The National Cyber Security Emergency Response Team (NCERT) in Pakistan detected multiple phishing domains impersonating key government institutions on October 4, aiming to steal sensitive citizen data. The affected organizations include Nadra, FBR, HEC, PTA, FIA, SECP, BISP, the Prime Minister’s Youth Programme, and Punjab Safe Cities. NCERT warns citizens against sharing personal information on unverified websites and advises verifying website authenticity before entering data. Additionally, NCERT issued an advisory for safe use of Generative Artificial Intelligence (GenAI) tools to prevent cybersecurity risks and exposure of sensitive organizational data.
Written locally by qwen2.5:14b on 2026-10-06,
using this article's own text rather than the other coverage of the
same event (that is the story summary below).
Story summary
ISLAMABAD authorities have detected multiple phishing domains created in the names of key national institutions aimed at stealing sensitive citizen data. On October 4, the National Cyber Security Emergency Response Team (NCERT) and its Threat Intelligence Centre identified suspicious websites impersonating organizations like the National Database and Registration Authority (Nadra), Federal Board of Revenue (FBR), Higher Education Commission (HEC), Pakistan Telecommunication Authority (PTA), and Securities and Exchange Commission of Pakistan (SECP). These domains are designed to deceive users into entering sensitive information, including login credentials. NCERT warns the public against sharing personal data on unauthorized websites and advises caution with suspicious login pages.
Written for “Government Agency Impersonation” on 2026-10-06,
grounded in this article and the 0 other(s) covering the same event.
The National Cyber Security Emergency Response Team (NCERT) has detected a number of suspected phishing domains created in the name of key national institutions, apparently aimed at stealing sensitive information from citizens.
asserted
Team → detect → citizens
According to the NCERT’s Threat Intelligence Centre, suspicious domains impersonating several government and public sector organisations were found active on Sunday (Oct 4).
uncertain
domains → accord → Sunday
The identified domains include a suspected “secure login” domain impersonating the National Database and Registration Authority (Nadra), while phishing domains using names like the Federal Board of Revenue (FBR), the Higher Education Commission (HEC), the Pakistan Telecommunication Authority (PTA) and the Federal Investigation Agency (FIA) were also detected.
Likewise, suspicious domains impersonating the Securities and Exchange Commission of Pakistan (SECP), the Benazir Income Support Programme (BISP) and the Prime Minister’s Youth Programme were identified.
asserted
domains → identify → Pakistan
NCERT advises public not to share personal information on unauthorised websites
asserted
NCERT → advise → websites
The Threat Intelligence Centre also spotted a suspicious login domain using the name of Punjab Safe Cities.
asserted
Centre → spot → Cities
The NCERT said the suspected phishing domains were still active and their activities were being monitored.
asserted
activities → say → ?
It warned that phishing websites and impersonation-based attacks could be used to deceive users into entering sensitive information, including login credentials and other personal data.
uncertain
websites → warn → credentials
The NCERT advised citizens and government organisations to exercise caution while accessing links, websites and login pages received through unverified sources.
uncertain
NCERT → advise → sources
It urged users to verify the authenticity of websites before entering personal information and said monitoring of phishing activities and impersonation of national institutions was in progress.
asserted
monitoring → urge → progress
At the same time, National Cert has issued an advisory for “safe and secure use of Generative Artificial Intelligence (GenAI) tools and platforms”.
asserted
Cert → issue → tools
The rapid adoption of public AI chatbots, coding assistants, browser extensions, AI-enabled applications, and third-party AI services is creating new cybersecurity and data governance risks across organisations, the agency observed.
asserted
agency → cod → organisations
It added that uncontrolled or unauthorised use of Generative AI, commonly referred to as Shadow AI, may expose sensitive information, intellectual property, credentials, source code, and organisational data while introducing risks from prompt injection, insecure AI-generated code, malicious integrations, inaccurate outputs, and compromised third-party models.
uncertain
use → add → injection
The NCERT has advised organisations to protect “sensitive and classified information, strictly prohibit the submission of classified, confidential, sensitive, personal, proprietary, credential-related, or otherwise restricted organisational information to public or unapproved AI platforms.
Organisations have been directed to establish an approved AI tool registry, while maintaining a centrally vetted and regularly reviewed inventory of authorised AI tools, models, browser extensions, plug-ins, APIs, and platforms.
asserted
Organisations → advise → tools
The advice added that organisations should remain on the vigil for sensitive data exposure, Shadow AI, unauthorised AI plug-ins, suspicious AI access and policy violations.
asserted
organisations → add → exposure
The cybersecurity agency added that wherever an AI-related incident occurs, organisations should immediately contain unauthorised access.
asserted
organisations → add → access
Organisations were also advised to preserve evidence and logs, revoke compromised credentials or API keys, investigate exposure, implement corrective measures and report the incident to the NCERT.
asserted
Organisations → advise → NCERT