Pakistan’s government has released a cyber security advise warning about the “Dead Glyph Backdoor.”
The cabinet division has released an advisory stating that groups known as Advanced Persistent Threats (APT) are using the “Dead Glyph Backdoor” to target key infrastructure and international government institutions.
The advice claims that hackers utilize the Dead Glyph, a “x64 native binary” and “.Net assembly exploit code,” as a point of entry to take advantage of Windows-based operating systems.
The warning states that the Dead Glyph backdoor uses malicious scripts linked to bogus files to target Windows-based online platforms. Additionally, it uses a backdoor exploit code to attack the internet system before saving phony DLL files to the Windows C drive.
The phony DLL file then uses PowerShell scripts that are not authorized to run second-stage malware. To prevent being discovered, it takes important user data and sends it to the attacker using a random network communication timing pattern.
Read More: Freelancers in Pakistan Can Generate $10 Billion in Tech Exports
The ministries and departments have been requested by the cabinet division to make sure that the OS, BIOS, hardware, software, and other components of the system are properly hardened and whitelisted. Install trusted and authorized firewalls, anti-virus, anti-malware, SIEM, SOAR, IPS/IDS, and NMS programs, among other security tools. Additionally, manually examine the C Drive System32 folder on a regular basis for any unusual file creation activity.
The advice has instructed the government departments to keep a regular eye out for any indications of malware infection on domain controllers and to constantly check endpoints and network logs for unusual network traffic. Along with powershell.exe, winword.exe, notepad.exe, explorer.exe, bitsadmin.exe, mshta.exe, excel.exe, and eqnedt32.exe, block outbound network connections from these programs as well.
The advise proposes to blacklist Windows commands and tools that end users do not need and to prevent scripts with the extensions.vbs,.vbe,.hta,.js,.wsh,.wsf,.com,.pif, and.ps1 from being executed.
It has requested that the departments set up Sender Policy Frameworks (SPFs) for domains, an email validation system that identifies email spoofing and blocks spam attachments. Additionally, it has recommended that Software Restriction Policies (SRPs) be strictly implemented and that applications be whitelisted in order to prevent binaries from running from the %APPDATA% and %TEMP% directories.
Read More: Govt Issues High Risk Alert for Google Chrome Users
It has requested that the departments update installed software and Microsoft Windows vulnerabilities on a regular basis. When not in use, disable RDP on every endpoint, and apply a patch to protect it against the most recent vulnerabilities. To access services remotely, set up a site-to-site virtual private network (VPN) using zero trust architecture.
In order to lessen the effects of data or system loss and to speed up the recovery process, the advisory has also asked government departments to regularly update antimalware programs that are running on endpoints in enterprise environments as well as standalone systems and to regularly backup all important data.
You can also invest in other famous and most in demand housing societies, such as , Blue World City, Rudn Enclave, 7 Wonders City Peshawar, Taj Residencia, Kingdom Valley, New Metro City Gujar Khan, Forest Town Rawalpindi, University Town Rawalpindi, ICHS Town, Park View City Islamabad, Multi Gardens B17 Islamabad and Nova City Islamabad.
Al Sadat Marketing please contact 0331 1110005 or visit https://alsadatmarketing.com/
Few more real estate housing schemes which are trending now a days in Islamabad by including: Faisal Town Phase 2, Prism Town Gujar Khan, New City Paradise, Eighteen Islamabad, 7 Wonders City Islamabad, Capital Smart City, Silver City Islamabad, The Life Residencia, Faisal Town Islamabad, Islamabad Golf City, Islamabad Model Town and Marble Arch Enclave.
Al Sadat Marketing is an emerging Real Estate Agency headquartered in Islamabad, Pakistan. With over 10+ Years of experience, Al Sadat Marketing is providing its services and dealing all trending housing societies projects in different cities of Pakistan. Islamabad Projects, Rawalpindi Projects, Gujar Khan Projects, Burhan Projects, and Peshawar Projects etc.
Book Your Plot Now: +92 331 111 0005