More than 7 million user records on the CSC BHIM website were exposed in a data leak, Israeli cybersecurity<\/a> website vpnMentor, which reported the breach to Indian authorities in April, said in a blog post on Monday.

The breach was plugged by CSC e-Governance Services, which developed the portal, on May 22, the cybersecurity firm added.

The website was used in a campaign to sign up users and business merchants for the BHIM payments app, which has been developed by the National Payments Corporation of India, an umbrella body responsible for governing the country’s
digital payments<\/a> landscape.

The app data has not been affected though,
NPCI<\/a> said.

The personal records were from February 2019, vpnMentor said, adding that the 409-gigabyte data dump included personal identifiable information such as Aadhaar card details, residence proof, bank records, along with a complete profile of individuals.

“…there has been no data compromise at
BHIM App<\/a> ... NPCI follows a high level of security and an integrated approach to protect its infrastructure and continue to provide a robust payments ecosystem,” it said.

CSC e-Governance Services India did not respond to ET’s emails till press time on Monday.

Noam Rotem and Ran Locar, the cybersecurity researchers who discovered the data leak, said: “The sheer volume of sensitive, private data exposed, along with UPI IDs, document scans, and more, makes this breach deeply concerning. The exposure of BHIM user data is akin to a hacker gaining access to the entire data infrastructure of a bank, along with millions of its users’ account information.\"

“The scale of the exposed data is extraordinary, affecting millions of people all over India and exposing them to potentially devastating fraud, theft, and attack from hackers and cyber criminals,” the cybersecurity firm said in a statement.

More than 3,13,000 cyber security incidents were reported in the country in 2019, according to the Indian Computer Emergency Response Team (CERT-In), the nodal agency to deal with such incidents.

Most of these were due to unprotected servers.

SBI, JustDial, Airtel, Kudankulam Nuclear Power Plant (KKNPP) and Indian Space Research Organisation (Isro) fell prey to some of the biggest cyber hacking incidents last year.
<\/p><\/body>","next_sibling":[{"msid":76132782,"title":"China's Oppo, T-Hub ink pact to support startup ecosystem around 5G, AI in India","entity_type":"ARTICLE","link":"\/news\/chinas-oppo-t-hub-ink-pact-to-support-startup-ecosystem-around-5g-ai-in-india\/76132782","category_name":null,"category_name_seo":"telecomnews"}],"related_content":[],"seoschemas":false,"msid":76132989,"entity_type":"ARTICLE","title":"BHIM app data breach exposes data of over 7 million users: Report","synopsis":"The 409-gigabyte data leak included personal identifiable information such as Aadhaar card details, caste certificates, residence proof, bank records, along with a complete profile of individuals, the report said.","titleseo":"telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report","status":"ACTIVE","authors":[{"author_name":"Sanghamitra Kar","author_link":"\/author\/479246405\/sanghamitra-kar","author_image":"https:\/\/etimg.etb2bimg.com\/authorthumb\/479246405.cms?width=250&height=250&imgsize=26499","author_additional":{"thumbsize":true,"msid":479246405,"author_name":"Sanghamitra Kar","author_seo_name":"sanghamitra-kar","designation":"Digital Content Creator","agency":false}}],"analytics":{"comments":0,"views":347,"shares":0,"engagementtimems":1735000,"url":"https:\/\/ettelecom.indiatimes.com\/telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report\/articleshow\/76132989.cms"},"Alttitle":{"minfo":""},"artag":"ETtech","artdate":"2020-06-01 14:13:23","lastupd":"2020-06-02 09:09:52","breadcrumbTags":["BHIM data breach","data breach","BHIM app","digital payments","NPCI","cybersecurity","Financial services","MVAS\/Apps"],"secinfo":{"seolocation":"telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report"}}" data-authors="[" sanghamitra kar"]" data-category-name="" data-category_id="" data-date="2020-06-01" data-index="article_1">

BHIM应用数据违反公开数据超过700万用户:报告

409 g数据泄漏包括个人身份信息,如Aadhaar信用卡细节,等级证书、住所证明,银行记录,连同一个完整的个体,报告说。

她冰斗
  • 更新于2020年6月2日上午09:09坚持
阅读: 100年行业专业人士
读者的形象读到100年行业专业人士

超过700万用户记录在CSC BHIM网站上被暴露在一个数据泄漏,以色列网络安全网站vpnMentor,违反印度当局4月报道,周一在一篇博客文章中说。

违反被CSC插入电子政务服务,开发门户,5月22日,网络安全公司补充道。

活动中使用的网站注册用户和业务商户BHIM支付应用,已由国家支付公司的印度,伞体负责治理国家的电子支付景观。

应用数据并没有受到影响,NPCI说。

广告
个人记录从2019年2月,vpnMentor说,补充说,409 g数据转储包括个人身份信息,如Aadhaar信用卡细节,居住证明,银行记录,以及一个完整的个人形象。

