Student data exposed on Andhra Pradesh Government Examination website!

tl;dr Sai Sravan Prabhala, a cyber-security researcher, informed us of a critical vulnerability exposing the sensitive personal information of minors. This existed on the website of the Directorate of Government Examinations, Government of Andhra Pradesh’s for the 2021 examinations. While this functionality itself has been removed, to prevent it from occurring again assisted by Sai, we have written to them and CERT-In. Background On 22nd December 2021, cyber-security researcher Sai Sravan Prabhala reached out to us, to bring to our notice a vulnerability in the Andhra Pradesh Directorate of Government Examination website which put the sensitive personal information of minors at risk of misuse....

February 4, 2022 · 7 min · Tejasi Panjiar

IFF explains DigiYatra: Turbulence ahead

In the second part of our series on the Ministry of Civil Aviation’s DigiYatra Scheme, we analyse how the collected personal data may end up commercialised even as the Scheme fails to deliver on its promised convenience.

January 29, 2022 · 7 min · Anushka Jain

We take action against Hack-for-Hire firm Belltrox #SaveOurPrivacy

Based on recent disclosures from Meta-Facebook, we have filed a criminal compliant against Delhi-based hack-for-hire firm Belltrox.

December 24, 2021 · 5 min · Anushka Jain

Dissent is democratic: Looking at the dissent notes in the report of the JPC #SaveOurPrivacy

In the final report of the Joint Parliamentary Committee on the Personal Data Protection Bill, 2019, 8 Members of Parliament have filed dissent notes against the final recommendations. In this post, we look at what the MPs are saying and explain the various amendments proposed by them.

December 23, 2021 · 8 min · Rohin Garg

Need for surveillance reform stronger than ever in light of the Draft Data Protection Bill, 2021 #SaveOurPrivacy

The Draft Data Protection Bill, 2021 is here but does it protect Indian citizens against over-broad government surveillance? The answer is a disappointing no.

December 21, 2021 · 10 min · Anushka Jain