Urgent.News

What's breaking now, across thousands of outlets.

Tech

Pakistan Blocks Restoration of Hacked Govt Networks Without Approval

Government departments will not be allowed to restore services or reconnect network segments affected by cyberattacks until they receive formal … Read More The post Pakistan Blocks Restoration of Hacked Govt Networks Without Approval appeared first on ProPakistani .

Pakistan Blocks Restoration of Hacked Govt Networks Without Approval

The National Cybersecurity Handbook 2026-27 in Pakistan mandates that government departments cannot restore services or reconnect network segments compromised by cyberattacks until they obtain formal security clearance from the National Cyber Emergency Response Team (PKCERT). This requirement is stipulated in the handbook, which outlines how federal and provincial governments, as well as public-sector organizations, must respond to cybersecurity incidents.

Under the handbook, all cybersecurity incidents must be reported to PKCERT through approved channels, as well as to regional Computer Emergency Response Teams (CERTs) operating under the CERT Rules 2023. PKCERT teams are tasked with investigating critical cyber incidents, performing digital forensic analysis to ascertain how an attack occurred, evaluating its impact, and containing the threat.

Upon conducting an investigation, government departments are obligated to provide investigators with immediate physical and administrative access to all affected systems, infrastructure, system logs, and other pertinent records.

The handbook also mandates that government organizations preserve digital evidence post-attack. This includes maintaining a strict chain of custody for compromised devices and storage media to ensure the integrity of the evidence throughout the investigation. Officials are barred from altering audit logs, firewall records, or memory dumps, and must prevent unauthorized vendors or personnel lacking the requisite clearance from accessing or interfering with systems placed under quarantine.

Compliance with PKCERT's directives is crucial; government organizations are required to implement emergency measures and remediation instructions outlined by PKCERT investigators. The handbook warns that if systems are restored prematurely or an incomplete forensic investigation is conducted, hidden threats may remain within government networks, service disruptions could persist, and it would become more challenging for authorities to determine how the attack transpired, its origin, and the affected systems or information.

Consequently, before restoring services or reconnecting quarantined network segments, government organizations must adhere to PKCERT's clearance requirements, preserving affected systems, cooperating with PKCERT investigations, and fulfilling the necessary containment and remediation measures.

Written by urgent.news from ProPakistani's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at propakistani.pk →

More in Tech

What is Programming And How i can Enjoy it?

I am Shubh From India just getting started with my college for CSE UG . I just need Tips from The Dev community that how i can start to learn, building real things, Get Ideas For Project and Get…

More from Thursday 24 September →