Indian state government fixes website bugs that exposed residents’ sensitive documents
ID: 5027dd3c-955d-5571-ab1f-ed29ec4bff7e
STIX ID: report--5027dd3c-955d-5571-ab1f-ed29ec4bff7e
Feed Name: TechCrunch Security News
A security researcher found flaws in Rajasthan’s Jan Aadhaar portal that allowed access to sensitive personal documents and information (Aadhaar copies, birth/marriage certificates, bills, income statements and personal details) for registrants—one flaw exposed data via a registrant's phone number and another was due to improper OTP validation; the issues were reported and later fixed by CERT-In. The portal serves ~78 million individuals and ~20 million families, indicating a potentially very large exposure though there is no public evidence of active exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
