Global Cyber Pulse: 06 May 2025

May 6, 2025 | Cybersecurity
By Ashwani Mishra, Editor-Technology, 63SATS Cybertech

A Pakistan-based group claimed breaches of Indian defence institutions, while Harrods became the third major UK retailer hit in a recent cyberattack wave. In the U.S., a secure app used by former Trump aide Mike Waltz was compromised, prompting DHS action. Meanwhile, Russian-linked hackers disrupted Romanian government websites during presidential elections.

On a brighter note, ransomware attacks dipped in April, largely due to RansomHub’s sudden outage. These incidents underscore the rising geopolitical influence of cyberattacks and the urgent need for enhanced, proactive cyber resilience worldwide.

Pakistan Cyber Force Claims Breach of Indian Defence Sites

A group identifying as “Pakistan Cyber Force” claims to have breached Indian defence entities, including the Military Engineering Services and Manohar Parrikar Institute. The group reportedly defaced Armoured Vehicle Nigam Limited’s site, displaying a Pakistan flag and an Al Khalid tank.

Indian cybersecurity agencies are closely monitoring the situation to detect further attacks possibly linked to state-sponsored actors. Officials are urging vigilance amid fears of ongoing cross-border cyber offensives targeting national defence infrastructure.

Harrods Becomes Third UK Retail Giant Hit by Cyberattack

Luxury retailer Harrods confirmed a cyberattack, following similar incidents at Marks & Spencer and Co-op. Occurring in late April, hackers tried infiltrating internal systems, prompting Harrods to restrict online access temporarily.

Despite the attack, physical stores—including the Knightsbridge flagship and H Beauty outlets—remained open. Online services were reportedly unaffected. The breach adds to a growing list of retail sector cyber incidents in the UK, raising alarms about escalating threats to the country’s digital retail infrastructure.

Secure Messaging App Used by Former Trump Aide Breached

A secure communications platform used by former U.S. National Security Adviser Mike Waltz has suspended operations following a reported data breach. Some sensitive messages were allegedly exposed.

In response, the Department of Homeland Security directed customs officials to disable the app on government devices. The breach raises fresh concerns about the vulnerabilities of encrypted communication platforms and underscores the growing need for robust, secure-by-design applications within high-level governmental and defense communications.

Russian Hackers Disrupt Romanian Election Websites

The pro-Russian hacktivist group NoName057(16) claimed responsibility for DDoS attacks on multiple Romanian government websites during the country’s presidential elections. Targets included the Ministry of Foreign Affairs, Constitutional Court, and campaign websites.

Romania’s cybersecurity agency, DNSC, confirmed the incidents and said all services were restored. Known for orchestrating short-lived DDoS attacks, the group has previously targeted EU countries. The timing of this attack points to a deliberate attempt to undermine democratic processes in Eastern Europe.

Ransomware Attacks Dip Sharply in April Amid Gang Outage

Ransomware incidents dropped in April 2025, with only 479 reported cases—down from 973 in February—largely due to operational issues faced by the RansomHub gang. Comparitech noted that 39 of the attacks were officially confirmed by victims.

Group-IB reports the gang experienced a major outage on March 31, possibly disrupting its activities. The dip offers temporary relief, but experts warn that the lull may be short-lived, urging enterprises to remain vigilant and strengthen cyber defenses.