← All questionsGS3 · 2017 · Internal Security ·Cyber Attack Threats and Security Framework
QUESTION 9
GS3
10 marks

Discuss the potential threats of Cyber attack and the security framework to prevent it.

WRITE IN
7 min
150 words

What the examiner wants

Discuss the threats from cyber attacks and India's framework to prevent them.

DiscussExplain the different sides of the issue, use evidence, and finish with a balanced view.

Demand-wise check

  1. 1Threats: ransomware, phishing, DDoS, state-backed attacks on critical infrastructure (power, health, nuclear), data breaches, financial fraud, espionage≈30 words
  2. 2Indian incidents: AIIMS ransomware (2022), Kudankulam malware (2019), Mumbai power outage (2020) linked to suspected state actors≈30 words
  3. 3Framework: IT Act 2000 (Sec 66F, 70A), CERT-In, NCIIPC, National Cyber Security Policy 2013, I4C, DPDP Act 2023, NCSC≈30 words
  4. 4Gaps: no updated cyber security strategy, skill shortage, imported hardware≈30 words

Open in about 20 words and close in about 20.

Answer plan

Threat typesIndian examplesLegal and institutional frameworkGapsConclusion

Where marks usually go

  • Only listing agencies without threats
  • No Indian incident

Draw this

  • Layered diagram: critical infrastructure → NCIIPC; others → CERT-In; crime → I4C

Value addition

  • RuleCERT-In directions (April 2022) require reporting cyber incidents within 6 hours.CERT-In, 2022
  • CaseAIIMS Delhi servers were hit by ransomware in November 2022.Media reports, 2022