CW Pakistan
  • Legacy
    • Legacy Editorial
    • Editor’s Note
  • Academy
  • Wired
  • Cellcos
  • PayTech
  • Business
  • Ignite
  • Digital Pakistan
  • PSEB
    • DFDI
    • Indus AI Week
  • PASHA
  • TechAdvisor
  • GamePro
  • Partnerships
  • PCWorld
  • Macworld
  • Infoworld
  • TechHive
  • TechAdvisor
0
0
0
0
0
Subscribe
CW Pakistan
CW Pakistan CW Pakistan
  • Legacy
    • Legacy Editorial
    • Editor’s Note
  • Academy
  • Wired
  • Cellcos
  • PayTech
  • Business
  • Ignite
  • Digital Pakistan
  • PSEB
    • DFDI
    • Indus AI Week
  • PASHA
  • TechAdvisor
  • GamePro
  • Partnerships
  • Business

Pakistan Government Warns Against ‘Dead Glyph Backdoor’ Cyber Threat For Windows Users

  • November 2, 2023
Total
0
Shares
0
0
0
Share
Tweet
Share
Share
Share
Share

In response to emerging cyber threats, the government of Pakistan has released a cybersecurity advisory cautioning against the ‘Dead Glyph Backdoor.’ The advisory, issued by the cabinet division, highlights the activities of Advanced Persistent Threat (APT) groups utilizing the ‘Dead Glyph Backdoor’ to target global government entities and critical infrastructure.

Described as an ‘x64 native binary’ and ‘.Net assembly exploit code,’ the Dead Glyph serves as an entry point for hackers aiming to exploit Windows-based operating systems. The advisory outlines the backdoor’s tactics, indicating that it targets online systems through malicious scripts attached to impersonated files. The backdoor exploit code then infiltrates the online system, saving fake DLL files in the Windows C Drive.

Subsequently, the fake DLL file executes second-stage malware through unauthorized PowerShell script issuance, extracting critical user data. To evade detection, the malware shares this information with the attacker using a random network communication timing pattern.

In response to this threat, the cabinet division urges ministries and departments to implement robust cybersecurity measures. Recommendations include system hardening and whitelisting at all levels, from OS and BIOS to hardware and software. The advisory emphasizes the installation of reputable and licensed cybersecurity solutions such as antivirus, anti-malware, firewalls, SIEM, SOAR, IPS/IDS, and NMS. Regular manual inspections of the C Drive System32 folder are also advised to detect any suspicious file creation activity.

To bolster defense against the Dead Glyph Backdoor, the government advisory suggests ongoing monitoring of domain controllers for signs of malware infection. Additionally, departments are encouraged to examine endpoints and network logs regularly to identify anomalous network traffic. Outbound network connections from specific executables, such as powershell.exe, winword.exe, notepad.exe, and others, are recommended to be blocked.

Further preventive measures include blacklisting unnecessary Windows commands and utilities and restricting the execution of scripts with specific extensions. The advisory calls for the establishment of a Sender Policy Framework (SPF) for domains to prevent email spoofing and recommends application whitelisting. Strict implementation of Software Restriction Policies (SRP) to block binaries running from %APPDATA% and %TEMP% paths is also advised.

In the interest of maintaining cybersecurity resilience, the government advisory advocates regular updates for Microsoft Windows vulnerabilities and other installed software. Endpoints are advised to disable Remote Desktop Protocol (RDP) when not required and patch against the latest vulnerabilities. Establishing a site-to-site VPN for remote access and adopting a zero-trust architecture for service access are additional cybersecurity measures. The advisory also underscores the importance of regular updates to anti-malware solutions and performing backups of critical information to mitigate the impact of data or system loss and expedite the recovery process.

Share
Tweet
Share
Share
Share
Previous Article
  • Cellcos

Rwanda Explores Importing Pakistani Mobile Phones: Boosting Economic Ties and Global Market Presence

  • November 2, 2023
Read More
Next Article
  • Cellcos

Ministry of IT and Telecom Drafts Policy to Enable Smartphone Installment Plans

  • November 3, 2023
Read More
You May Also Like
Read More
  • Business

Pakistan Mobile Phone Imports Surge 31 Percent In 7MFY26 As Demand Recovers

  • Press Desk
  • February 18, 2026
Read More
  • Business

Pakistan IT Exports Rise To 2.61 Billion Dollars In Seven Months Despite January Slowdown

  • Press Desk
  • February 18, 2026
Read More
  • Business

Pakistan Plans 20 Percent Federal Excise Duty On Imported Mobile Phones To Boost Local Manufacturing

  • Press Desk
  • February 18, 2026
Read More
  • Business

VEON And Nutshell Group Partner To Launch The Global Connect Platform For Cross Border Investment And Digital Cooperation

  • Press Desk
  • February 18, 2026
Read More
  • Business

TPL Trakker Extends Intelligent Operations And Compliance Solutions From Wafi Energy Pakistan Limited To NETCO

  • Press Desk
  • February 18, 2026
Read More
  • Business

BMW Ramadan 2026 Offer Brings Up To PKR 8.25 Million Discount On Electric Vehicles

  • Press Desk
  • February 17, 2026
Read More
  • Business

China-Pakistan Collaboration Enhances Seed Technology And Farmer Training In Pakistan

  • Press Desk
  • February 16, 2026
Read More
  • Business

Pakistani Freelancers Generate $557 Million In Foreign Exchange In H1 FY 2025-26

  • Press Desk
  • February 16, 2026

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Trending Posts
  • FBR Teams Up With LUMS To Enhance Officer Skills In AI, Data Science, And Revenue Management
    • February 18, 2026
  • PTA Hosts Media Briefing On 5G Spectrum Auction For NGMS In Pakistan
    • February 18, 2026
  • Awais Ahmed Khan Leghari Instructs Discos Including K-Electric For Seamless Power Supply During Ramazan
    • February 18, 2026
  • PTA Initiates Review Of Telenor Pakistan License Transfer To Ufone
    • February 18, 2026
  • Pakistan Mobile Phone Imports Surge 31 Percent In 7MFY26 As Demand Recovers
    • February 18, 2026
about
CWPK Legacy
Launched in 1967 internationally, ComputerWorld is the oldest tech magazine/media property in the world. In Pakistan, ComputerWorld was launched in 1995. Initially providing news to IT executives only, once CIO Pakistan, its sister brand from the same family, was launched and took over the enterprise reporting domain in Pakistan, CWPK has emerged as a holistic technology media platform reporting everything tech in the country. It remains the oldest continuous IT publishing brand in the country and in 2025 is set to turn 30 years old, which will be its biggest benchmark and a legacy it hopes to continue for years to come. CWPK is part of the SPIN/IDG Wakhan media umbrella.
Read more
Explore Computerworld Sites Globally
  • computerworld.es
  • computerworld.com.pt
  • computerworld.com
  • cw.no
  • computerworldmexico.com.mx
  • computerwoche.de
  • computersweden.idg.se
  • computerworld.hu
Content from other IDG brands
  • PCWorld
  • Macworld
  • Infoworld
  • TechHive
  • TechAdvisor
CW Pakistan CW Pakistan
  • CWPK
  • CXO
  • DEMO
  • WALLET

CW Media & all its sub-brands are copyrighted to SPIN-IDG Wakhan Media Inc., the publishing arm of NCC-RP Group. This site is designed by Crunch Collective. ©️1995-2026. Read Privacy Policy.

Input your search keywords and press Enter.