💥Join UPSC 2027,2028 Mentorship (July Batch) + XFactor Notes & Microthemes PDF

Subject: Internal Security

  • Kerala’s drug menace is widespread and escalating

    Why in the News?

    Drug abuse in Kerala has increased over the past three years. In March, the Kerala High Court raised concerns about drug mafias, and the Governor met university officials to address student drug problems.

    What are the key factors contributing to the surge in drug abuse cases in Kerala over the past three years?

    • Increased Drug Trafficking via Coastal Routes: Kerala’s long coastline makes it a transit hub for international drug cartels. Example: In 2023, a Sri Lankan boat carrying 200 kg of heroin was intercepted off the Kerala coast.
    • Rise of Synthetic & Party Drugs Among Youth: Increased use of MDMA, LSD, and methamphetamine, particularly in urban areas and college campuses. Example: In 2022, over 1,000 students were caught in possession of synthetic drugs in Kochi and Thiruvananthapuram.
    • Easy Availability Through Darknet & Courier Services: Online platforms and encrypted messaging apps have facilitated drug trade. Example: In 2024, Kerala police busted a drug network using dark web transactions and fake delivery addresses.
    • Widespread Consumption Beyond Urban Centers: Unlike other states, drug abuse is reported in both rural and urban districts. Example: Every district in Kerala recorded at least 500 NDPS cases in 2022, indicating a statewide crisis.
    • Limited Focus on Major Suppliers & Traffickers: 94% of NDPS cases in Kerala are for possession, with only 6% related to trafficking. Example: While thousands of consumers are arrested, major drug syndicates continue operations largely unchecked.

    What is the situation of drug abuse at all India levels?

    • Steady Rise in NDPS Cases Across India: Cases under the Narcotic Drugs and Psychotropic Substances (NDPS) Act have been increasing, though some states show a decline in recent years. Example: India recorded over 1.5 lakh NDPS cases in 2023, with a significant rise in Punjab, Maharashtra, and Tamil Nadu.
    • Punjab & Northeast Among the Worst-Affected Regions: Punjab has long struggled with heroin addiction, while the Northeast is affected due to drug trafficking from Myanmar’s Golden Triangle. Example: In 2024, Punjab recorded 30 cases per lakh people, the second-highest after Kerala.
    • Shift from Natural to Synthetic & Pharmaceutical Drugs: Synthetic drugs (MDMA, LSD, Meth), opioids, and prescription medicines (Tramadol, Codeine-based syrups) are increasingly being abused. Example: In Mumbai, over 60% of drug-related arrests in 2023 involved synthetic drugs rather than traditional narcotics like cannabis.
    • Growing Use of Dark Web & Digital Payments for Drug Trade: Cryptocurrency transactions, darknet markets, and courier services are being used for drug sales. Example: In 2023, the Narcotics Control Bureau (NCB) dismantled an online drug syndicate operating across multiple Indian states.
    • State-Wise Variation in Drug Trafficking & Consumption Patterns: While Punjab & Northeast face opioid crises, Mumbai & Bengaluru see more party drug use, and Tamil Nadu & Andhra Pradesh have rising cannabis-related arrests. Example: In 2022, Bengaluru accounted for 63% of Karnataka’s NDPS cases, highlighting an urban concentration of drug abuse.

    What are the steps taken by the Government? 

