Skip to main content

135 million aadhaar details, 100 million bank accounts "leaked" from government websites: Researchers

Screenshot from a NREGA site: Researchers hide details 
Counterview Desk
A top study by the Centre for Internet and Society (CIS) has said that “estimated number of aadhaar numbers leaked” through top portals which handle aadhaar “could be around 130-135 million”. Worse, it says, the number of bank accounts numbers leaked would be “around 100 million”.
The study, carried out by researchers Amber Sinha and Srinivas Kodali, adds, “While these numbers are only from two major government programmes of pensions and rural employment schemes, other major schemes, who have also used aadhaar for direct bank transfer (DBT) could have leaked personally identifiable information (PII) similarly due to lack of information security practices.”
Pointing out that “over 23 crore beneficiaries have been brought under aadhaar programme for DBT”, the study, titled “Information Security Practices of Aadhaar (Or Lack Thereof)”, says, “Government schemes dashboard and portals demonstrate … dangers of ill-conceived data driven policies and transparency measures without proper consideration to data security measures.”
Claiming to have a closer look at the databases publicly available portals, the researchers identify four of them a pool of other government websites for examination:
A welfare programme by the Ministry of Rural Development, the National Social Assistance Programme (NSAP) portal, even as seeking to provide public assistance to its citizens in case of unemployment, old age, sickness and disablement, offers information about “job card number, bank account number, name, aadhaar number, account frozen status”, the researchers say.
Pointing out that “one of the url query parameters of website showing the masked personal details was modified from nologin to login”, they say, the “control access to login based pages were allowed providing unmasked details without the need for a password.”
Another NREGA site screenshot by researchers
In fact, they say, the Data Download Option feature “allows download of beneficiary details mentioned above such as Beneficiary No, Name, Father’s/Husband’s Name, Age, Gender, Bank or Post Office Account No for beneficiaries receiving disbursement via bank transfer and Aadhaar Numbers for each area, district and state.”
They add, “The NSAP portal lists 94,32,605 banks accounts linked with aadhaar numbers, and 14,98,919 post office accounts linked with aadhaar numbers. While the portal has 1,59,42,083 aadhaar numbers in total, not all of whom are linked to bank accounts.”
Also giving the example of the national rural job guarantee scheme, popularly called NREGA, the researchers say, its portal provides DBT reports containing “various sub-sections including one called ‘Dynamic Report on Worker Account Detail’,” with details like “Job card number, aadhaar number, bank/postal account number, number of days worked”, and so on.
“As per the NREGA portal, there were 78,74,315 post office accounts of individual workers seeded with aadhaar numbers, and 8,24,22,161 bank accounts of individual workers with aadhaar numbers. The total number of Aadhaar numbers stored by portal are at 10,96,41,502”, they add.
Providig similar instances form two other sources, the researchers insist, “The availability of large datasets of aadhaar numbers along with bank account numbers, phone numbers on the internet increases the risk of financial fraud.”
Underlining that “aadhaar data makes this process much easier for fraud and increases the risk around transactions”, they say, “In the US, the ease of getting Social Security Numbers from public databases has resulted in numerous cases of identity theft. These risks increase multifold in India due the proliferation of aadhaar numbers and other related data available.”

Comments

TRENDING

Beyond the 'silent relocation' narrative in Bangladesh's Chittagong Hill Tracts

By Dr. Mohammad Asaduzzaman*  In recent years, a narrative has emerged from the rugged and forested terrain of the Chittagong Hill Tracts (CHT), portraying the region as the site of a “silent relocation” — a mass forced migration of Bangladesh’s non-Muslim ethnic communities into neighboring India and Myanmar.

The farmer's burden: How oil, war, and climate are rewriting the price of food

By Vikas Meshram   The scorching flames of the Middle East conflict are now slowly reaching the kitchens of ordinary people. The true price of this war is paid in daily markets, vegetable shops, and in the shattered minds of farmers. Expensive crude oil, skyrocketing fertilizer prices, and rising agricultural costs are together creating the conditions for global food inflation — and this crisis is directly tied to what people eat and drink every day.

Ram, Bam and Bengal: Memories of a Left turn toward the Right

By Rajiv Shah   The BJP ’s massive electoral win in West Bengal is being interpreted across political persuasions — except, of course, by the BJP itself — as the result of the alleged deletion of around 90 lakh voters from the electoral rolls during the controversial intensive revision process. This may well be true, given my own experience in Gujarat regarding the shoddy manner in which electoral revisions have often been conducted. In West Bengal, there also appeared to be a political angle to the exercise. But I am not interested in discussing that here, as enough has already appeared in the media on the subject.