City
Epaper

ICMR data leak reveals personal info of 81.5 cr Indians: Report

By IANS | Updated: October 30, 2023 18:45 IST

New Delhi, Oct 30 In a massive data breach, details of over 81.5 crore citizens with the Indian ...

Open in App

New Delhi, Oct 30 In a massive data breach, details of over 81.5 crore citizens with the Indian Council of Medical Research (ICMR) are on sale on the dark web, which contains crucial information such as Aadhaar and passport details, along with names, phone numbers, and addresses, according to the reports.

Given the severity of the matter, the Central Bureau of Investigation (CBI) is expected to probe the incident after the ICMR files a complaint.

The data breach noticed by the US-based cybersecurity and intelligence firm Resecurity mentioned that "on October 9, a threat actor going by the alias ‘pwn0001’ posted a thread on Breach Forums brokering access to 815 million 'Indian Citizen Aadhaar and Passport' records".

Moreover, the cybersecurity analysts found one of the leaked samples containing 100,000 records of PII (personally identifiable information) related to Indian residents.

In this sample leak, the analysts identified valid Aadhaar Card IDs, which were corroborated via a government portal that provides a "Verify Aadhaar" feature.

The analysts also managed to connect with the threat actor and learned they were willing to sell the entire Aadhaar and Indian passport dataset for $80,000 (over Rs 66 lakh).

However, the threat actor declined to specify how they obtained the data.

Last month, cybersecurity researchers found that the official website of the Ministry of AYUSH in Jharkhand had been breached, exposing over 3.2 lakh patient records on the dark web.

According to the cybersecurity company CloudSEK, the website's database, amounting to 7.3 MB, holds patient records that include PII and medical diagnoses. The compromised data also contains sensitive information about doctors, including their PII, login credentials, usernames, passwords, and phone numbers.

The data breach was initiated by a threat actor named "Tanaka".

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

InternationalVictory Day: Sheikh Hasina's son warns of increasing Pak-backed proxies in Bangladesh

BusinessSensex, Nifty end lower on weak global cues

InternationalIndia-Maldives joint military exercise EKUVERIN concludes in Thiruvananthapuram

NationalBondi Beach attack sparks intelligence alert ahead of New Year crowds in India

CricketIPL Auction 2026: Why Cameron Green will get Rs 18 crore despite being sold for Rs 25.2 crore?

Technology Realted Stories

TechnologyIndia’s long-term outlook remains positive, indices to remain near all-time high in 2025

TechnologyIndia likely to touch 5 million metric tonnes of green hydrogen capacity by 2030

TechnologyIIT Delhi, AIIMS’s new ingestible device can collect microbial samples from small intestine

TechnologyGlobal leaders adopt political declaration to combat diabetes, high BP and mental health by 2030

Technology'India sees Taiwan as vital technology partner'