    • Strengthening Law Enforcement & Anti-Drug Operations: The Narcotics Control Bureau (NCB) and state police have intensified crackdowns on drug trafficking networks. Example: In 2023, the NCB seized over 2000 kg of drugs nationwide, including heroin and synthetic substances, in coordinated raids.
    • Expansion of Rehabilitation & De-addiction Programs: The Ministry of Social Justice & Empowerment runs the Nasha Mukt Bharat Abhiyan (NMBA) to promote awareness and rehabilitation. Example: Over 370 de-addiction centres were established under NMBA in states like Punjab, Maharashtra, and Kerala.
    • Use of Technology & AI for Drug Surveillance: Government agencies monitor dark web transactions, cryptocurrency payments, and social media platforms to track drug deals. Example: In 2023, the NCB cracked a crypto-drug syndicate that was smuggling MDMA and LSD through online orders.
    • Public Awareness & Educational Campaigns: Schools, colleges, and workplaces are conducting anti-drug sensitization programs to reduce youth drug abuse. Example: Kerala’s ‘Love-a-Thon’ campaign in universities aims to educate students on the dangers of substance abuse.
    • International Cooperation & Border Security Measures: India has increased cooperation with Myanmar, Sri Lanka, and Iran to curb cross-border drug trafficking. Example: In 2023, the Indian Navy intercepted a Pakistan-based heroin shipment worth ₹1,200 crore in the Arabian Sea.

    Way forward: 

    • Targeted Crackdown on Drug Supply Chains: Strengthen intelligence-led operations against major traffickers, enhance coastal & border security, and increase inter-agency coordination to dismantle drug syndicates.
    • Comprehensive Prevention & Rehabilitation Strategy: Expand school-based drug education, integrate mental health support in de-addiction programs, and enhance community-based rehabilitation to address both urban and rural drug abuse.

    Mains PYQ:

    Q Explain how narco-terrorism has emerged as a serious threat across the country. Suggest suitable measures to counter narco-terrorism. (UPSC 2024)

    Reason: This question is potentially linked with narco-terrorism. The measures suggested to counter narco-terrorism would also be relevant to addressing the drug problem in Kerala, especially if it involves organized crime and cross-border elements.

  • Miles to go: On change in Manipur, the road to normalcy

    Why in the News?

    After months of struggling to manage the ethnic crisis, the Union government finally took action by removing the N. Biren Singh-led government in Manipur and imposing President’s Rule, hoping this change would bring peace and stability.

    Who are the key stakeholders involved in the ethnic conflict, and what are their demands?

    • Meitei Community: Seeks protection of territorial integrity and opposes any division of Manipur. Example: Meitei groups have opposed the creation of a separate Kuki-Zo administrative region, fearing it would fragment the State.
    • Kuki-Zo Community: Calls for Union Territory status or a separate administrative arrangement to safeguard their identity and security. Example: Civil society organizations representing the Kuki-Zo people have warned against free movement unless their request for separate governance is met.
    • Naga Community: Resists any move to carve out a separate region, as it could affect their ancestral lands and autonomy. Example: Naga groups have opposed the Kuki-Zo call for Union Territory status, fearing loss of their territorial claims.
    • Union Government: Aims to restore law and order, maintain territorial integrity, and recover stolen arms. Example: After imposing President’s Rule, the government set a deadline for militant groups to surrender looted weapons and worked to reopen blockaded highways.

    What steps has the Union government taken to restore normalcy in Manipur after imposing President’s Rule?

    • Weapon Recovery Drive: Initiated efforts to retrieve stolen weapons from non-State actors to curb violence. Example: Set a deadline for groups to return weapons looted from police armories, recovering nearly one-third of the 3,000 missing firearms.
    • Clearing Highway Blockades: Worked to remove blockades on key highways to restore the free movement of goods and people. Example: Central armed police forces attempted to clear blockades in Kangpokpi district, though clashes resulted in one death and over 40 injuries.
    • Strengthening Security Measures: Deployed additional central forces to control violence and secure vulnerable areas. Example: Increased the presence of paramilitary forces in both the hill and valley regions to prevent further ethnic clashes.
    • Engaging in Dialogue: Encouraged talks with community representatives while rejecting violent and separatist threats. Example: Continued discussions with leaders from the Meitei and Kuki-Zo communities to find a peaceful resolution.
    • Central Leadership Involvement: Called for the active engagement of senior government officials to address grievances and appeal for peace. Example: The Union Home Ministry and senior officials emphasized the need for dialogue and public appeals to restore calm and facilitate the return of displaced persons.

