cognitive cybersecurity intelligence

News and Analysis

Search

Indian transport ministry flaws potentially allowed creation of counterfeit driving licenses

A researcher named Robin Justin detailed how he exploited vulnerabilities in India’s Sarathi Parivahan website, accessing the personal identifiable information (PII) of 185 million citizens. He found several insecure endpoints that allowed him to access names, addresses, and driving license numbers. After reporting these vulnerabilities to India’s Computer Emergency Response Team (CERT-IN), he also discovered a weak one-time password (OTP) system for an administrator account. Both issues have been resolved.

Source: portswigger.net –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts