Feeds.Feedburner Data Leak at Indian Bank Domain Registrar Exposes Sensitive Employee Information
Article Content
- •IDRBT's portal exposed sensitive data of 5,576 bank employees due to security flaws.
- •The portal had over 33 unauthenticated API endpoints allowing unauthorized access.
- •Many .bank.in domains lack critical security protocols like DNSSEC and DMARC.
The Reserve Bank of India's initiative to enhance online banking security with the .bank.in subdomain has been compromised by a significant data leak. The Institute for Development and Research in Banking Technology (IDRBT), the designated registrar, allegedly exposed sensitive information of 5,576 bank employees due to inadequate security measures on its Domain Registration Portal. A security researcher, Srikanth L, reported that the portal had over 33 unauthenticated API endpoints, allowing unauthorized access to bcrypt password hashes, mobile numbers, email addresses, and device fingerprints. Many .bank.in domains lack essential security protocols like DNSSEC and DMARC, and some are hosted on shared servers abroad. The portal operated with these vulnerabilities for 13 months without a proper security audit. Although IDRBT has reportedly addressed the vulnerabilities, the initial exposure could facilitate phishing and DNS spoofing attacks, undermining the RBI's efforts to combat fraud.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Institute For Development And Research In Banking Technology in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…