    Why is the demand for Union Territory status or a separate arrangement for Kuki-Zo areas considered a dangerous move?

    • Deepening Ethnic Divisions: Such a move could escalate tensions between communities, worsening the already fragile social fabric. Example: It may intensify hostility between the Meitei and Kuki-Zo groups, making reconciliation and long-term peace more difficult.
    • Resistance from Other Communities: The proposal could face strong opposition from other ethnic groups, such as the Nagas, who also reside in the hill areas and have their own territorial interests. Example: Naga groups may view the creation of a separate Kuki-Zo region as a threat to their claims and autonomy, leading to new conflicts.
    • Undermining Territorial Integrity: Fragmenting the state could weaken Manipur’s territorial integrity and set a precedent for further separatist demands. Example: Accepting such a demand could encourage other communities to seek similar autonomous arrangements, complicating governance and stability.

    Way forward: 

    • Inclusive Dialogue and Mediation: Facilitate continuous engagement with all ethnic groups to address grievances and promote mutual understanding through impartial mediation.
    • Strengthening Law and Order: Intensify efforts to recover illegal weapons, enforce rule of law, and ensure equitable development to rebuild trust and maintain peace.

    Mains PYQ:

    Q Analyze internal security threats and transborder crimes along Myanmar, Bangladesh and Pakistan borders including Line of Control (LoC). Also discuss the role played by various security forces in this regard. (UPSC IAS/2020)

  • India second-largest arms importer after Ukraine

    Why in the News?

    India remained the second-largest arms importer, despite a 9.3% decline in imports between 2015-19 and 2020-24 a/c to the Stockholm International Peace Research Institute (SIPRI) Report.

    About SIPRI

    • The SIPRI is an independent organization established in 1966, based in Stockholm, Sweden, conducting research on conflict, arms control, and disarmament.
    • SIPRI provides comprehensive data on global arms imports, exports, and military expenditures, tracking defense trends and geopolitical conflicts worldwide.
    • It analyzes ongoing wars, nuclear proliferation, cybersecurity threats, and environmental security, offering policy recommendations for international peace and stability.
    • SIPRI publishes flagship reports such as the SIPRI Yearbook, Arms Transfers Database, and Military Expenditure Database, which are widely used by governments, researchers, and policymakers.

    India’s Arms Imports: Trends and Shifts

    • India remained the world’s second-largest arms importer, despite a 9.3% decline in imports from 2015-19 to 2020-24.
    • Russia accounted for 36% of India’s arms imports in 2020-24, significantly LOWER than 55% in 2015-19 and 72% in 2010-14.
    • India has reduced dependence on Russia and increased arms deals with France, the U.S., and Israel.
    • India became France’s largest arms importer (28%), with 36 Rafale fighter jets and six Scorpene submarines already contracted.
    • India is finalizing agreements for 26 Rafale-M jets and three additional Scorpene submarines.

    Global Arms Trade Highlights

    • Ukraine – The Largest Importer: Due to the ongoing war, Ukraine’s arms imports surged nearly 100 times in 2020-24 compared to 2015-19.
      • The U.S. accounted for 45% of Ukraine’s imports, followed by Germany (12%) and Poland (11%).
    • U.S. dominance in exports: The U.S. expanded its global arms market share to 43%, reinforcing its position as the top exporter.
    • Russia’s decline: Russian arms exports fell by 64%, dropping to 7.8% of global exports, behind France (9.6%).
    • European rearmament: European arms imports surged by 155% in response to rising security threats from Russia.
    • Pakistan’s growing imports: Pakistan’s arms imports grew by 61%, with China supplying 81% of its weapons, up from 74% in 2015-19.
    • China’s self-reliance: For the first time since 1990-94, China dropped out of the top 10 arms importers, reflecting its expanding domestic defense industry.
    • Italy’s rise in arms exports: Italy climbed from 10th to 6th place, with a 4.8% share of global arms exports.

