• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to footer
  • Our Services
  • Contact Us
  • Newsletter
  • Top Nav Social Icons

FindBiometrics

FindBiometrics

Global Identity Management

  • Biometrics
    • What are Biometrics?
    • FAQ
    • Biometric Associations
    • Companies
    • Premier Partners
  • News
    • Featured Articles
    • Interviews
    • Thought Leadership
    • Podcasts
    • Webinars
    • Year in Review
  • Applications
    • Biometric Security
    • Border Control and Airport Biometrics
    • Consumer and Residential Biometrics
    • Financial Biometrics
    • Fingerprint & Biometric Locks
    • Healthcare Biometrics
    • Justice and Law Enforcement Biometrics
    • Logical Access Control Biometrics
    • Mobile Biometrics
    • Other Biometric Applications
    • Physical Access Control Biometrics
    • Biometric Time and Attendance
  • Solutions
    • Behavioral Biometrics
    • Biometric Sensors and Detectors
    • Facial Recognition
    • Biometric Fingerprint Readers
    • Hand Readers & Finger Scanners
    • Iris Recognition
    • Biometric Middleware and Software
    • Multimodal Biometrics
    • Physiological Biometrics
    • Smart Cards
    • Vein Recognition
    • Voice and Speech Recognition
  • Stocks
  • Events
  • Companies
  • Podcasts

Researcher Uncovers Another Aadhaar Security Gap

June 15, 2022

The integrity of India’s Aadhaar national identity program is once again being called into question. The latest concerns come courtesy of Atul Nair, a security researcher who uncovered a severe vulnerability in the Pradhan Mantri Kisan Samman Nidhi (PM-Kisan) website that is used to provide financial relief to small farmers in the country.

Researcher Uncovers Another Aadhaar Security Gap

The problem, according to Nair, is that one part of the PM-Kisan website would reveal individual Aadhaar numbers to anyone who cared to ask. It’s unclear if any hackers managed to exploit the vulnerability, but it would have been relatively easy for a cybercriminal to collect a large amount of personal information with a simple script.

Nair first discovered the vulnerability and reported it to the Indian government’s cybersecurity team in January, though the agency did not manage to fix the problem until May (and Nair tactfully waited until after that before discussing the issue on his blog). Even though the gap has been closed, it offers yet more evidence that the Aadhaar system seems to riddled with holes that create opportunities for potential hackers. A 2018 report suggested that cybercriminals were selling access to the Aadhaar database on the black market, while UIDAI, the agency that manages the system, tried to downplay a separate breach in 2019.

In that regard, UIDAI has argued that criminals cannot carry out identity theft with an Aadhaar number alone, since the 12-digit numbers are tied to an individual’s iris and fingerprint biometrics. However, that has not quelled concerns about information security, which kicked up again after the government retracted an alert that advised citizens not to share photocopies of their Aadhaar cards with businesses like hotels. The government retracted the statement to dispel public panic, but it’s unclear if the government has actually addressed the issue that necessitated the warning in the first place.

The PM-Kisan program was established in 2019. More than 110 million farmers have already submitted their Aadhaar numbers and their iris biometrics to register in the program. 

Source: TechCrunch

–

June 15, 2022 – by Eric Weiss

Related News

  • India Uses Biometrics to Register Pensioners RemotelyIndia Uses Biometrics to Register Pensioners Remotely
  • TECH5 Provides Biometric and Digital ID Solutions for Ethiopia’s National ID PilotTECH5 Provides Biometric and Digital ID Solutions for Ethiopia’s National ID Pilot
  • Neurotechnology Provides Deduplication Tech for India’s Aadhaar DatabaseNeurotechnology Provides Deduplication Tech for India’s Aadhaar Database
  • Technology Hiccup Delays India’s Switch from Fingerprint to Iris Scanners for Food SubsidiesTechnology Hiccup Delays India’s Switch from Fingerprint to Iris Scanners for Food Subsidies
  • FPC Provides Contactless Iris Recognition Solution for Mantra SoftechFPC Provides Contactless Iris Recognition Solution for Mantra Softech
  • Guinea Uses MOSIP and TECH5 Technology in New National ID ProgramGuinea Uses MOSIP and TECH5 Technology in New National ID Program

Filed Under: News Tagged With: Aadhaar, Biometric, biometric ID programs, biometrics, fingerprint biometrics, fingerprint recognition, India, iris biometrics, iris recognition, national biometric ID programs, national ID programs

Primary Sidebar

Want To Deploy Biometric Access? Download This First:

The resources in this bundle will give you the know-how to choose the right biometric access for your organization.

Sponsored Links

facetec logo

FaceTec’s patented, industry-leading 3D Face Authentication software anchors digital identity, creating a chain of trust from user onboarding to ongoing authentication on all modern smart devices and webcams. FaceTec’s 3D FaceMaps™ make trusted, remote identity verification finally possible. As the only technology backed by a persistent spoof bounty program and NIST/iBeta Certified Liveness Detection, FaceTec is the global standard for Liveness and 3D Face Matching with millions of users on six continents in financial services, border security, transportation, blockchain, e-voting, social networks, online dating and more. www.facetec.com

TECH5 logo

TECH5 is an international technology company founded by experts from the biometrics industry, which focuses on developing disruptive biometric and digital ID solutions through the application of AI and Machine Learning technologies.

TECH5 target markets include both Government and Private sectors with products powering Civil ID, Digital ID, as well as authentication solutions that deliver identity assurance for various use cases. 

Learn more: www.tech5.ai

With its secunet border gears product portfolio and specialised consulting expertise, secunet supports police forces and security authorities in their sovereign tasks. Whether ABC gates, self-service kiosks or biometric middleware – each component helps to strengthen identity protection and to accelerate verification – in mobile and stationary scenarios.

Mobile ID World Logo

Mobile ID World is here to bring you the latest in mobile authentication solutions and application providers. Our company is dedicated to providing users with the best content and cutting edge information on technology, news, and mobile solutions for your mobile identity management needs.

Recent Posts

  • TECH5’s Biometric Tech Supports Remote Voting in Oman
  • You Have Five Years to File Your BIPA Lawsuit: Identity News Digest
  • [UPDATED] Feb 15 Virtual Summit Sessions Announced: Digital ID in Healthcare, Financial Services, Travel
  • Innovatrics’ OCR Tech Meets Thai Alphabet Challenge
  • Biometric Registration Spreads in Africa: Identity News Digest

Biometric Associations

IBIA and fido

Tweets

Footer

  • About Us
  • Company Directory
  • Advertise With Us
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • Archives
  • CCPA: Do not sell my personal info.

Follow Us

Copyright © 2023 FindBiometrics