• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to footer
  • Our Services
  • Contact Us
  • Newsletter
  • Top Nav Social Icons

FindBiometrics

FindBiometrics

Global Identity Management

  • Biometrics
    • What are Biometrics?
    • FAQ
    • Biometric Associations
    • Companies
    • Premier Partners
  • News
    • Featured Articles
    • Interviews
    • Thought Leadership
    • Podcasts
    • Webinars
    • Year in Review
  • Applications
    • Biometric Security
    • Border Control and Airport Biometrics
    • Consumer and Residential Biometrics
    • Financial Biometrics
    • Fingerprint & Biometric Locks
    • Healthcare Biometrics
    • Justice and Law Enforcement Biometrics
    • Logical Access Control Biometrics
    • Mobile Biometrics
    • Other Biometric Applications
    • Physical Access Control Biometrics
    • Biometric Time and Attendance
  • Solutions
    • Behavioral Biometrics
    • Biometric Sensors and Detectors
    • Facial Recognition
    • Biometric Fingerprint Readers
    • Hand Readers & Finger Scanners
    • Iris Recognition
    • Biometric Middleware and Software
    • Multimodal Biometrics
    • Physiological Biometrics
    • Smart Cards
    • Vein Recognition
    • Voice and Speech Recognition
  • Stocks
  • Events
  • Companies
  • Podcasts

Researcher Uncovers Another Aadhaar Security Gap

June 15, 2022

The integrity of India’s Aadhaar national identity program is once again being called into question. The latest concerns come courtesy of Atul Nair, a security researcher who uncovered a severe vulnerability in the Pradhan Mantri Kisan Samman Nidhi (PM-Kisan) website that is used to provide financial relief to small farmers in the country.

Researcher Uncovers Another Aadhaar Security Gap

The problem, according to Nair, is that one part of the PM-Kisan website would reveal individual Aadhaar numbers to anyone who cared to ask. It’s unclear if any hackers managed to exploit the vulnerability, but it would have been relatively easy for a cybercriminal to collect a large amount of personal information with a simple script.

Nair first discovered the vulnerability and reported it to the Indian government’s cybersecurity team in January, though the agency did not manage to fix the problem until May (and Nair tactfully waited until after that before discussing the issue on his blog). Even though the gap has been closed, it offers yet more evidence that the Aadhaar system seems to riddled with holes that create opportunities for potential hackers. A 2018 report suggested that cybercriminals were selling access to the Aadhaar database on the black market, while UIDAI, the agency that manages the system, tried to downplay a separate breach in 2019.

In that regard, UIDAI has argued that criminals cannot carry out identity theft with an Aadhaar number alone, since the 12-digit numbers are tied to an individual’s iris and fingerprint biometrics. However, that has not quelled concerns about information security, which kicked up again after the government retracted an alert that advised citizens not to share photocopies of their Aadhaar cards with businesses like hotels. The government retracted the statement to dispel public panic, but it’s unclear if the government has actually addressed the issue that necessitated the warning in the first place.

The PM-Kisan program was established in 2019. More than 110 million farmers have already submitted their Aadhaar numbers and their iris biometrics to register in the program. 

Source: TechCrunch

–

June 15, 2022 – by Eric Weiss

Related News

  • India Uses Biometrics to Register Pensioners RemotelyIndia Uses Biometrics to Register Pensioners Remotely
  • TECH5 Provides Biometric and Digital ID Solutions for Ethiopia’s National ID PilotTECH5 Provides Biometric and Digital ID Solutions for Ethiopia’s National ID Pilot
  • Neurotechnology Provides Deduplication Tech for India’s Aadhaar DatabaseNeurotechnology Provides Deduplication Tech for India’s Aadhaar Database
  • Technology Hiccup Delays India’s Switch from Fingerprint to Iris Scanners for Food SubsidiesTechnology Hiccup Delays India’s Switch from Fingerprint to Iris Scanners for Food Subsidies
  • FPC Provides Contactless Iris Recognition Solution for Mantra SoftechFPC Provides Contactless Iris Recognition Solution for Mantra Softech
  • Guinea Uses MOSIP and TECH5 Technology in New National ID ProgramGuinea Uses MOSIP and TECH5 Technology in New National ID Program

Filed Under: News Tagged With: Aadhaar, Biometric, biometric ID programs, biometrics, fingerprint biometrics, fingerprint recognition, India, iris biometrics, iris recognition, national biometric ID programs, national ID programs

Primary Sidebar

EXCLUSIVE MEMBERS ONLY CONTENT:

Become a FindBiometrics Member and gain easy access to specialty content, including the ID Tech column, replays of virtual events, and Identity School educational checklists:

ID TECH: What Role Will Biometrics Play in the Cyber Cold War? We’re About to Find Out [NEW]

Identity School: Facial Recognition Cheat Sheet

REPLAY: Travel & Hospitality Virtual Identity Summit

Sponsored Links

TECH5 showcase logo

TECH5 is an international technology company founded by experts from the biometrics industry, which focuses on developing disruptive biometric and digital ID solutions through the application of AI and Machine Learning technologies.

TECH5 target markets include both Government and Private sectors with products powering Civil ID, Digital ID, as well as authentication solutions that deliver identity assurance for various use cases. 

Learn more: www.tech5.ai

Onfido logo

Onfido is building the new identity standard for the internet.Our AI-based technology assesses whether a user’s government-issued ID is genuine or fraudulent, and then compares it against their facial biometrics. That’s how we give companies like Revolut, Zipcar and Bitstamp the assurance they need to onboard customers remotely and securely. Our mission is to create a more open world, where identity is the key to access.. For more information, please visit www.onfido.com

ThreatMark brings trust to the digital world by providing cutting-edge fraud prevention solutions. Major banks use ThreatMark’s AI-powered technology and behavioral biometrics to build secured banking experience to precisely verify their legitimate users, seamlessly across all digital channels. All while securing the users’ most precious assets and keeping the fraudsters away. Learn more: www.threatmark.com/

With its secunet border gears product portfolio and specialised consulting expertise, secunet supports police forces and security authorities in their sovereign tasks. Whether ABC gates, self-service kiosks or biometric middleware – each component helps to strengthen identity protection and to accelerate verification – in mobile and stationary scenarios.

Mobile ID World Logo

Mobile ID World is here to bring you the latest in mobile authentication solutions and application providers. Our company is dedicated to providing users with the best content and cutting edge information on technology, news, and mobile solutions for your mobile identity management needs.

Recent Posts

  • Web3 Gets Its First Smartphone, Featuring Biometric Authentication
  • Vivo X80 Pro Stands Out With Extra-large In-display Sensor
  • Apple Seeks to Kill Both the Password and the CAPTCHA With New Authentication Solutions
  • American Airlines Looks to Selfie Biometrics for Passenger Processing
  • VAIO Installs Fingerprint Sensors in New FE Laptops

Biometric Associations

IBIA and fido

Tweets

Footer

  • About Us
  • Company Directory
  • Advertise With Us
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • Archives
  • CCPA: Do not sell my personal info.

Follow Us

Copyright © 2022 FindBiometrics