    PYQ:

    [2020] What is the significance of Indo-US defence deals over Indo-Russian defence deals? Discuss with reference to stability in the Indo-Pacific region.

     

  • Exercise Khanjar-XII

    Why in the News?

    The 12th edition of the India-Kyrgyzstan Joint Special Forces Exercise KHANJAR-XII is set to be held in Kyrgyzstan.

    About Exercise KHANJAR-XII

    • KHANJAR-XII is the 12th edition of the India-Kyrgyzstan Joint Special Forces Exercise, aimed at enhancing counter-terrorism and special operations capabilities.
    • It is a bilateral military exercise held annually since 2011, alternately hosted by India and Kyrgyzstan.
    • The 2025 edition is being conducted in Kyrgyzstan.
    • Participants:
      • Indian Contingent: Parachute Regiment (Special Forces).
      • Kyrgyzstan Contingent: Kyrgyz Scorpion Brigade.
    • The primary objective is to strengthen military cooperation, improve joint operational capabilities, and enhance interoperability between the two nations’ Special Forces.

    Key Features:

    • Counter-Terrorism Focus: Training in urban and high-altitude warfare to counter modern security threats.
    • Special Forces Interoperability: Strengthening coordination in joint military operations.
    • Mountain Warfare & Survival Skills: Enhancing operational effectiveness in challenging terrains.
    • Military Technology Exchange: Sharing expertise on weapons systems, surveillance, and intelligence gathering.
    • Reinforcing India’s Central Asia Outreach: Strengthening India’s engagement with Central Asian nations under its Connect Central Asia policy.
  • ‘Brahmastra’ Missile

    Why in the News?

    Indian scientists have achieved a breakthrough in hypersonic missile technology, developing a modern-day ‘Brahmastra’ with an astonishing speed of 12,144 km per hour (Mach 10).

    'Brahmastra' Missile

    About Brahmastra (Long Range Anti-Ship Missile – LRAShM): 

    • Brahmastra is a state-of-the-art hypersonic glide missile developed by the Defence Research and Development Organisation (DRDO).
    • It is designed to neutralize enemy warships and strategic naval targets with extreme speed and precision.
    • With a speed of Mach 10 (12,144 km/h) and a range of 1,500 km, Brahmastra is one of the fastest and most lethal weapons in India’s defense arsenal.
    • The missile’s hypersonic glide vehicle technology allows it to evade enemy radar and missile defense systems, ensuring high-precision strikes on naval targets.

    Features of Brahmastra:

    • It can be launched from both land and naval platforms, enhancing India’s maritime strike capabilities.
    • Due to its hypersonic speed, Brahmastra can destroy an enemy warship within 7 to 8 minutes of launch.
    • The missile is built with advanced heat-resistant materials, preventing it from disintegrating under extreme temperatures during flight.
    • Unlike conventional missiles, Brahmastra retains its structural integrity even at hypersonic speeds, ensuring precise impact.
    • It uses scramjet propulsion and glide vehicle technology for sustained hypersonic flight.
    • It can adjust its trajectory mid-flight, making it highly maneuverable and difficult to intercept.
    • Its stealth and radar-evading capabilities ensure low detection probability, reducing the risk of interception.

    PYQ:

    [2014] Which reference to Agni-IV Missile, which of the following statements is/are correct?

    1. It is a surface-to-surface missile.

    2. It is fuelled by liquid propellant only.

    3. It can deliver one-tonne nuclear warheads about 7500 km away.

    Select the correct answer using the code given below:

    (a) 1 only

    (b) 2 and 3 only

    (c) 1 and 3 only

    (d) 1, 2 and 3

     

  • Exercise Dharma Guardian

    Why in the News?

    India and Japan are set to commence the 6th edition of the Dharma Guardian military exercise at Mount Fuji.

