Brief Disruptions, Bold Claims: The Tactical Reality Behind the India-Pakistan Hacktivist Surge
ID: 133fe2a0-d707-597b-872d-24932305bc4a
STIX ID: report--133fe2a0-d707-597b-872d-24932305bc4a
Feed Name: CloudSEK Blog
Threat Score
The report assesses May 2025 hacktivist claims against Indian digital infrastructure, finding most defacements, DDoS events, and large data leak assertions to be overstated or recycled, while documenting a credible APT36 espionage campaign that deployed Crimson RAT via phishing (malicious .ppam/.pdf attachments, spoofed domains) to target government and defense networks and includes IOCs (C2 IP 93.127.133.58:1097, spoofed domains, payload names) and MITRE TTP mappings.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