“…没有数据在妥协BHIM应用…NPCI遵循一个高水平的安全,一个集成的方法来保护其基础设施和继续提供一个健壮的支付生态系统,”它说。

CSC电子政务服务印度没有回应等周一的邮件直到截稿时间。

诺姆Rotem跑Locar,网络安全研究人员发现数据泄漏,说:“大量的敏感,私人数据暴露,连同UPI id、文件扫描,和更多的,让这违反有关。BHIM用户数据的接触是类似于一个黑客获得整个数据的基础设施银行,随着数以百万计的用户的帐户信息。”

“公开数据的规模是非凡的,影响数以百万计的人在印度和揭露他们潜在的毁灭性的欺诈、盗窃、黑客攻击和网络罪犯,“网络安全公司在一份声明中说。

13000多名网络安全事件被报道在中国2019年,根据印度计算机紧急响应小组(、),节点代理来处理这类事件。

其中大部分是由于未受保护的服务器。

印度国家银行、JustDial Airtel库丹库拉姆核电站(KKNPP)和印度空间研究组织(Isro)成了牺牲品,去年一些最大的网络黑客攻击事件。

  • 发表在2020年6月1日下午02:13坚持
是第一个发表评论。
现在评论

加入2 m +行业专业人士的社区

订阅我们的通讯最新见解与分析。乐动扑克

下载ETTelec乐动娱乐招聘om应用

  • 得到实时更新
  • 保存您最喜爱的文章
扫描下载应用程序

More than 7 million user records on the CSC BHIM website were exposed in a data leak, Israeli cybersecurity<\/a> website vpnMentor, which reported the breach to Indian authorities in April, said in a blog post on Monday.

The breach was plugged by CSC e-Governance Services, which developed the portal, on May 22, the cybersecurity firm added.

The website was used in a campaign to sign up users and business merchants for the BHIM payments app, which has been developed by the National Payments Corporation of India, an umbrella body responsible for governing the country’s
digital payments<\/a> landscape.

The app data has not been affected though,
NPCI<\/a> said.

The personal records were from February 2019, vpnMentor said, adding that the 409-gigabyte data dump included personal identifiable information such as Aadhaar card details, residence proof, bank records, along with a complete profile of individuals.

“…there has been no data compromise at
BHIM App<\/a> ... NPCI follows a high level of security and an integrated approach to protect its infrastructure and continue to provide a robust payments ecosystem,” it said.

CSC e-Governance Services India did not respond to ET’s emails till press time on Monday.

Noam Rotem and Ran Locar, the cybersecurity researchers who discovered the data leak, said: “The sheer volume of sensitive, private data exposed, along with UPI IDs, document scans, and more, makes this breach deeply concerning. The exposure of BHIM user data is akin to a hacker gaining access to the entire data infrastructure of a bank, along with millions of its users’ account information.\"

“The scale of the exposed data is extraordinary, affecting millions of people all over India and exposing them to potentially devastating fraud, theft, and attack from hackers and cyber criminals,” the cybersecurity firm said in a statement.

More than 3,13,000 cyber security incidents were reported in the country in 2019, according to the Indian Computer Emergency Response Team (CERT-In), the nodal agency to deal with such incidents.

Most of these were due to unprotected servers.

SBI, JustDial, Airtel, Kudankulam Nuclear Power Plant (KKNPP) and Indian Space Research Organisation (Isro) fell prey to some of the biggest cyber hacking incidents last year.
<\/p><\/body>","next_sibling":[{"msid":76132782,"title":"China's Oppo, T-Hub ink pact to support startup ecosystem around 5G, AI in India","entity_type":"ARTICLE","link":"\/news\/chinas-oppo-t-hub-ink-pact-to-support-startup-ecosystem-around-5g-ai-in-india\/76132782","category_name":null,"category_name_seo":"telecomnews"}],"related_content":[],"seoschemas":false,"msid":76132989,"entity_type":"ARTICLE","title":"BHIM app data breach exposes data of over 7 million users: Report","synopsis":"The 409-gigabyte data leak included personal identifiable information such as Aadhaar card details, caste certificates, residence proof, bank records, along with a complete profile of individuals, the report said.","titleseo":"telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report","status":"ACTIVE","authors":[{"author_name":"Sanghamitra Kar","author_link":"\/author\/479246405\/sanghamitra-kar","author_image":"https:\/\/etimg.etb2bimg.com\/authorthumb\/479246405.cms?width=250&height=250&imgsize=26499","author_additional":{"thumbsize":true,"msid":479246405,"author_name":"Sanghamitra Kar","author_seo_name":"sanghamitra-kar","designation":"Digital Content Creator","agency":false}}],"analytics":{"comments":0,"views":347,"shares":0,"engagementtimems":1735000,"url":"https:\/\/ettelecom.indiatimes.com\/telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report\/articleshow\/76132989.cms"},"Alttitle":{"minfo":""},"artag":"ETtech","artdate":"2020-06-01 14:13:23","lastupd":"2020-06-02 09:09:52","breadcrumbTags":["BHIM data breach","data breach","BHIM app","digital payments","NPCI","cybersecurity","Financial services","MVAS\/Apps"],"secinfo":{"seolocation":"telecomnews\/bhim-app-data-breach-exposes-data-of-over-7-million-users-report"}}" data-news_link="//www.iser-br.com/news/bhim-app-data-breach-exposes-data-of-over-7-million-users-report/76132989">