    Other India-Japan Military Exercises

    • JIMEX (Japan-India Maritime Exercise): Naval cooperation between the Indian Navy and Japan Maritime Self-Defense Force (JMSDF).
    • Veer Guardian: Joint air force exercise between the Indian Air Force (IAF) and Japan Air Self-Defense Force (JASDF).
    • Malabar Exercise: Japan participates along with India, the US, and Australia (Quad nations) in this high-level naval exercise.

    About Exercise Dharma Guardian

    • It is an annual joint military exercise between the Indian Army and Japan Ground Self-Defense Force (JGSDF), conducted alternatively in India and Japan.
    • It was commenced in 2018
    • The 6th edition will be held from February 25 to March 9, 2025, at Mount Fuji, Japan.
    • 120 Indian soldiers from the Madras Regiment will participate, focusing on urban warfare and counter-terrorism operations.
    • Key Features:
      • Joint Counter-Terrorism Training: Focus on urban and semi-desert warfare.
      • Advanced Tactical Drills: Close-quarters combat, live fire, and battlefield medical evacuation.
      • 48-hour Validation Exercise: Tests real-time combat coordination.
      • Cultural and Professional Exchange: Strengthens India-Japan military ties.

    Significance:

    • Strengthens Strategic Ties: Expands India-Japan defence cooperation under the Indo-Pacific framework.
    • Enhances Regional Security: Aligns with Quad nations’ vision (India, Japan, US, Australia).
    • Boosts Defence Technology Collaboration: Includes co-development of Unicorn Stealth Antenna System.
    • Improves Military Readiness: Supports joint UN peacekeeping and disaster response operations.
  • How did a DDoS attack cripple Kaveri 2.0?

    Why in the News?

    In January, the Kaveri 2.0 web portal, which helps with property registrations in Karnataka, experienced frequent server crashes. This caused a major disruption, bringing property registration and related citizen services to a near halt in the state.

    What is a DDoS attack?

    • A DDoS (Distributed Denial of Service) attack is when a website or online service is flooded with too much traffic all at once, making it crash or slow down so that real users can’t access it.
    • Instead of coming from one source, the attack comes from many different computers or devices that have been taken over by attackers. These devices work together to send massive amounts of fake traffic to the target, overwhelming it and causing it to stop working.

    What are other major DDoS attacks?

    • Dyn DDoS Attack (2016): The Dyn DDoS attack disrupted major websites including Twitter, Netflix, and Reddit. The attack used a botnet of IoT devices, such as cameras and routers, to flood Dyn’s servers with traffic, causing widespread outages.
    • GitHub DDoS Attack (2018): In 2018, GitHub was hit by one of the largest DDoS attacks in history, with traffic peaking at 1.35 terabits per second. The attack exploited memcached servers to amplify the traffic, overwhelming GitHub’s servers before mitigation efforts kicked in.
    • AWS DDoS Attack (2020): Amazon Web Services (AWS) faced a 2.3 Tbps DDoS attack in 2020, which was one of the largest publicly reported DDoS attacks. AWS mitigated the attack using its cloud infrastructure and security services like AWS Shield.
    • Cloudflare DDoS Attack (2021): In 2021, Cloudflare thwarted a 26 million request-per-second DDoS attack, one of the largest HTTPS DDoS attacks at the time. It was mitigated using Cloudflare’s advanced rate-limiting and traffic filtering technologies.
    • Microsoft Azure DDoS Attack (2023): Microsoft Azure faced one of the largest DDoS attacks ever recorded, peaking at 3.47 terabits per second. The attack, attributed to a botnet leveraging vulnerable devices, aimed to disrupt services for enterprise clients.

    What are the steps taken by the Indian Government? 

