
Welcome to
ONLiNE UPSC
The Department of Personnel and Training (DoPT) report for 2023-24 sheds light on significant cybersecurity incidents affecting various sectors in India. These incidents highlight the growing vulnerabilities in our digital infrastructure and the urgent need for robust security measures.
Among the notable incidents reported, a ransomware attack targeted a critical defense unit, severely compromising its operations. Additionally, a data breach exposed sensitive information of millions, alongside malware attacks that affected a government ministry. Furthermore, a substantial DDoS attack disrupted critical infrastructure, including airports, raising alarms about national security.
A ransomware attack is a malicious act where hackers encrypt data on a system, demanding a ransom for decryption. This type of attack not only disrupts normal operations but also poses severe security risks, making it imperative for organizations to adopt preventive measures.
According to the Indian Computer Emergency Response Team (CERT-In), 2023 saw a staggering 15,92,917 security incidents, marking a dramatic increase from 53,117 incidents in 2017. These incidents include website intrusions, malware propagation, DDoS attacks, and data breaches, underscoring the escalating threat landscape in India.
CERT-In has recommended a series of remedial measures to strengthen cybersecurity. Their focus includes preventing website intrusions, managing malware threats, and countering unauthorized network scanning activities. These measures are crucial for mitigating risks and enhancing the overall security framework.
The DoPT report emphasizes the importance of international collaboration in combating cyber threats. Partnerships between India's Central Bureau of Investigation (CBI) and agencies such as the FBI, RCMP (Canada), and the Singapore Police have facilitated the resolution of crypto-related frauds and other scams, leading to the recovery of significant funds.
Several international cyber scams have targeted Indian citizens, including a notable $2 million cryptocurrency fraud and a large-scale crypto mining scam that extracted over Rs. 100 crore. Additionally, fraudulent investment and loan application scams have posed significant risks to the financial security of individuals.
In October 2023, a data breach at the Indian Council of Medical Research (ICMR) exposed sensitive information, including Aadhaar and passport details of 81 crore Indians. This breach also included personal data such as names, phone numbers, and addresses, highlighting the urgent need for improved data protection measures.
The Indian government has responded to the rising cyber threats by enhancing collaboration with global cybersecurity agencies and implementing CERT-In's recommendations. The CBI is actively investigating various investment scams and working with stakeholders to improve security protocols across different sectors.
Q1. What were the main cybersecurity incidents in India reported by DoPT?
Answer: The 2023-24 Department of Personnel and Training (DoPT) report highlighted major incidents, including a ransomware attack on a crucial defence unit, a data breach affecting millions, malware attacks on a ministry, and a significant DDOS attack targeting critical infrastructure, including airports.
Q2. What is a ransomware attack, and how does it impact systems?
Answer: A ransomware attack is a type of cyber attack where malware locks access to a computer system until a ransom is paid. This disrupts operations and poses significant security risks.
Q3. How many cybersecurity incidents were reported in 2023, according to CERT-In?
Answer: The Indian Computer Emergency Response Team (CERT-In) recorded 15,92,917 security incidents in 2023, a notable rise from 53,117 incidents in 2017. These incidents included website intrusions, malware propagation, DDoS attacks, and data breaches.
Q4. What actions have CERT-In recommended to counter such cyber threats?
Answer: CERT-In suggested and implemented remedial measures in coordination with stakeholders to strengthen cybersecurity, focusing on preventing website intrusions, handling malware, and countering unauthorized network scanning activities.
Q5. How did international cooperation assist in cybersecurity efforts?
Answer: The DoPT report notes collaborations between India’s Central Bureau of Investigation (CBI) and international agencies like the FBI, RCMP (Canada), and Singapore Police. These partnerships helped tackle crypto-related frauds and other international scams, recovering significant funds.
Question 1: What was a major incident reported in the DoPT 2023 report?
A) DDoS attack on banks
B) Ransomware attack on a defence unit
C) Data breaches in educational institutions
D) Cybersecurity training programs
Correct Answer: B
Question 2: How many security incidents were recorded by CERT-In in 2023?
A) 53,117
B) 15,92,917
C) 10,00,000
D) 20,00,000
Correct Answer: B
Kutos : AI Assistant!