#India
11 stories taggedIndia.

Cruciferra: The Malware-Hiding Service Fuelling Attacks on Indian Taxpayers
A China-linked group is using a paid tool called Cruciferra to smuggle remote-access malware onto Windows machines, with tax-themed phishing emails as the way in.

Suspected Chinese and Indian Spies Both Targeted Pakistani Police, Researchers Say
A two-year campaign hit Balochistan Police and other law enforcement bodies, with servers holding criminal records among the compromised assets.

Fake Tax Emails Are Planting Two Separate Spying Tools on Indian Taxpayers' Computers
A campaign timed to India's tax filing season tricks people into downloading what looks like an official government utility. Inside: two hidden programs that give criminals full remote control of the victim's machine.

Fake Indian tax portal used to plant spyware on finance teams' computers
A suspected Chinese hacking group is posing as India's Income Tax Department to slip a remote-control virus onto the machines of accountants and corporate finance staff.

One Researcher, 14 Flaws, Millions of Indians at Risk
A young independent security researcher found gaping holes in Indian government portals — including an admin panel left wide open to the entire internet. The government fixed everything within three weeks.

Mustang Panda Turns Zoho WorkDrive Into C2 in Twin Campaigns Against Indian Government
The China-aligned crew is running parallel operations against New Delhi ministries and hydropower operators, abusing a legitimate cloud collaboration service to move commands past network defenses.

India Tells Court Telegram Couldn't Detect Exam-Leak Channels Before Block
Government says it warned Telegram two weeks before pulling the plug. Telegram says the ban is unlawful and that it cooperated.

India Pulls Telegram Offline Until June 22 — and the Block Spilled Into the UAE
New Delhi cites leaked exam papers circulating in Telegram channels. Pavel Durov says Reliance Jio went further, hijacking BGP routes that broke the app well outside India's borders.

India Sets a 12-Hour Clock on Exploited Vulnerabilities. Can Enterprises Actually Do It?
CERT-In's new AI-threat framework resets expectations around patch velocity — but the real test is whether organizations even know what's exposed.

CERT-In Tightens the Clock: Patch Internet-Facing Bugs in 12 Hours
India's national CERT cites AI-assisted exploit development as the reason small teams now have less than a working day to close exposed holes.

Twelve Hours, or Else: India's New Patch Clock Starts Ticking
CERT-In tells operators of internet-facing systems to close critical flaws within half a day, citing AI-assisted exploit chains that compress the attacker's runway to minutes.