City
Epaper

Cyber Attack on Indian Air Force: Attempt to Steal Data via Email

By Lokmat English Desk | Updated: February 2, 2024 17:57 IST

Unidentified cyber attackers recently attempted to breach the internal computer systems of the Indian Air Force (IAF) with the ...

Open in App

Unidentified cyber attackers recently attempted to breach the internal computer systems of the Indian Air Force (IAF) with the aim of stealing sensitive data. The attackers exploited open-source malware developed using a programming language created at Google. Fortunately, the IAF did not experience any data loss during the incident.

According to a report from the US-based cyber threat intelligence firm Cyble on January 17, a variant of the Go Stealer malware was identified. This malware, publicly available on GitHub, was specifically designed to target IAF systems. The exact timing of the attack remains unclear. Sources familiar with the situation emphasized that "no loss of data from the IAF occurred through this malware attack" due to the implementation of sufficient security measures.

In September of the previous year, the Indian government had ordered 12 of these fighter jets. The attackers orchestrated a remotely controlled trojan attack by deploying the malware payload, a ZIP file titled "SU-30_Aircraft_Procurement," hosted on the anonymous cloud storage provider Oshi. The malware was distributed through phishing emails sent to Air Force officials.

Upon downloading and extracting the infected ZIP file, recipients unknowingly initiated a sequence of infection involving progression from a ZIP file to an ISO file, and ultimately a .lnk file. The stealer malware, capable of extracting sensitive login credentials through the team communication platform Slack, was concealed behind a distractor PDF file titled ‘Sample’.

The malware developers, as described on GitHub, engineered Go Stealer to be potent against various web browsers, expanding its capabilities beyond Firefox and Google Chrome. Go Stealer is based on Google’s open-source programming language Go, also known as Golang, which has become increasingly exploited by malicious actors for cyber-attacks. Initially detected in mid-2018, Golang-based malware, including Go Stealer, has seen a rising trend in usage according to the US-based technology firm F5. 

Tags: Indian Air Forcecyber crimeNational news
Open in App

Related Stories

NationalWatch: Brave Nurses Risk Their Lives to Save Babies During Assam Earthquake; CCTV Footage Goes Viral

NationalDelhi: Fire Breaks Out in Gaffar Market, Karol Bagh; Four Fire Tenders Rush to Spot

NationalHyderabad Horror: Father Kills Son, Dumps Body in River, Files False Missing Complaint

NationalNewborn Baby Girl Buried Alive in UP’s Godapur Village, Saved After Timely Rescue by Police

NationalUttar Pradesh Accident: Four Killed, Nine Injured after Tourist Bus Hit a Trailer Near Sehipur

National Realted Stories

NationalITR filing deadline extended by a day to Sep 16

NationalMadhya Pradesh: Ex-Cong minister Kamaleshwar Patel expresses disappointment over party infighting

NationalMaha CM to develop a comprehensive policy for cancer treatment

NationalMaha govt approves corpus fund for health treatment of over Rs 5 lakh, says CM Fadnavis

NationalBihar Minister asks Tejashwi to apologise or face legal action in YouTuber assault case