QUESTION 9
GS3
10 marks
Discuss the potential threats of Cyber attack and the security framework to prevent it.
WRITE IN
7 min
150 words
What the examiner wants
Discuss the threats from cyber attacks and India's framework to prevent them.
DiscussExplain the different sides of the issue, use evidence, and finish with a balanced view.
Demand-wise check
- 1Threats: ransomware, phishing, DDoS, state-backed attacks on critical infrastructure (power, health, nuclear), data breaches, financial fraud, espionage≈30 words
- 2Indian incidents: AIIMS ransomware (2022), Kudankulam malware (2019), Mumbai power outage (2020) linked to suspected state actors≈30 words
- 3Framework: IT Act 2000 (Sec 66F, 70A), CERT-In, NCIIPC, National Cyber Security Policy 2013, I4C, DPDP Act 2023, NCSC≈30 words
- 4Gaps: no updated cyber security strategy, skill shortage, imported hardware≈30 words
Open in about 20 words and close in about 20.
Answer plan
Threat typesIndian examplesLegal and institutional frameworkGapsConclusion
Where marks usually go
- Only listing agencies without threats
- No Indian incident
Draw this
- Layered diagram: critical infrastructure → NCIIPC; others → CERT-In; crime → I4C
Value addition
- RuleCERT-In directions (April 2022) require reporting cyber incidents within 6 hours.CERT-In, 2022
- CaseAIIMS Delhi servers were hit by ransomware in November 2022.Media reports, 2022
Next: plan for one minute, write it in 7 minutes, then get it checked.