UPSC CSE 2026 Essay Paper Discussion
GS Paper 3 10 marks · 150w 9 min Medium

Keeping in view India’s internal security, analyse the impact of cross-border cyber attacks. Also discuss defensive measures against these sophisticated attacks.

Subtopic: Internal Security · Cyber security

Model answer outline

How to structure your answer

Introduction: cross-border cyber attacks as a fifth-domain security threat → impact on internal security (CII, economy, defence, society) → defensive measures (institutional, technical, doctrinal, international) → Conclusion: proactive cyber deterrence.
Full model answer

Written within the word limit

136 words · target 150 words · 9 min

Cyberspace is now recognised as the fifth domain of warfare. State-sponsored and non-state actors across borders increasingly target India's networks, making cross-border cyber attacks a serious internal-security concern.

Impact on internal security

  • Critical infrastructure: power grids, banking, telecom, transport and nuclear facilities are vulnerable to disruption.
  • Economic and data security: theft of financial data, intellectual property and citizens' personal data.
  • Defence and governance: espionage against defence and government systems, and threats to elections.
  • Social stability: disinformation, deepfakes and radicalisation eroding public trust.

Defensive measures

  • Institutional: strengthen CERT-In, NCIIPC and the Defence Cyber Agency, and operationalise a National Cyber Security Strategy.
  • Technical: regular security audits, air-gapping of critical systems, encryption and threat intelligence.
  • Human capacity: skilled cyber workforce and public-private coordination.
  • International: cyber-diplomacy, treaties and attribution mechanisms.

A shift from reactive defence to proactive, deterrence-based cyber resilience is essential.

Key points

What an examiner expects to see

  • Cyberspace is the fifth domain; cross-border attacks threaten internal security
  • Critical infrastructure (power, banking, telecom, nuclear) is a prime target
  • Attacks enable data theft, economic loss, espionage and IP theft
  • Disinformation, deepfakes and radicalisation undermine social stability
  • Institutional response: CERT-In, NCIIPC, Defence Cyber Agency, National Cyber Security Strategy
  • Technical measures: audits, air-gapping, encryption, threat intelligence
  • International cyber-diplomacy and attribution needed for cross-border actors
Examples to use

Concrete cases, schemes and judgments

  • Malware intrusion at Kudankulam Nuclear Power Plant (2019)
  • Suspected attempts on power-grid systems and the AIIMS ransomware attack (2022)
  • NCIIPC as protector of Critical Information Infrastructure; Defence Cyber Agency (2019)
  • CERT-In directions on incident reporting and cybersecurity
Keywords / terms

Terminology to weave into the answer

fifth domain of warfarecritical information infrastructureNCIIPCDefence Cyber Agencycyber deterrencestate-sponsored attacks

Share this answer