City
Epaper

Why India needs strong cyber security norms to curb misuse of VPNs

By IANS | Updated: May 22, 2022 11:15 IST

New Delhi, May 22 After concerns were raised over the new cyber-security directives by the Indian Computer Emergency ...

Open in App

New Delhi, May 22 After concerns were raised over the new cyber-security directives by the Indian Computer Emergency Response Team (CERT-In), industry experts said on Sunday that if the new guidelines are strictly enforced, corporate and enterprise virtual private networks (VPNs) will have to compulsory report several serious offences that will over help end users.

The new cyber-security norms mandates reporting of cybersecurity incidents and misuse of VPNs.

After the uproar over the April 28 directives, the CERT-In that comes under the IT Ministry issued an updated document or FAQs, saying that the new directives will only apply to general internet users who use commercially available VPNs.

CERT-In also clarified that the mandate to report cybersecurity incidents within six hours cannot be bypassed because of contractual obligations of a company.

According to New Delhi-based cyberlaw expert Virag Gupta, current cyber security rules are 11-year old, which is a long time in the internet Era.

"Over this period, the shape and dimension of the Internet has changed significantly. The perpetrators of cyber crimes are both state and non-state actors with sinister designs," Gupta told .

As per the new policy, any service provider, intermediary, data centre, body corporate and government organisation will mandatorily report cyber incidents within six hours.

"If the terms of policy are properly enforced by the authorities and cases are registered as per mandate of the law, then how will police, digital labs and courts be able to handle huge numbers of cyber crimes?" he asked.

Amid the debate, Union Minister of State for IT and Skill Development and Entrepreneurship Rajeev Chandrasekhar has said that there would be no impact on business viability.

"The only restriction is that VPN is misused for criminal activities, VPN operators will have to cooperate and produce the data of the person committing the criminal activity," the minister said on the sidelines of a Nasscom event in Ahmedabad on Saturday.

As per CERT-In, there are various types of other offences like data breach, data leak, spread of computer contaminant, identity theft, spoofing, phishing, Distributed Denial of Service (DDoS) attacks on applications such as e-Governance, e-commerce etc.

According to the FAQ, the rapid and mandatory reporting of incidents is a must and primary requirement for remedial action for ensuring stability and resilience of Cyber Space.

In a country which is targeting a $1 trillion digital economy and nearly 80 crore people are using the Internet, only 500,035 cases of cyber crime were recorded in 2020, according to data from the National Crime Record Bureau (NCRB).

As per NCRB data, only 4,047 cases of online banking fraud, 1,093 OTP frauds and 578 incidents on fake news on social media were reported in 2020.

"If these guidelines are strictly enforced, then all such offences will have to be compulsory reported," said Gupta.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Virag guptaIndian Computer Emergency Response TeamVPNComputer emergency response team of ministry of electronics and information technology
Open in App

Related Stories

MumbaiMumbai Bomb Threat Emails Traced to Bangladesh IP; Sender Used VPN to Hide Location

MumbaiBishnoi Gang Used Proton Mail, VPN to Threaten Ayush Sharma and Ranveer Singh: Mumbai Crime Branch Probe Reveals Key Details

NationalUpdate Google Chrome Immediately to Avoid Major Security Risks, Government Issues Critical Warning for Users

MumbaiMumbai: Over 10 International Schools Receive Threat Emails in 2 Months via Foreign VPNs; Probe Underway

MumbaiMumbai: Man Arrested for Sending Obscene Emails to Neighbour In Dahisar

Technology Realted Stories

TechnologyAnother India-flagged tanker Green Asha crosses Strait of Hormuz amid tensions

TechnologyS. Korea urges GCC nations to bolster supply chain cooperation

TechnologyCII seeks more fiscal, monetary sops for industry amid Iran war crisis

TechnologyNH44 in Bengaluru is ‘shoddily designed and ill-maintained’: Kiran Mazumdar-Shaw

TechnologySamsung, Mistral AI discuss cooperation in AI memory sector