    • Cybersecurity Regulations and Policies: In 2025, new cybersecurity regulations were introduced to enhance the existing framework, including mandatory data localization and strengthened data protection laws. The National Cyber Security Policy, established in 2013, continues to guide these efforts by providing strategies for securing cyberspace and protecting critical information infrastructure.
    • Increased Budget Allocations: The Union Budget for 2025 allocated over ₹1,600 crore for cybersecurity initiatives, reflecting the government’s recognition of its importance for national security and economic stability. This includes significant funding for CERT-In and capital projects aimed at bolstering cybersecurity infrastructure across various sectors.
    • Formation of Cybersecurity Agencies: The establishment of agencies such as CERT-In (Computer Emergency Response Team) and NCIIPC (National Critical Information Infrastructure Protection Centre) has been crucial.
      • These agencies are responsible for monitoring cyber threats, coordinating responses, and enhancing the security of critical sectors like banking, telecommunications, and energy.
    • Skill Development Initiatives: To address the shortage of cybersecurity professionals, the government has launched skill development programs aimed at training a workforce of over 500,000 IT experts. This initiative is part of a broader strategy to create a resilient cyber ecosystem capable of responding to evolving threats.

    How can such attacks be mitigated? (Way forward)

    • Traffic Filtering & AI-Based Detection: Uses firewalls, intrusion detection systems (IDS), and AI-based threat analysis to filter out malicious traffic before it reaches the target server.
      • Example: Google Cloud Armor helped mitigate a 46 million request-per-second (RPS) DDoS attack in 2022 by detecting abnormal traffic patterns and blocking it in real-time.
    • Rate Limiting & Load Balancing: Restricts the number of requests a user can make in a given timeframe and distributes traffic across multiple servers to prevent overload.
      • Example: Cloudflare’s Rate Limiting and Load Balancer mitigated an HTTP flood attack on a European banking institution, ensuring legitimate users were not affected.
    • Bot Detection & CAPTCHAs: Uses CAPTCHA tests, behavioural analytics, and browser fingerprinting to block automated bot traffic.
      • Example: GitHub (2015 DDoS Attack by China-based botnet) introduced CAPTCHA-based protection to prevent automated malicious requests targeting anti-censorship tools.
    • CDN & Cloud-Based DDoS Protection: Content Delivery Networks (CDNs) and cloud-based security providers absorb attack traffic before it reaches the main infrastructure.
      • Example: Amazon AWS Shield protected against a 2.3 Tbps DDoS attack (2020) by leveraging global CDN distribution and real-time attack mitigation.
    • Incident Response Plan & Collaboration with Cybersecurity Agencies: Organizations monitor threats, conduct regular security audits, and coordinate with government agencies for rapid response.
      • Example: Kaveri 2.0 Attack (2024, Karnataka, India) led to a cybercrime investigation and strengthened security protocols after the portal faced 6.2 lakh malicious requests in two hours.

    Mains PYQ:

    Q Discuss the potential threats of Cyber attack and the security framework to prevent it.(UPSC IAS/2017)

  • Struggling with poor cyber security

    Why in the News?

    Kaveri 2.0, a web portal launched in 2023 to make property registrations in Karnataka easier was recently hit by a DDoS attack carried out using AI-powered bots.

    What is a DDoS attack? 

    • A Distributed Denial of Service (DDoS) attack is a type of cyberattack where multiple computers or bots flood a website or online service with excessive traffic, overwhelming its servers and causing it to slow down or crash.

    What are the key issues with Karnataka’s response to cyber attacks, specifically the DDoS attack on Kaveri 2.0?

    • Lack of Proactive Cybersecurity Measures: Despite previous cyber incidents like the 2017 WannaCry ransomware attack and the 2019 e-procurement portal hack, the State failed to implement robust preventive measures. The DDoS attack on Kaveri 2.0 in December 2024 – February 2025 exposed the absence of real-time threat monitoring systems.
    • Poor Coordination Between Departments: The e-Governance Department did not involve the State cyber crime police until February 7, 2025, despite weeks of disruption. Resistance within departments to share cybersecurity concerns with law enforcement delayed incident response, worsening the crisis.
    • Lack of a Dedicated Cybersecurity Infrastructure: Karnataka lacks a Cyber Security Operation Centre like Maharashtra and Odisha. A ₹20 crore cybersecurity centre, proposed in February 2023, was scrapped after the new government took over, leaving critical digital infrastructure vulnerable.
    • Government Response and Security Measures: While the government has initiated a police probe and FIR registration under the Information Technology Act, and the Kaveri 2.0 application has been restored with enhanced security measures,
      • Karnataka launched a cyber security policy in 2024 to combat rising cybercrime, focusing on awareness, skill building, and industry promotion.

