cyber_image_2

The digital revolution is an intense transformation of the contemporary world. The most important outcome of this revolution is cyber technology, as every type of technology is somehow related to or dependent on it. Cyber technologies were once just thought to be communication and computation only. But now, they have expanded to incorporate every underlying sector that runs our modern-day life, which includes food distribution, banking, transportation, resource management, and most importantly, all aspects of state-governance. Consequently, people from every field and nation are connected to each other, hence making the world a global village. However, this interconnectedness also poses some vulnerabilities. The privacy of an individual is compromised. The relations between states and the relations between a state and its citizens are driven by perception management performed on digital platforms.

Today, critical infrastructure and many public services rely on digital networks that can easily be attacked from any corner of the globe. Because networks are becoming more complex with the passage of time, therefore, vulnerability is also on rise. Recently, an organization named Broimum conducted a study that showed how digital crime revenue grew 1.5 trillion dollars annually in illicit profits. Similarly, as per the calculations, worldwide spending on cybersecurity is also forecasted to reach $133.7 billion in 2022.

Because of known vulnerabilities, the security of cyberspace has become one of the major challenges in the national security, public safety, and economic domains that every nation-state is facing in the 21st century. A state’s digital infrastructure is vulnerable to cyber disruptions and attacks which are easy to organize, difficult to trace, and asymmetric in nature.

In terms of falling prey to cyber-attacks, Pakistan is no exception. Pakistan is ranked 7th in the list of countries vulnerable to cyber-attacks. The cyber-attacks which are frequently observed against Pakistan include data theft, website defacing, and denial of service attacks (DoS).

There are a number of events that provide evidence of the vulnerability of Pakistan’s cybersecurity framework. Pakistan became a victim of a sustained DoS attack for the first time in 2008, as reported by the then Finance Minister, when State Bank of Pakistan’s services was frozen for 21 days straight.

Recent events of cyber-attacks can be traced back to November 2018; the target once again was the banking industry. According to a digital security website, the data of more than 8000 accounts of 10 banks was available for sale in the dark web. Another consecutive cyber-attack took place in December 2018. This time the targets were the ATMs of Habib Bank Limited and Bank Islamic Limited.

A number of reports confirm that many of our state institutions have loopholes regarding their cybersecurity. This vulnerability has resulted in different types of cyber-attacks on the official websites of institutions and their defacing. The affected websites include the official website of the Ministry of the Interior, the website of Government of Pakistan, the official website of the Ministry of Foreign Affairs (MOFA), the website of District Courts Gujranwala, the website of Faisalabad Police Department, and the website of the Lahore High court. The footprints of these cyber-attacks were traced in India. Recently, Government of Pakistan’s passport application tracking web site was hacked on March 2nd, 2019. In this attack, the hackers used the Scan box framework to steal visitor’s data.

Media and political parties in Pakistan have also been in the limelight of cyber threats as websites of Jag TV, CNBC Pakistan and SAMMA FM were hacked and defaced with derogatory images. Likewise, attackers also targeted the websites of PPP, PML-N and JUI-F politicians and defaced them by putting an anti-Pakistan slogan on their homepages.

Pakistan is also vulnerable to cyber-attacks in the military domain. The nature of these attacks may vary according to the objectives of the launching entity. Some are basic espionage, which is defined as “trying to acquire the national secrets or the vital information of the enemy state”. Others are called cyber-weapons aimed at disrupting military command and control systems in case of any conflict.

The aforementioned events depict an increase in the intensity and frequency of cyber-attacks against Pakistan. However, the absence of limitations and regulations in cyberspace is creating difficulties for policymakers in managing the risks related to them at both, national and international levels. The need of the hour is to rethink the role of government in legislation and policy formulation regarding the security of cyberspace and digital infrastructure of Pakistan. Moreover, cyber challenges can also be better tackled by collaboration and consensus-building among national stakeholders to synergize their efforts and chalk out a comprehensive strategy and implementation plan that ensures a balance between the security and legal rights of citizens.

The writer is a researcher at Centre for Aerospace and Security Studies (CASS). She can be reached at [email protected].

Image source: Internet


Share this article

Facebook
Twitter
LinkedIn

Recent Publications

Browse through the list of recent publications.

The Cover-up: IAF Narrative of the May 2025 Air Battle

Even after one year since the India-Pakistan May war of 2025, the Indian discourse regarding Operation Sindoor remains uncertain under its pretence of restraint. The Pahalgam attack on 22 April, which killed 26 people, triggered an escalatory spiral. New Delhi quickly accused Pakistan-linked elements, while Islamabad refuted the allegation and demanded an independent investigation. On 7 May, India launched attacks deep inside Pakistan under what it later termed as Operation Sindoor. The political motive was intended to turn the crisis into coercive signalling by shifting the blame onto the enemy and projecting a sense of military superiority.
This episode, however, began to fray immediately as war seldom follows the intended script. Within minutes PAF shot down 7 IAF aircraft including 4 Rafales. On 8 May, Reuters reported that at least two Indian aircraft were shot down by a Pakistani J-10C, while the local government sources reported other aircraft crashes in Indian-occupied Jammu and Kashmir

Read More »

Why the IAF’s Post-Sindoor Spending Surge is a Sign of Panic

After Operation Sindoor, India is spending billions of dollars on new weapons. This is being taken by many people as an indication of military prowess. It is not. This rush to procure weapons is in fact an acknowledgement that the Air Force in India had failed to do what it was meant to do. The costly jets and missiles that India had purchased over the years failed to yield the promised results.

Sindoor was soon followed by India in sealing the gaps which the operation had exposed. It was reported that Indian Air Force (IAF) is looking to speed up its purchases of more than 7 billion USD. This will involve other Rafale fighter jets with India already ordering 26 more Rafales to the Navy in 2024 at an estimated cost of about 3.9 billion USD. India is also seeking long-range standoff missiles, Israeli loitering munitions and increased drone capabilities. Special financial powers of the Indian military were activated to issue emergency procurement orders. The magnitude and rate of these purchases speak volumes.

Indian media and defence analysts have over the years considered the Rafale as a game changer. When India purchased 36 Rafales aircrafts at an approximate cost of 8.7 billion USD, analysts vowed that the aircraft would provide India with air superiority over Pakistan. Operation Sindoor disproved all those allegations. Indian aircraft did not even fly in Pakistani airspace when the fighting started. India solely depended on standoff weapons that were launched at a safe distance. The air defence system of Pakistan, comprising of the HQ-9 surface-to-air missile system and its own fighters, stood its ground.

Read More »

May 2025: Mosaic Warfare and the Myth of Centralised Air Power

Visualise a modern-day Air Force commander sitting in the operations room, miles away from the combat zone, overseeing every friendly and enemy aircraft and all assets involved in the campaign. In a split second, he can task a fighter, reposition a drone, and authorise a strike. In today’s promising technological era, he does not even need an operations room; a laptop on his desktop will suffice. The situation looks promising as it offers efficiency, precision, and control. The term used for such operational control is ‘centralisation’, which has been made possible with advanced networking, integrating space, cyber, surveillance, artificial intelligence, and seamless communication, enabling a single commander to manage an entire campaign from a single node. Centralised command and control, championed by the Western air forces and then adopted by many others, has thus been seen as a pinnacle of modern military power.
The concept of centralisation, enabled by state-of-the-art networking, may seem promising, but it is nothing more than a myth.

Read More »