Growing cyber threats posing significant risk to the digital landscape of Pakistan: Kaspersky Warns

Islamabad, Pakistan – At the recent Cyber Threat Intelligence Summit in Islamabad, Kaspersky presented a comprehensive overview of the surging cyber threat landscape worldwide, with a particular focus on Pakistan. Kaspersky revealed data from its Security Network, underscoring that financial malware and spyware attacks have increased, posing significant risk to the digital landscape of the country. Other prevalent threats include ransomware, phishing attacks and espionage-driven malware specifically engineered to steal sensitive information. Experts also warned about Advanced Persistent Threat (APT) groups like Lazarus and SideWinder leading sophisticated campaigns often aiming for espionage.

Ransomware remains one of the most prominent threats. During a ransomware attack a malware is used to block access to data or to encrypt files and demand payment for the decryption key. These attacks can severely disrupt operations, making critical data and systems inaccessible or lead to data loss. Kaspersky experts project ransomware-as-a-service to grow further in 2025.

According to Kaspersky Security Network statistics, 13.7% of users in Pakistan were attacked by web-based threats in the third quarter of 2024 (July-September). These web-based attacks range from phishing to maliciously embedded websites that compromise user data. 18.7% of users came across local threats that spread via USB drives, CDs, and encrypted file installers, bypassing detection and further endangering user systems.

The financial sector in Pakistan saw a sharp increase in cyber threats. From January to October 2024, Kaspersky recorded a 114% rise banking and financial malware compared to the same period of the previous year. These attacks specifically target digital financial operations, posing a substantial risk to individual and institutional financial security. One of the trends mentioned by Kaspersky experts is that financial cyberthreats for smartphones rise, and this is expected to continue in 2025.

Spyware attacks have also surged by 63% in Pakistan in the ten months of 2024. The intent of this malware is to gather and transmit user data to unauthorized entities. This trend raises serious privacy concerns for both corporate and government entities across the nation. A surge in attacks based on stolen information is expected in 2025.
Industrial Control Systems (ICS) should also be secured from cyberthreats, especially if used in critical infrastructures such as power and utilities, energy and chemical, metals and mining, critical manufacturing. According to Kaspersky Security Network statistics, 29.51% of ICS computers in Pakistan faced cyberthreats in the third quarter of 2024. These cyberthreats range from denylisted internet resources, malicious scripts and phishing pages, spy trojans, backdoors, keyloggers to more targeted malware for AutoCAD systems.

“Pakistan is actively integrating technologies, but it’s important to keep cybersecurity in mind. Organizations and individuals need to adopt a proactive and multi-layered cybersecurity approach in response to the escalating cyber threats. Organizations must not only strengthen their internal IT defenses but also integrate real-time threat intelligence, continuous monitoring, and rapid incident response into their cybersecurity frameworks. At the same time, they should educate employees. While individuals should use robust security solutions on all their devices and be informed about cybersecurity hygiene principles,” said Dmitry Berezin, Kaspersky’s Global Security Expert.

Kaspersky offers a range of award-winning solutions tailored to combat sophisticated threats to all types of users from individuals to businesses of all sizes, including industrial facilities. These solutions, in combination with Kaspersky’s expertise in cyber threat intelligence, equip customers in Pakistan with essential tools to defend against the increasingly complex cyber threats.

Leave a Reply

Your email address will not be published. Required fields are marked *