PNB Server exposed personal information of over 180 million customers
By MYBRANDBOOK
According to cyber security firm CyberX9, a vulnerability in the server of Punjab National Bank (PNB) allegedly exposed the personal and financial information of its about 180 million customers for about seven months. The vulnerability provided access to the entire digital banking system of PNB with administrative control. Meanwhile, the bank has confirmed the glitch but denied any exposure of critical data.
The bank has confirmed about the glitch but denied any exposure of critical data due to the vulnerability. PNB said "customer data/applications are not affected due to this" and "server has been shut down as a precautionary measure."
CyberX9 founder and MD Himanshu Pathak said that that vulnerability was found in an exchange server which is interconnected with other exchanges and shares all access -- including access to all email addresses which results in access to all email addresses.
"The vulnerability which we discovered was leading to the highest level of admin privilege in PNB's exchange servers. If you gain access to Domain Controller through an exchange server then the doors very easily open to make any computer accessible in the network. These computers even include those that are being used in their branches and other departments," Pathak said.
Responding to the cyber security firm’s comment, PNB said, "The server wherein the vulnerability was reported, was being used as one of the multiple Exchange Hybrid servers used to route emails from On-prem to Office 365 Cloud. There is no sensitive/critical data in this server."
Legal Battle Over IT Act Intensifies Amid Musk’s India Plans
The outcome of the legal dispute between X Corp and the Indian government c...
Wipro inks 10-year deal with Phoenix Group's ReAssure UK worth
The agreement, executed through Wipro and its 100% subsidiary,...
Centre announces that DPDP Rules nearing Finalisation by April
The government seeks to refine the rules for robust data protection, ensuri...
Home Ministry cracks down on PoS agents in digital arrest scam
Digital arrest scams are a growing cybercrime where victims are coerced or ...
ICONS OF INDIA : SACHIN BANSAL
Sachin Bansal is an Indian entrepreneur. He is best known as the found...
Icons Of India : ALOK OHRIE
Alok Ohrie leads Dell Technologies’ India business, overseeing Sales...
SHAKTIKANTA DAS
Shaktikanta Das is serving as the current & 25th governor of the Reser...
IREDA - Indian Renewable Energy Development Agency LimitedÂ
IREDA is a specialized financial institution in India that facilitates...
IOCL - Indian Oil Corporation Ltd. Â
IOCL is India’s largest oil refining and marketing company ...
BSE - Bombay Stock Exchange Â
The Bombay Stock Exchange (BSE) is one of India’s largest and oldest...
Indian Tech Talent Excelling The Tech World - ANJALI SUD, CEO – Tubi
Anjali Sud, the former CEO of Vimeo, now leads Tubi, Fox Corporationâ€...
Indian Tech Talent Excelling The Tech World - Satya Nadella, Chairman & CEO- Microsoft
Satya Nadella, the Chairman and CEO of Microsoft, recently emphasized ...
Indian Tech Talent Excelling The Tech World - George Kurian, CEO, Netapp
George Kurian, the CEO of global data storage and management services ...