Skip to main content

135 million aadhaar details, 100 million bank accounts "leaked" from government websites: Researchers

Screenshot from a NREGA site: Researchers hide details 
Counterview Desk
A top study by the Centre for Internet and Society (CIS) has said that “estimated number of aadhaar numbers leaked” through top portals which handle aadhaar “could be around 130-135 million”. Worse, it says, the number of bank accounts numbers leaked would be “around 100 million”.
The study, carried out by researchers Amber Sinha and Srinivas Kodali, adds, “While these numbers are only from two major government programmes of pensions and rural employment schemes, other major schemes, who have also used aadhaar for direct bank transfer (DBT) could have leaked personally identifiable information (PII) similarly due to lack of information security practices.”
Pointing out that “over 23 crore beneficiaries have been brought under aadhaar programme for DBT”, the study, titled “Information Security Practices of Aadhaar (Or Lack Thereof)”, says, “Government schemes dashboard and portals demonstrate … dangers of ill-conceived data driven policies and transparency measures without proper consideration to data security measures.”
Claiming to have a closer look at the databases publicly available portals, the researchers identify four of them a pool of other government websites for examination:
A welfare programme by the Ministry of Rural Development, the National Social Assistance Programme (NSAP) portal, even as seeking to provide public assistance to its citizens in case of unemployment, old age, sickness and disablement, offers information about “job card number, bank account number, name, aadhaar number, account frozen status”, the researchers say.
Pointing out that “one of the url query parameters of website showing the masked personal details was modified from nologin to login”, they say, the “control access to login based pages were allowed providing unmasked details without the need for a password.”
Another NREGA site screenshot by researchers
In fact, they say, the Data Download Option feature “allows download of beneficiary details mentioned above such as Beneficiary No, Name, Father’s/Husband’s Name, Age, Gender, Bank or Post Office Account No for beneficiaries receiving disbursement via bank transfer and Aadhaar Numbers for each area, district and state.”
They add, “The NSAP portal lists 94,32,605 banks accounts linked with aadhaar numbers, and 14,98,919 post office accounts linked with aadhaar numbers. While the portal has 1,59,42,083 aadhaar numbers in total, not all of whom are linked to bank accounts.”
Also giving the example of the national rural job guarantee scheme, popularly called NREGA, the researchers say, its portal provides DBT reports containing “various sub-sections including one called ‘Dynamic Report on Worker Account Detail’,” with details like “Job card number, aadhaar number, bank/postal account number, number of days worked”, and so on.
“As per the NREGA portal, there were 78,74,315 post office accounts of individual workers seeded with aadhaar numbers, and 8,24,22,161 bank accounts of individual workers with aadhaar numbers. The total number of Aadhaar numbers stored by portal are at 10,96,41,502”, they add.
Providig similar instances form two other sources, the researchers insist, “The availability of large datasets of aadhaar numbers along with bank account numbers, phone numbers on the internet increases the risk of financial fraud.”
Underlining that “aadhaar data makes this process much easier for fraud and increases the risk around transactions”, they say, “In the US, the ease of getting Social Security Numbers from public databases has resulted in numerous cases of identity theft. These risks increase multifold in India due the proliferation of aadhaar numbers and other related data available.”

Comments

TRENDING

From algorithms to exploitation: New report exposes plight of India's gig workers

By Jag Jivan   The recent report, "State of Finance in India Report 2024-25," released by a coalition including the Centre for Financial Accountability, Focus on the Global South, and other organizations, paints a stark picture of India's burgeoning digital economy, particularly highlighting the exploitation faced by gig workers on platform-based services. 

'Condonation of war crimes against women and children’: IPSN on Trump’s Gaza Board

By A Representative   The India-Palestine Solidarity Network (IPSN) has strongly condemned the announcement of a proposed “Board of Peace” for Gaza and Palestine by former US President Donald J. Trump, calling it an initiative that “condones war crimes against children and women” and “rubs salt in Palestinian wounds.”

