Table of Contents
As geopolitical tensions between India and Pakistan escalate, the National Cyber Emergency Response Team (NCERT) has issued an urgent advisory highlighting a spike in cyberattacks and coordinated misinformation campaigns. These digital threats are designed to manipulate public perception, destabilize systems, and exploit the climate of uncertainty gripping the region.
The high-priority advisory, released late Thursday, underscores the growing threat landscape, where malicious actors are leveraging the current unrest to launch advanced cyber operations against government systems, private corporations, and individual users.
Targeted Disinformation and Phishing on the Rise
According to NCERT, hostile elements are distributing fraudulent messages, phishing emails, fake news, and deceptive alerts, often impersonating trusted institutions. The goal is clear: spread confusion, steal sensitive data, and create panic among the public.
“The adversaries are spreading disinformation using fraudulent messages, phishing attacks, and fabricated stories to mislead the public,” the advisory states.
Much of the malicious content is being shared on platforms like WhatsApp, Telegram, Facebook, and Twitter (X), where it can rapidly go viral before verification can occur. These campaigns often impersonate official agencies, using logos, authoritative language, and urgent tones to compel user action.
Advanced Techniques Being Employed
NCERT highlights the use of homograph attacks, a method where attackers craft URLs that resemble legitimate websites by using similar-looking characters. For instance, swapping the English letter “o” with a Cyrillic “о” can trick users into visiting a malicious page disguised as a trustworthy domain.
Other advanced tactics include:
- QR code redirection to phishing websites
- Infected web pages loaded with spyware or ransomware
- Malvertising, or unauthorized ads containing malicious code
These attacks can compromise endpoints, steal credentials, or even grant remote access to an attacker—all without the victim’s knowledge.
Corporate and Individual Users at Risk
The advisory stresses that the current threat is not limited to critical government infrastructure. Private companies, financial institutions, and individual citizens are equally vulnerable.
Apple’s AI Safari Plans Shake Google’s Search Dominance
NCERT warns that attackers may pose as law enforcement agencies or emergency responders to send fake evacuation messages, false curfew alerts, or fabricated conflict updates. The intent is to sow confusion, disrupt normal activity, and undermine public trust in institutions.
Guidelines for Public and Institutional Safety
To help defend against these threats, NCERT recommends a robust set of preventive measures:
- Avoid clicking on unsolicited links or QR codes.
- Verify the source before responding to any email, message, or alert.
- Refrain from forwarding unverified information, especially through WhatsApp and Telegram groups.
- Rely only on official communication channels such as government websites or verified social media accounts.
Technical measures suggested include:
- Updating antivirus software and firewalls
- Enabling multi-factor authentication (MFA)
- Monitoring networks for anomalies or suspicious activity
- Educating staff and family members about phishing and disinformation red flags
Public Vigilance is Crucial
NCERT emphasized the role of the public in stopping the spread of misinformation. “Do not open unverified emails, messages, or social media links. Always verify before acting,” the advisory warns.
The statement calls on all citizens to act as digital gatekeepers: report suspicious activity, avoid spreading rumours, and help others identify deceptive content.
“Together, we can prevent the spread of misinformation and defend our digital frontlines,” the advisory concludes.
Government Response and National Cyber Preparedness
The Indian government has activated rapid response mechanisms, coordinating with intelligence, law enforcement, and cybersecurity bodies to monitor threats and mitigate risks in real-time.
While cyber warfare has long been a backdrop to traditional conflicts, this surge in targeted digital operations highlights how cyber domains are now frontline battlefields in geopolitical crises.
As India and Pakistan face off once again on military, political, and now cyber fronts, protecting digital infrastructure has never been more critical.