Indian Post Office Portal Exposes Thousands of KYC Records – Aadhaar & PAN at Risk!

A major security flaw in the Indian Post Office portal exposed thousands of KYC records, including Aadhaar numbers, PAN details, and personal data. The vulnerability, known as an IDOR attack, allowed unauthorized users to access sensitive data simply by altering numbers in the website’s URL. This incident highlights the urgent need for stronger cybersecurity in government platforms.
- A security flaw in the Indian Post Office portal exposed personal KYC details, putting thousands of users at risk.
- Attackers exploited a loophole in the portal’s URL structure, enabling unauthorized access to Aadhaar and PAN data.
- The vulnerability allowed anyone to retrieve confidential KYC documents by changing document ID numbers in the URL.
- Ethical hackers reported the flaw, and CERT-In worked with the Indian Post Office to patch the vulnerability.
- Government portals must implement strict security measures, including stronger authentication, API validation, and regular security audits.
This breach highlights the urgent need for public sector platforms to strengthen cybersecurity defenses. Proper access controls, authentication checks, and continuous security testing are essential to prevent such incidents. As India moves towards digital governance, protecting sensitive user data must be a top priority.
Stay secure with Net Protector Cyber Security!
- Other (42)
- Ransomware (134)
- Events and News (27)
- Features (45)
- Security (449)
- Tips (79)
- Google (23)
- Achievements (10)
- Products (33)
- Activation (7)
- Dealers (1)
- Bank Phishing (43)
- Malware Alerts (196)
- Cyber Attack (240)
- Data Backup (11)
- Data Breach (90)
- Phishing (148)
- Securty Tips (1)
- Browser Hijack (17)
- Adware (15)
- Email And Password (67)
- Android Security (60)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (71)
- Hacking (57)
- Social Media (7)
- vulnerability (56)
- Hacker (31)
- Spyware (9)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (4)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (5)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (9)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (8)
- Impersonation phishing (1)
- DDoS (5)
- Smishing (2)
- Whale (0)
- Whale phishing (3)
- WINRAR (2)
- ZIP (2)