    How have past attacks influenced the current state of cyber security?

    • Failure to Implement Robust Cybersecurity Measures: Despite the 2017 WannaCry ransomware attack on the Karnataka State Data Centre and the 2019 e-Procurement portal hack (₹11.5 crore stolen), the state did not establish strong preventive mechanisms.
      • The lack of a dedicated Cyber Security Operation Centre resulted in inadequate monitoring and delayed responses to threats like the recent DDoS attack on Kaveri 2.0 (2024-25).
    • Persistent Coordination Gaps Between Departments: Earlier attacks, such as the 2022 cyber attack on NIMHANS, highlighted poor inter-departmental coordination, yet similar gaps persisted during the Kaveri 2.0 DDoS attack.
      • The e-Governance Department handled the crisis alone without informing the cyber crime police, delaying investigative action until February 7, 2025.
    • Neglect of Cybersecurity Infrastructure Development: A ₹20 crore Cyber Security Operation Centre, proposed in February 2023, was dropped in the May 2023 budget revision after a change in government.
      • Unlike Maharashtra and Odisha, which have dedicated cyber security setups, Karnataka still lacks a real-time threat detection system, leaving it vulnerable to repeated cyber attacks.

    Why has the coordination between the e-Governance Department and the State Police been ineffective during cyber incidents?

    • Lack of a Unified Cybersecurity Framework: Karnataka’s Cyber Security Committee (2023) is led by bureaucrats without police representation, unlike national-level bodies like I4C (Indian Cyber Crime Coordination Centre) and NCIIPC (National Critical Information Infrastructure Protection Centre).
      • This results in fragmented decision-making, where cybersecurity response remains within the e-Governance Department, sidelining law enforcement agencies.
    • Delayed Involvement of the Cyber Crime Police: In the Kaveri 2.0 DDoS attack (2024-25), the e-Governance Department did not inform the State cyber crime police until February 7, 2025—long after the attack began in December 2024.
      • Earlier incidents like the 2019 e-Procurement portal hack and 2022 NIMHANS cyber attack also saw delayed police involvement, allowing attackers more time to operate.
    • Departmental Hesitation to Engage Law Enforcement: Sources indicate a reluctance within the e-Governance Department to involve the police, possibly due to bureaucratic hurdles or fears of administrative scrutiny.
      • This lack of trust and procedural clarity has led to independent firefighting efforts rather than a coordinated response between technical teams and law enforcement.

    Why is it crucial for the state to establish a Cyber Security Operation Centre similar to the national model?

    • Real-Time Threat Detection and Response: The DDoS attack on Kaveri 2.0 (2024-25) went undetected for weeks, causing major disruptions in property registrations. A Cyber Security Operation Centre (CSOC) would enable 24/7 monitoring and early detection of cyber threats.
      • National agencies like I4C (Indian Cyber Crime Coordination Centre) and NCIIPC (National Critical Information Infrastructure Protection Centre) use AI-driven analytics and real-time threat intelligence to mitigate cyber risks, a model Karnataka must adopt.
    • Coordinated and Rapid Incident Response: Karnataka’s e-Governance Department handled the Kaveri 2.0 attack alone, only involving cyber crime police weeks later, delaying mitigation efforts.
      • A CSOC would centralize cybersecurity efforts, ensuring immediate coordination between technical experts, government departments, and law enforcement agencies to prevent prolonged disruptions.

