Phishing domains impersonate govt agencies

Read the original at Dawn ↗
Dawn · collected 2026-10-06 · by Kalbe Ali

Quick Summary

The National Cyber Security Emergency Response Team (NCERT) in Pakistan detected multiple phishing domains impersonating key government institutions on October 4, aiming to steal sensitive citizen data. The affected organizations include Nadra, FBR, HEC, PTA, FIA, SECP, BISP, the Prime Minister’s Youth Programme, and Punjab Safe Cities. NCERT warns citizens against sharing personal information on unverified websites and advises verifying website authenticity before entering data. Additionally, NCERT issued an advisory for safe use of Generative Artificial Intelligence (GenAI) tools to prevent cybersecurity risks and exposure of sensitive organizational data.
Written locally by qwen2.5:14b on 2026-10-06, using this article's own text rather than the other coverage of the same event (that is the story summary below).

AI analysis runs on qwen2.5:14b, locally

Story summary

ISLAMABAD authorities have detected multiple phishing domains created in the names of key national institutions aimed at stealing sensitive citizen data. On October 4, the National Cyber Security Emergency Response Team (NCERT) and its Threat Intelligence Centre identified suspicious websites impersonating organizations like the National Database and Registration Authority (Nadra), Federal Board of Revenue (FBR), Higher Education Commission (HEC), Pakistan Telecommunication Authority (PTA), and Securities and Exchange Commission of Pakistan (SECP). These domains are designed to deceive users into entering sensitive information, including login credentials. NCERT warns the public against sharing personal data on unauthorized websites and advises caution with suspicious login pages.

Written for “Government Agency Impersonation” on 2026-10-06, grounded in this article and the 0 other(s) covering the same event.

Signals How these are calculated →

Claims extracted
16
claim-shaped sentences
Uncertain
25%
4 of 16 hedged
Leaning
not political
takes no side on a contested political question
Correction & hedging signals
77.1
corrections and hedging in what we collected; not a measure of accuracy
Outlets on this story
1
Politics
Narrative spread
1
articles carrying this framing
Analyzed 2026-10-06 · how these are computed

Story

📰 Government Agency Impersonation
Politics · 1 article(s) covering the same event.

How this is being covered How these are calculated →

Article leaning vs. publisher reliability
Source leaning vs. consistency

Compared with similar articles

Nothing to compare against. No article is close enough to this one for the pipeline to have linked or judged the pair.

Publisher

Dawn · 1206 article(s) · 2 correction(s) detected
Running correction rate · 2 correction(s)
2026-10-01
Tennessee woman in hospital after execution 'failed': lawyers
2026-09-20
An eye on Balochistan border

Who wrote this

Kalbe Ali
15 article(s) here · 1 carrying a prediction
🔮 It warned that phishing websites and impersonation-based attacks could be used to deceive users into entering sensitive information, including login credentials and other personal data.
2026-10-06 · mixed framing · Phishing domains impersonate govt agencies
🔮 Imports of used cars surged in September after easing of regulations, inviting criticism from local manufacturers while importers claim that the move will bring competition in the auto sector.
🔮 She said citizens facing any difficulty or requiring assistance regarding the scheme could call 9771 or visit the official website pmfuelrelief.pk for information and support.
🔮 The subcommittee, headed by Senator Dr Afnanullah Khan, will examine the alleged overcharging by Jazz and the regulatory action taken by the PTA in the matter.
🔮 The facility is expected to be particularly convenient for overseas Pakistanis involved in trade-related activities in the country.
🔮 With the country facing mounting debt pressure and inflation, the government’s attempt to lock down the federal capital to counter protests will only encourage rebellious tendencies among the people, JUI-F chief Maulana Fazlur Rahman said.
2026-09-22 · assertive framing · Govt tactics pushing people towards revolt: Fazl
🔮 Electricity consumers across the country may face a Rs1.73 per unit increase following a request to adjust power tariffs under the monthly fuel adjustment mechanism for August.
2026-09-20 · assertive framing · Power consumers may face Rs1.73/unit tariff hike
🔮 A day earlier, the Pakistan Petroleum Dealers Association (PPDA) expressed concerns that its members were unaware of the subsidy disbursement mechanism and feared they would have to run from pillar to post to recover the amount. However, to resolve the matter, Petroleum Minister Ali Pervaiz Malik, along with officials from the relevant ministries, held a meeting with the PPDA on Thursday to discuss the mechanism for implementing the Prime Minister’s Fuel Relief Scheme.
🔮 Bab al-Mandab may be far from Karachi, but the impact of its closure — if it happens — would be felt on our factory floors, in household budgets and in every vehicle that uses fuel.
🔮 Power Minister Awais Leghari on Wednesday said the government was working to introduce a virtual grid system in the country, under which consumers would be able to generate and store electricity.
Also by Kalbe Ali
Nothing else under this byline is closely related to this article, so these are simply their most recent.
All 15 articles by Kalbe Ali →

