GS Paper 3 10 marks · 150w 9 min Medium
Keeping in view India’s internal security, analyse the impact of cross-border cyber attacks. Also discuss defensive measures against these sophisticated attacks.
Subtopic: Internal Security · Cyber security
How to structure your answer
Introduction: cross-border cyber attacks as a fifth-domain security threat → impact on internal security (CII, economy, defence, society) → defensive measures (institutional, technical, doctrinal, international) → Conclusion: proactive cyber deterrence.
Written within the word limit
136 words · target 150 words · 9 min
Cyberspace is now recognised as the fifth domain of warfare. State-sponsored and non-state actors across borders increasingly target India's networks, making cross-border cyber attacks a serious internal-security concern.
Impact on internal security
- Critical infrastructure: power grids, banking, telecom, transport and nuclear facilities are vulnerable to disruption.
- Economic and data security: theft of financial data, intellectual property and citizens' personal data.
- Defence and governance: espionage against defence and government systems, and threats to elections.
- Social stability: disinformation, deepfakes and radicalisation eroding public trust.
Defensive measures
- Institutional: strengthen CERT-In, NCIIPC and the Defence Cyber Agency, and operationalise a National Cyber Security Strategy.
- Technical: regular security audits, air-gapping of critical systems, encryption and threat intelligence.
- Human capacity: skilled cyber workforce and public-private coordination.
- International: cyber-diplomacy, treaties and attribution mechanisms.
A shift from reactive defence to proactive, deterrence-based cyber resilience is essential.
What an examiner expects to see
- Cyberspace is the fifth domain; cross-border attacks threaten internal security
- Critical infrastructure (power, banking, telecom, nuclear) is a prime target
- Attacks enable data theft, economic loss, espionage and IP theft
- Disinformation, deepfakes and radicalisation undermine social stability
- Institutional response: CERT-In, NCIIPC, Defence Cyber Agency, National Cyber Security Strategy
- Technical measures: audits, air-gapping, encryption, threat intelligence
- International cyber-diplomacy and attribution needed for cross-border actors
Concrete cases, schemes and judgments
- Malware intrusion at Kudankulam Nuclear Power Plant (2019)
- Suspected attempts on power-grid systems and the AIIMS ransomware attack (2022)
- NCIIPC as protector of Critical Information Infrastructure; Defence Cyber Agency (2019)
- CERT-In directions on incident reporting and cybersecurity
Terminology to weave into the answer
fifth domain of warfarecritical information infrastructureNCIIPCDefence Cyber Agencycyber deterrencestate-sponsored attacks