Monday, 29 April 2024

 

 

LATEST NEWS Corruption will stop the day Aam Aadmi Party government is formed at the centre : Bhagwant Mann Congress believes in mass welfare, not selective privileges: Manish Tewari Raja Warring Meets Traders And Entrepreneurs, Vows To Find Solutions For Their Plight Jitender Kumar Toti, who was active in Congress, joined BJP along with 100 of his supporters Vote for Congress to counter the anti-people and divisive policies of BJP : Gurjeet Singh Aujla Mission 'AAP' 13-0 will be fulfilled on 4th June, people of Punjab are ready to write a new story: CM Bhagwant Mann High Court's Warning Falls on Deaf Ears: Preneet Kaur Exposes Kejriwal's Indifference to Delhi's Children Undaleeb Kaur appealed for her husband Gurjeet Aujla Aam Aadmi Party's big blow to BJP and Akali Dal in Punjab 65th Annual Convocation of Govt. College of Education Chandigarh Ratan Group has signed an agreement with Claremont University of America Main Ladega Review Underdog Story Narrated With A Lot Of Heart, Starring Akash Pratap Singh Governor Shiv Pratap Shukla releases Souvenir of Pensioner’s Welfare Association Ideathon 2K24 held at CGC Jhanjeri, 160 teams from various colleges participated Chief Secretary Anurag Verma Visits Grain Market Khanna, Takes Stock Of Wheat Procurement Raju Shooter Escape Case: Punjab Police Arrests Escapee Gangster, 10 Aides From Punjab And J&K Gurjit Singh Aujla pays tribute to the martyrs of Jallianwala Bagh Bhagwant Mann Aap Govt Should Immediately Anounce Award For Land Acquired For Northern Byepass: Preneet Kaur Preneet Kaur and Dr. Balbir Singh trying to usurp land of farmers illegally without paying even a single penny to them: N. K Sharma Jammu PC records 71.91% voter turnout in second Phase of Lok Sabha Elections Scrutiny of nomination papers completed for 02-Srinagar PC

 

Hackers don't have access to entire CoWIN portal or database: Researchers

Study, New Delhi, Research, Researchers, India News, Hackers, CoWIN Portal, Indian Computer Emergency Response Team, ICERT
Listen to this article

Web Admin

Web Admin

5 Dariya News

New Delhi , 13 Jun 2023

Cyber-security researchers on Tuesday said that hackers do not have access to the entire CoWIN portal nor the backend database, after a Telegram bot leaked Indians' data.Based on matching fields from Telegram data and previously reported incidents affecting health workers, the team from cyber-security company CloudSEK said that the information was scraped through these compromised credentials and the claims need to be verified individually.

CloudSEK's contextual AI digital risk platform XVigil discovered a threat actor advertising a Telegram bot that offered personally identifiable information (PII) data of Indian citizens who had allegedly registered vaccines from the CoWIN portal.

"It is believed that the threat actors have obtained multiple credentials belonging to health workers, which they can use to access the CoWIN portal and its associated data," according to researchers.

On March 13, 2022, a threat actor on a Russian cybercrime forum advertised compromised access to the CoWIN portal, sharing a screenshot of the CoWIN database portal affecting the Tamil Nadu region.

"There are numerous healthcare worker credentials available on the Dark Web for the CoWIN portal, highlighting the need for better endpoint security measures for healthcare workers," the team highlighted.

The Union Ministry of Health and Family Welfare (MoHFW) on Monday dubbed the alleged data breach of Covid-19 vaccine beneficiaries as "mischievous in nature", saying that the CoWIN portal is completely safe with adequate safeguards for data privacy.

The Ministry also said that it has requested the Indian Computer Emergency Response Team (CERT-In) to look into this issue and submit a report, besides initiating an internal exercise to review the existing security measures of CoWIN.

According to cyber-security researchers, the Covid data bot was offered by a channel called 'hak4learn', which frequently shared hacking tutorials, resources, and bots for individuals to access and buy.Initially, the bot was available for everyone to use, but it was later upgraded to be exclusive to subscribers.

"The bot is currently down and might come up later as mentioned by the admin of the channel," said CloudSEK.Union Minister of State for Electronics and IT, Rajeev Chandrasekhar had said that it does not appear that the CoWIN app or database has been directly breached.

 

Tags: Study , New Delhi , Research , Researchers , India News , Hackers , CoWIN Portal , Indian Computer Emergency Response Team , ICERT

 

 

related news

 

 

 

Photo Gallery

 

 

Video Gallery

 

 

5 Dariya News RNI Code: PUNMUL/2011/49000
© 2011-2024 | 5 Dariya News | All Rights Reserved
Powered by: CDS PVT LTD