Feeds

India to greenlight state-sponsored cyber attacks

Gov agencies will get the nod

The essential guide to IT transformation

The Indian government is stepping up its cyber security capabilities with plans to protect critical national infrastructure from a Stuxnet-like attack and to authorise two agencies to carry out state-sponsored attacks if necessary.

Sources told the Times of India that the government’s National Security Council, headed by prime minister Manmohan Singh, is currently finalising plans which would give the Defence Intelligence Agency (DIA) and National Technical Research Organisation (NTRO) the power to carry out unspecified offensive operations.

India is also hoping to co-ordinate its defensive capabilities better, in the event of an attack which could debilitate its critical infrastructure.

The country was reportedly hit by Stuxnet, although it doesn’t appear to have caused any serious damage and was unlikely to have been a deliberately targeted attack.

With this in mind, the NTRO is likely to be called on to create a 24-hour National Critical Information Infrastructure Protection Centre (NCIPC) to monitor threats, while sector-specific Computer Emergency Response Teams (CERTs) will also be recommended, the report said.

The NTRO and Intelligence Bureau (IB) will be given responsibility for the security of various government networks, it added.

The Indian government is some way behind the US and UK in its formulation of a coherent national cyber security policy, and has been criticised in the past for its slow response to denial of service and web defacement attacks.

Most recently it has been under fire from hacktivist collective Anonymous in retaliation for it stance on illegal file sharing, while hackers from neighbouring rival Pakistan are thought to represent a constant threat.

Last month Symantec warned that the lack of security know-how among the country's growing urban population and small and medium sized businesses is being exploited with increasing ruthlessness by criminals. ®

Build a business case: developing custom apps

More from The Register

next story
Super Cali signs a kill-switch, campaigners say it's atrocious
Remote-death button bad news for crooks, protesters – and great news for hackers?
UK government accused of hiding TRUTH about Universal Credit fiasco
'Reset rating keeps secrets on one-dole-to-rule-them-all plan', say MPs
Caught red-handed: UK cops, PCSOs, specials behaving badly… on social media
No Mr Fuzz, don't ask a crime victim to be your pal on Facebook
Ex US cybersecurity czar guilty in child sex abuse website case
Health and Human Services IT security chief headed online to share vile images
Don't even THINK about copyright violation, says Indian state
Pre-emptive arrest for pirates in Karnataka
The police are WRONG: Watching YouTube videos is NOT illegal
And our man Corfield is pretty bloody cross about it
Felony charges? Harsh! Alleged Anon hackers plead guilty to misdemeanours
US judge questions harsh sentence sought by prosecutors
prev story

Whitepapers

A new approach to endpoint data protection
What is the best way to ensure comprehensive visibility, management, and control of information on both company-owned and employee-owned devices?
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Maximize storage efficiency across the enterprise
The HP StoreOnce backup solution offers highly flexible, centrally managed, and highly efficient data protection for any enterprise.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.