiar with the situation emphasized that "no loss of data from the IAF occurred through this malware attack" due to the implementation of sufficient security measures.

In September of the previous year, the Indian government had ordered 12 of these fighter jets. The attackers orchestrated a remotely controlled trojan attack by deploying the malware payload, a ZIP file titled "SU-30_Aircraft_Procurement," hosted on the anonymous cloud storage provider Oshi. The malware was distributed through phishing emails sent to Air Force officials.

Upon downloading and extracting the infected ZIP file, recipients unknowingly initiated a sequence of infection involving progression from a ZIP file to an ISO file, and ultimately a .lnk file. The stealer malware, capable of extracting sensitive login credentials through the team communication platform Slack, was concealed behind a distractor PDF file titled ‘Sample’.

The malware developers, as described on GitHub, engineered Go Stealer to be potent against various web browsers, expanding its capabilities beyond Firefox and Google Chrome. Go Stealer is based on Google’s open-source programming language Go, also known as Golang, which has become increasingly exploited by malicious actors for cyber-attacks. Initially detected in mid-2018, Golang-based malware, including Go Stealer, has seen a rising trend in usage according to the US-based technology firm F5. 

Tags: Indian Air Forcecyber crimeNational news
Open in App

Related Stories

NationalMother Dairy Hikes Milk Prices by Up to Rs 2 per Litre from April 30

NationalJustice BR Gavai Appointed as 52nd Chief Justice of India, Oath on May 14

NationalAhmedabad Man on Zipline Unknowingly Captures Chilling Video of Terror Attack on Tourists in Pahalgam

NationalIndore Shocker: Cyber Cafe Operator, Two Others Booked for Creating Fake Mark Sheets

NationalEPFO Portal Down? Users Face Problems from Login to Downloading Passbook

National Realted Stories

NationalCaste Census to be done along with National Census: Modi govt’s big decision

NationalPM Modi to inaugurate WAVES Summit tomorrow

NationalCabinet approves Rs 22,864 crore new Shillong-Silchar highway

NationalYouth’s murder triggers massive protest in Jharkhand’s Bokaro, highway blocked for hours

NationalBacking Pakistan is treason, says K’taka CM Siddaramaiah on mob lynching of Kerala man