    Way forward: 

    • Establish a Cyber Security Operation Centre (CSOC): Revive the ₹20 crore CSOC proposal with real-time threat monitoring, AI-driven analytics, and centralized coordination between government agencies and law enforcement.
      • Implement automated response mechanisms to detect and neutralize cyber threats before they escalate.
    • Strengthen Inter-Departmental Coordination and Cybersecurity Framework: Mandate immediate police involvement in cyber incidents and integrate law enforcement into cybersecurity governance structures like the Cyber Security Committee.
      • Conduct joint cybersecurity drills between the e-Governance Department, State Police, and IT experts to improve incident response efficiency.

    Mains PYQ:

    Q What are the different elements of cyber security? Keeping in view the challenges in cyber security, examine the extent to which India has successfully developed a comprehensive National Cyber Security Strategy. (UPSC IAS/2022)

  • [pib] Exercise CYCLONE-III

    Why in the News?

    The 3rd edition of Joint Special Forces Exercise CYCLONE commenced at Mahajan Field Firing Ranges in Rajasthan.

    Note: India and the UAE held the ‘Desert Cyclone 2024’ joint military exercise in Rajasthan in January 2024. One must not get confused with this.

    About Exercise CYCLONE-III

    • It is the 3rd edition of the Joint Special Forces Exercise between India and Egypt, aimed at enhancing interoperability, joint tactical operations, and counter-terrorism capabilities.
    • The exercise is conducted at Mahajan Field Firing Ranges in Rajasthan from 10th to 23rd February 2025.
    • CYCLONE is an annual exercise, held alternately in India and Egypt.
      • The previous edition (CYCLONE-II) was conducted in Egypt in January 2024.
    • The exercise focuses on high-intensity special forces training in desert and semi-desert terrains.

    Features and Significance:

    • This exercise involves 25 personnel from each side, focusing on counterterrorism, CQB, hostage rescue, and heliborne operations in desert terrain.
    • The 48-hour final validation exercise tests combat strategies in semi-desert conditions, while an Indian defense technology showcase strengthens military ties.
    • The exercise enhances India-Egypt defense cooperation, improves joint counter-terrorism capabilities, and builds readiness for future operations.
    • It also boosts India’s strategic outreach in the Middle East and North Africa (MENA) region, reinforcing defense collaborations and regional security.
  • [pib] TROPEX-25

    Why in the News?

    The 2025 edition of TROPEX is currently underway in the Indian Ocean Region, involving all operational Indian Naval units along with significant participation from the Indian Army, Indian Air Force (IAF), and the Indian Coast Guard (ICG).

    About Theatre Level Operational Exercise (TROPEX)

    • TROPEX is the Indian Navy’s flagship biennial operational-level exercise, designed to test and enhance India’s maritime defense capabilities.
    • It is conducted in the Indian Ocean Region with participation from the Indian Navy, Indian Army, Indian Air Force (IAF), and Indian Coast Guard (ICG).
    • It was first held in April 2005.
    • TROPEX-25 is being conducted over a three-month period from January to March 2025 in multiple phases:
    1. Harbour Phase: Focuses on strategic planning, joint training, and coordination before moving to sea operations.
    2. Sea Phase: Simulates real-time combat scenarios to assess the Navy’s operational readiness.
    3. Cyber and Electronic Warfare Operations:  Integrates modern cybersecurity and electronic warfare tactics to counter digital threats.
    4. Live Weapon Firings:  Includes real-world missile and torpedo firings to test combat effectiveness.
    5. Amphibious Exercise (AMPHEX):  Conducts joint land-sea operations, involving amphibious landings and coastal defence drills.

    Mandate and Significance of TROPEX-25

    TROPEX-25 plays a pivotal role in:

    • Strengthening India’s maritime dominance in the Indian Ocean Region.
    • Enhancing interoperability and joint warfighting capabilities among the Navy, Army, Air Force, and Coast Guard.
    • Testing real-world combat readiness in dynamic operational environments.
    • Securing national maritime interests through proactive military preparedness.
    • Projecting India’s naval power to safeguard maritime trade routes and counter emerging threats.