A wide range of quickly digitized important infrastructure sectors in India — from finance to authorities techniques and from manufacturing to healthcare — now are going through elevated cyberattacks and cyber threats.
Take into account this: A hacking group in April of this 12 months leaked 7.5 million information containing private data stolen from India’s main producer of wi-fi audio and wearable gadgets boat. Most just lately, the Reserve Financial institution of India — the nation’s central financial institution — known as out elevated digitization as a possible threat for the nation’s monetary infrastructure. Cyber incidents in opposition to finance and dealt with by the nationwide CERT group jumped to some 16 million incidents in 2023, up from 53,000 in 2017, in line with a latest report by RBI.
The overwhelming majority of banks and most non-bank monetary corporations (NBFCs) contemplate cybersecurity to be a main problem to their capacity to transition to digital applied sciences, in line with the financial institution’s report. “Digitalisation may pose monetary stability considerations owing to cybersecurity threats, knowledge breaches, and the pace at which data and rumours can move by way of the system,” the RBI acknowledged in its report. “Cyber fraudsters are more and more focusing on monetary establishments as a substitute of finish customers globally.”
India’s monetary sector will not be alone. Public sector and authorities techniques have seen a dramatic enhance in cyberattacks, with most set up seeing cyberattacks develop by not less than half.
Earlier this 12 months, a hacking group focused authorities companies and power corporations with a Trojan dubbed HackBrowserData. In the meantime, Pakistan, and China continuously goal Indian organizations in cyber operations, akin to latest Cosmic Leopard operations within the area.
General, 83% of organizations in India reported not less than one cybersecurity incident within the final 12 months, inserting the nation at No. 4, behind Vietnam (94%), New Zealand (90%), and Hong Kong (86%) in rankings for the Asia-Pacific area, in line with a Cloudflare report.

The first challenges hobbling the adoption of digital applied sciences. Supply: RBI employees estimates based mostly on survey responses from 25 banks and 55 NBFCs.
On a worldwide stage, the nation is the fifth most breached nation and must focus extra on cybersecurity, says Partha Gopalakrishnan, founding father of PG Advisors, an AI and digital transformation consultancy.
“India may gain advantage from much more sturdy cybersecurity measures,” he says. “The primary piece of laws governing cybercrime is the Data Expertise Act 2000 … now, 24 years outdated and outdated.”
High Worries: Cloud and Units
Indian organizations are most involved about cloud-related threats (52%), assaults on linked gadgets (45%), hack and leak operations (36%), and software program provide chain compromises (35%), in line with PwC’s The C-Suite Playbook report for India.
The adoption of rising applied sciences akin to AI and cloud and the give attention to innovation and distant working has pushed digital transformations, thus boosting corporations’ want for extra safety defenses, in line with Manu Dwivedi, accomplice and chief for cybersecurity at consultancy PwC India.
“AI-enabled phishing and aggressive social engineering have elevated ransomware to the highest concern,” he says. “Whereas cloud-related threats are regarding, higher interconnectivity between IT and OT environments and elevated utilization of open-source elements in software program are growing the out there menace floor for attackers to take advantage of.”
Indian organizations additionally have to harden their techniques in opposition to insider threats, which requires a mixture of enterprise technique, tradition, coaching, and governance processes, Dwivedi says.
AI for Good, AI for Evil
The rising demand for AI has additionally formed the menace panorama within the nation and menace actors have already began experimenting with totally different AI fashions and strategies, says PwC India’s Dwivedi.
“Menace actors are anticipated to make use of AI to generate custom-made and polymorphic malware based mostly on system exploits, which escapes detection from signature-based and conventional detection strategies,” he says. “Going ahead, it could be tougher to find out how all forms of menace actors are misusing GenAI.”
As well as, AI fashions could possibly be harnessed to assist malicious actors turn into extra environment friendly and productive, says PG Advisors’ Gopalakrishnan.
“The usage of AI in cyberattacks is exacerbated by the AI abilities hole in India, making coaching within the areas of each AI and cybersecurity an absolute precedence inside Indian companies,” he says, including: “AI will place higher energy within the palms of hackers sooner or later, making it accessible for many who may in any other case lack the abilities and capabilities to launch cyberattacks.”