China and India Espionage Groups Independently Target Pakistani Law Enforcement
SentinelOne (SentinelLabs) reported sustained cyberespionage activity against multiple Pakistani law enforcement organizations between February 2024 and April 2026, attributing intrusions to separate suspected China-nexus and India-nexus threat actors using
Suspected China-nexus and India-nexus actors burrowing into the same Balochistan police systems, including the Complaint Management System, points to a structural weakness in Pakistan's internal-security architecture rather than an isolated breach, with compromised infrastructure at Islamabad, Khyber Pakhtunkhwa, and Punjab Safe Cities leaving that penetration uncontained across the force. Khyber Pakhtunkhwa's denial covers only one isolated credential exposure and says nothing about the other three networks, where no comparable statement has emerged. Reporting rests on a single primary disclosure from SentinelLabs, with other outlets amplifying rather than independently corroborating, and the tooling and infrastructure overlap underpinning both nation-state attributions leaves open that shared or resold C2 infrastructure reflects criminal or contractor access rather than two coordinated intelligence services. Either way, Pakistani law enforcement can no longer be assumed to keep a treaty partner's and a rival's collection compartmentalized within its own network.
4 sources
- One Target: China-India Espionage Converge on Pakistani Law Enforcement -
SentinelOne - China, India-linked hacking groups targeted Pakistani law enforcement, report says -
The Express Tribune - China, India-linked hacking groups targeted Pakistani law enforcement, report says -
ThePrint - China, India ran separate spying campaigns against same Pakistani police force -
The Record from Recorded Future News