wordpress blog stats
Connect with us

Hi, what are you looking for?

Punjab National Bank exposed personal, financial information of 180 million customers for seven months: Report

The security flaw that left the door open for malicious actors has prompted demands for an independent audit of the bank.

A critical security vulnerability in Punjab National Bank (PNB) exposed the personal and financial data of over 180 million customers for the last seven months, cybersecurity firm CyberX9 claims in a report. The vulnerability was fixed by PNB on November 19 after it was reported to CERT-In and NCIIPC, the firm said. PNB is India's second-largest public sector bank and an allegation that all of its customer accounts could've been compromised by cyber attackers is alarming. In a statement to MoneyControl, PNB confirmed a vulnerability in one of its servers but denied that any critical data was exposed or other systems were affected. MediaNama has reached out seeking more details. Cyberattacks and data breaches have been growing rapidly in recent months. Just earlier this month, CyberX9 reported that another large financial company,  Central Depository Services Limited (CDSL), exposed sensitive data of around 4.39 crore investors. What was the vulnerability at PNB? CyberX9 reported that on November 17 it discovered a critical vulnerability that gave it access to the highest level of administrator privileges in an internal PNB server, which in turn exposed PNB's systems nationwide. This unrestricted access could have allowed any malicious attacker to get access to any information on PNB's network including systems in PNB branches and other departments, the cybersecurity firm said. An attacker could've potentially had the ability to remotely execute any code on them, steal data, make transactions, get complete control of such connected computer systems. – CyberX9 PNB, however, told MoneyControl: "The server wherein the vulnerability was reported,…

Please subscribe/login to read the full story.
Written By

Free Reads

News

In its submission, the Interior Ministry said the decision to impose a ban was "made in the interest of upholding national security, maintaining public...

News

Among other things, the security requirements include data encryption and regular review and updated access permissions to reflect personnel changes.

News

the NTIA had earlier sought comments on the risks, benefits, and potential policy related to dual-use foundation models for which the model weights are widely...

MediaNama’s mission is to help build a digital ecosystem which is open, fair, global and competitive.

Views

News

NPCI CEO Dilip Asbe recently said that what is not written in regulations is a no-go for fintech entities. But following this advice could...

News

Notably, Indus Appstore will allow app developers to use third-party billing systems for in-app billing without having to pay any commission to Indus, a...

News

The existing commission-based model, which companies like Uber and Ola have used for a long time and still stick to, has received criticism from...

News

Factors like Indus not charging developers any commission for in-app payments and antitrust orders issued by India's competition regulator against Google could contribute to...

News

Is open-sourcing of AI, and the use cases that come with it, a good starting point to discuss the responsibility and liability of AI?...

You May Also Like

News

Google has released a Google Travel Trends Report which states that branded budget hotel search queries grew 179% year over year (YOY) in India, in...

Advert

135 job openings in over 60 companies are listed at our free Digital and Mobile Job Board: If you’re looking for a job, or...

News

By Aroon Deep and Aditya Chunduru You’re reading it here first: Twitter has complied with government requests to censor 52 tweets that mostly criticised...

News

Rajesh Kumar* doesn’t have many enemies in life. But, Uber, for which he drives a cab everyday, is starting to look like one, he...

MediaNama is the premier source of information and analysis on Technology Policy in India. More about MediaNama, and contact information, here.

© 2008-2021 Mixed Bag Media Pvt. Ltd. Developed By PixelVJ

Subscribe to our daily newsletter
Name:*
Your email address:*
*
Please enter all required fields Click to hide
Correct invalid entries Click to hide

© 2008-2021 Mixed Bag Media Pvt. Ltd. Developed By PixelVJ