Gig workers hold online strike on republic day; nationwide protests planned on February 3

By A Representative   Gig and platform service workers across the country observed a nationwide online strike on Republic Day, responding to a call given by the Gig & Platform Service Workers Union (GIPSWU) to protest what it described as exploitation, insecurity and denial of basic worker rights in the platform economy. The union said women gig workers led the January 26 action by switching off their work apps as a mark of protest.

India’s road to sustainability: Why alternative fuels matter beyond electric vehicles

By Suyash Gupta*  India’s worsening air quality makes the shift towards clean mobility urgent. However, while electric vehicles (EVs) are central to India’s strategy, they alone cannot address the country’s diverse pollution and energy challenges.

Jayanthi Natarajan "never stood by tribals' rights" in MNC Vedanta's move to mine Niyamigiri Hills in Odisha

By A Representative The Odisha Chapter of the Campaign for Survival and Dignity (CSD), which played a vital role in the struggle for the enactment of historic Forest Rights Act, 2006 has blamed former Union environment minister Jaynaynthi Natarjan for failing to play any vital role to defend the tribals' rights in the forest areas during her tenure under the former UPA government. Countering her recent statement that she rejected environmental clearance to Vendanta, the top UK-based NMC, despite tremendous pressure from her colleagues in Cabinet and huge criticism from industry, and the claim that her decision was “upheld by the Supreme Court”, the CSD said this is simply not true, and actually she "disrespected" FRA.

Stands 'exposed': Cavalier attitude towards rushed construction of Char Dham project

By Bharat Dogra*  The nation heaved a big sigh of relief when the 41 workers trapped in the under-construction Silkyara-Barkot tunnel (Uttarkashi district of Uttarakhand) were finally rescued on November 28 after a 17-day rescue effort. All those involved in the rescue effort deserve a big thanks of the entire country. The government deserves appreciation for providing all-round support.

Whither space for the marginalised in Kerala's privately-driven townships after landslides?

By Ipshita Basu, Sudheesh R.C.  In the early hours of July 30 2024, a landslide in the Wayanad district of Kerala state, India, killed 400 people. The Punjirimattom, Mundakkai, Vellarimala and Chooralmala villages in the Western Ghats mountain range turned into a dystopian rubble of uprooted trees and debris.

Over 40% of gig workers earn below ₹15,000 a month: Economic Survey

By A Representative   The Finance Minister, Nirmala Sitharaman, while reviewing the Economic Survey in Parliament on Tuesday, highlighted the rapid growth of gig and platform workers in India. According to the Survey, the number of gig workers has increased from 7.7 million to around 12 million, marking a growth of about 55 percent. Their share in the overall workforce is projected to rise from 2 percent to 6.7 percent, with gig workers expected to contribute approximately ₹2.35 lakh crore to the GDP by 2030. The Survey also noted that over 40 percent of gig workers earn less than ₹15,000 per month.

Fragmented opposition and identity politics shaping Tamil Nadu’s 2026 election battle

By Syed Ali Mujtaba*  Tamil Nadu is set to go to the polls in April 2026, and the political battle lines are beginning to take shape. Prime Minister Narendra Modi’s visit to the state on January 23, 2026, marked the formal launch of the Bharatiya Janata Party’s campaign against the ruling Dravida Munnetra Kazhagam (DMK). Addressing multiple public meetings, the Prime Minister accused the DMK government of corruption, criminality, and dynastic politics, and called for Tamil Nadu to be “freed from DMK’s chains.” PM Modi alleged that the DMK had turned Tamil Nadu into a drug-ridden state and betrayed public trust by governing through what he described as “Corruption, Mafia and Crime,” derisively terming it “CMC rule.” He claimed that despite making numerous promises, the DMK had failed to deliver meaningful development. He also targeted what he described as the party’s dynastic character, arguing that the government functioned primarily for the benefit of a single family a...