Pakistan Cyber Force is a self-proclaimed Pakistani hacktivist group associated with retaliatory and propaganda-oriented cyber activity directed primarily at Indian targets. Public reporting links the group to the compromise of Indian media and web properties during a period of heightened regional tension, including the hijacking of an Indian television news broadcast to air pro-Pakistan Army messaging. The group has also been accused of disruptive attacks against Indian channels and websites, including distributed denial-of-service activity. The actor appears to operate in a hacktivist and information-operations style rather than as a well-documented advanced persistent threat. Reporting also associates a similarly named social media presence with unverified claims of breaches against Indian entities, indicating a pattern of amplification, opportunistic claim-making, and psychological or symbolic impact. High-confidence reporting supports activity against Indian media and public-facing websites, but broader intrusion claims remain insufficiently verified. Pakistan Cyber Force is best characterized as a Pakistan-aligned hacktivist brand focused on anti-India retaliation, website and broadcast disruption, and pro-military messaging. Available information does not support attribution to a formal state organ, though its messaging is overtly nationalist and supportive of the Pakistani military.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
Attributed origin per open-source reporting.
1 distinct technique observed across reporting, grouped by tactic. Hover any cell for the evidence excerpt; click through for MITRE's full description.
5 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Group claiming responsibility for hacking Indian news channel ABP News and broadcasting pro-Pakistan Army content in retaliation for earlier hacks affecting Pakistani channels.
Allegedly conducted retaliatory cyberattacks (including DDoS) against Indian channels and websites following a broadcast/satellite feed disruption affecting Pakistani news channels.
Allegedly conducted retaliatory intrusions following the hijacking of Pakistani TV broadcasts, including compromising an Indian news channel’s live feed to play speeches and defacing/compromising a regional government/food-related website.
Defacement and broadcast hijacking operation against an Indian news channel, used to air pro-Pakistan Army messaging and speeches by Pakistan’s military leadership as a retaliatory cyber action.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.