logo

Brief Disruptions, Bold Claims: The Tactical Reality Behind the India-Pakistan Hacktivist Surge

ID: 133fe2a0-d707-597b-872d-24932305bc4a

STIX ID: report--133fe2a0-d707-597b-872d-24932305bc4a

Feed Name: CloudSEK Blog

Threat Score
72/100

Date Published: 2025-05-11

Date Updated: 2026-04-27

...
...

The report assesses May 2025 hacktivist claims against Indian digital infrastructure, finding most defacements, DDoS events, and large data leak assertions to be overstated or recycled, while documenting a credible APT36 espionage campaign that deployed Crimson RAT via phishing (malicious .ppam/.pdf attachments, spoofed domains) to target government and defense networks and includes IOCs (C2 IP 93.127.133.58:1097, spoofed domains, payload names) and MITRE TTP mappings.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.