Topics

ISLAMABAD NCERT The National Cyber Security Emergency Response Team Threat Intelligence Centre the National Database and Registration Authority

Subjects

NCERT ORG · 7× FBR ORG · 1× HEC ORG · 1× ISLAMABAD GPE · 1× Nadra ORG · 1× The National Cyber Security Emergency Response Team ORG · 1× Threat Intelligence Centre ORG · 1× the Federal Board of Revenue ORG · 1× the Higher Education Commission ORG · 1× the National Database and Registration Authority ORG · 1×

Narrative

The identified domains include a suspected “secure login” domain impersonating the National Database and Registration Authority (Nadra), while phishing domains using names like the Federal Board of Revenue (FBR), the Higher Education Commission (HEC), the Pakistan Telecommunication Authority (PTA) and the Federal Investigation Agency (FIA) were also detected. Likewise, suspicious domains impersonating the Securities and Exchange Commission of Pakistan (SECP), the Benazir Income Support Programme (BISP) and the Prime Minister’s Youth Programme were identified.
framing: mixed · carried by 1 article(s) · first seen 2026-10-06
🔮 It warned that phishing websites and impersonation-based attacks could be used to deceive users into entering sensitive information, including login credentials and other personal data.
2026-10-06 · Dawn
Phishing domains impersonate govt agencies · mixed framing

Claims (16 extracted, 4 hedged)

The National Cyber Security Emergency Response Team (NCERT) has detected a number of suspected phishing domains created in the name of key national institutions, apparently aimed at stealing sensitive information from citizens. asserted
Team → detect → citizens
According to the NCERT’s Threat Intelligence Centre, suspicious domains impersonating several government and public sector organisations were found active on Sunday (Oct 4). uncertain
domains → accord → Sunday
The identified domains include a suspected “secure login” domain impersonating the National Database and Registration Authority (Nadra), while phishing domains using names like the Federal Board of Revenue (FBR), the Higher Education Commission (HEC), the Pakistan Telecommunication Authority (PTA) and the Federal Investigation Agency (FIA) were also detected. Likewise, suspicious domains impersonating the Securities and Exchange Commission of Pakistan (SECP), the Benazir Income Support Programme (BISP) and the Prime Minister’s Youth Programme were identified. asserted
domains → identify → Pakistan
NCERT advises public not to share personal information on unauthorised websites asserted
NCERT → advise → websites
The Threat Intelligence Centre also spotted a suspicious login domain using the name of Punjab Safe Cities. asserted
Centre → spot → Cities
The NCERT said the suspected phishing domains were still active and their activities were being monitored. asserted
activities → say → ?
It warned that phishing websites and impersonation-based attacks could be used to deceive users into entering sensitive information, including login credentials and other personal data. uncertain
websites → warn → credentials
The NCERT advised citizens and government organisations to exercise caution while accessing links, websites and login pages received through unverified sources. uncertain
NCERT → advise → sources
It urged users to verify the authenticity of websites before entering personal information and said monitoring of phishing activities and impersonation of national institutions was in progress. asserted
monitoring → urge → progress
At the same time, National Cert has issued an advisory for “safe and secure use of Generative Artificial Intelligence (GenAI) tools and platforms”. asserted
Cert → issue → tools
The rapid adoption of public AI chatbots, coding assistants, browser extensions, AI-enabled applications, and third-party AI services is creating new cybersecurity and data governance risks across organisations, the agency observed. asserted
agency → cod → organisations
It added that uncontrolled or unauthorised use of Generative AI, commonly referred to as Shadow AI, may expose sensitive information, intellectual property, credentials, source code, and organisational data while introducing risks from prompt injection, insecure AI-generated code, malicious integrations, inaccurate outputs, and compromised third-party models. uncertain
use → add → injection
The NCERT has advised organisations to protect “sensitive and classified information, strictly prohibit the submission of classified, confidential, sensitive, personal, proprietary, credential-related, or otherwise restricted organisational information to public or unapproved AI platforms. Organisations have been directed to establish an approved AI tool registry, while maintaining a centrally vetted and regularly reviewed inventory of authorised AI tools, models, browser extensions, plug-ins, APIs, and platforms. asserted
Organisations → advise → tools
The advice added that organisations should remain on the vigil for sensitive data exposure, Shadow AI, unauthorised AI plug-ins, suspicious AI access and policy violations. asserted
organisations → add → exposure
The cybersecurity agency added that wherever an AI-related incident occurs, organisations should immediately contain unauthorised access. asserted
organisations → add → access
Organisations were also advised to preserve evidence and logs, revoke compromised credentials or API keys, investigate exposure, implement corrective measures and report the incident to the NCERT. asserted
Organisations → advise → NCERT
💬Give feedback
🕘History 🎫Support