Phone : +91 95 8290 7788 | Email : sales@itmonteur.net

Register & Request Quote | Submit Support Ticket

Home » Cyber Security News » Government sounds alarm over Zip files –

Government sounds alarm over Zip files –

Government sounds alarm over Zip files –

WinRAR cyber threat alerts have prompted the Indian government to issue an urgent advisory to its personnel after discovering that a Pakistan-linked hacking group is exploiting vulnerabilities in the popular file archiving software. According to a Moneycontrol report, the attackers are using the flaw to deploy dangerous trojans like AllaKore and Ares, targeting sensitive defence and government networks. WinRAR, a widely used tool for managing compressed files, has now become an unexpected cybersecurity risk.

👉 Internal link suggestion: Link the phrase “cybersecurity infrastructure” to your internal page on Cybersecurity Services in India or firewalls.support.
👉 External link suggestion: Link “Moneycontrol” to the external article above.

According to a report in MoneyControl, this is the latest in a string of attacks that government organisations in India have been facing from foreign nation-state linked cyber threat actors. These threat actors typically target institutions such as defence bodies and so on to steal sensitive information.

A previous report by Moneycontrol highlighted alerts regarding cyber threat actors linked to Pakistan and China targeting Indian officials.

What are the techniques that these Pakistan linked hackers use : 

An advisory reviewed by the publication, released on April 9 by the government, revealed that the group known as SideCopy is capitalising on the WinRAR vulnerability to silently run code that install remote access trojans (RATs) such as AllaKore or Ares.

The security advisory detailed that the deployed payload is capable of stealing system information, recording keystrokes, capturing screenshots, managing file uploads and downloads, and remotely controlling the compromised system to execute commands and relay pilfered data to a command and control (C2) server.

Active since at least 2019, SideCopy is believed to be a Pakistani group that predominantly targets South Asian nations, especially the Indian defence sector and entities in Afghanistan.

Their typical strategy involves dispatching phishing emails containing defence-related baits. These emails bear harmful attachments that, once opened, install RATs to seize control over the targeted system.

The government’s advisory also included recommendations for officials to upgrade WinRAR to its most recent version, identify and segregate infected systems from the network, and conduct a thorough security audit of their cyber security infrastructure.

WinRAR is a file archiver utility for Windows that can create and view archives in RAR or ZIP formats, and unpack many archive file formats.

In its latest cybersecurity advisory, the Indian government has recommended immediate action to mitigate this threat. Officials have been urged to update WinRAR to its latest version, isolate potentially infected systems, and perform a thorough audit of their IT infrastructure. Cybersecurity experts have also emphasized the importance of regular system patching, user awareness training, and network monitoring to identify unusual activities early.

This incident highlights how everyday tools like WinRAR, which millions of users rely on for file compression, can become attack vectors when left unpatched. The misuse of such utilities by state-sponsored groups reflects the growing sophistication of modern cyberwarfare.

Conclusion :

The WinRAR cyber threat is a stark reminder that no software, however routine, is immune to exploitation. As government agencies and defence organizations remain prime targets, ensuring that third-party tools and systems are regularly updated is vital.

Cybersecurity experts warn that threats from groups like SideCopy are not likely to fade soon. The Indian government’s proactive response — through timely advisories and stronger infrastructure audits — demonstrates increasing awareness of evolving digital risks. For organizations handling sensitive data, investing in advanced endpoint protection and email security solutions like those offered by IT Monteur’s cybersecurity division can make a crucial difference in defending against such attacks.

Information Security - InfoSec - Cyber Security - Firewall Support Providers Company in India

 

What is Firewall? A Firewall is a network security device that monitors and filters incoming and outgoing network traffic based on an organization's previously established security policies. At its most basic, a firewall is essentially the barrier that sits between a private internal network and the public Internet.

 

Secure your network at the gateway against threats such as intrusions, Viruses, Spyware, Worms, Trojans, Adware, Keyloggers, Malicious Mobile Code (MMC), and other dangerous applications for total protection in a convenient, affordable subscription-based service. Modern threats like web-based malware attacks, targeted attacks, application-layer attacks, and more have had a significantly negative effect on the threat landscape. In fact, more than 80% of all new malware and intrusion attempts are exploiting weaknesses in applications, as opposed to weaknesses in networking components and services. Stateful firewalls with simple packet filtering capabilities were efficient blocking unwanted applications as most applications met the port-protocol expectations. Administrators could promptly prevent an unsafe application from being accessed by users by blocking the associated ports and protocols.

 

Firewall Firm is an IT Monteur Firewall Company provides Managed Firewall Support, Firewall providers , Firewall Security Service Provider, Network Security Services, Firewall Solutions India , New Delhi - India's capital territory , Mumbai - Bombay , Kolkata - Calcutta , Chennai - Madras , Bangaluru - Bangalore , Bhubaneswar, Ahmedabad, Hyderabad, Pune, Surat, Jaipur, Firewall Service Providers in India, Welcome to IT Monteur's Firewall Firm, India's No1 Managed Enterprise Network Security Firewall Support Provider Company in India, Firewall Firm Provider Complete range of Juniper Firewall Support , Cisco Firewall Support , Check Point Firewall Support , Palo Alto Firewall Support , FortiGate Firewall Support , Forcepoint Firewall Support , Sophos Firewall Support , WatchGuard Firewall Support , Baracuda Firewall Support , SonicWall Firewall Support , Gajshield Firewall Support , Seqrite Firewall Support , Firewall , Hardware Firewall , Software Firewall , Firewall India , Firewall , Network Firewall , Firewall Support , Firewall Monitoring , Firewall VPN , WAF Website Firewall , Firewall Security , Firewall India , Firewalls Support Provider in India , Firewall Support Services Provider Company in India

Sales Number : +91 95 8290 7788 | Support Number : +91 94 8585 7788
Sales Email : sales@itmonteur.net | Support Email : support@itmonteur.net

Register & Request Quote | Submit Support Ticket