No bank has proper Information Security Guidelines

An RTI query filed by Nagpur based NGO Cyber Awareness Organization (CAO) recently revealed that none of the banks in the country had drafted information security guidelines which are mandatory as per RBI’s guideline on electronic banking. 

Speaking to the press during his visit to Nagpur recently, Naavi said “When RBI started allowing internet banking way back in 2001, it clearly laid the responsibility of data security and educating customers about the dos and don’ts on the banks. It was also advised that all banks offering the service take cyber crime insurance. None of that has happened even today”

Details here

Posted in Bank | Leave a comment

@PMOIndia twitter handle under dispute

It is reported that PMO under Dr Man Mohan Singh was using a twitter handle titled “@PMOIndia” which is sought to be frozen now as @PMOIndiaArchive and to be discontinued.

BJP has naturally raised a point that the handle should be passed on to the PMO under Mr Modi and cannot be treated as personal property of Dr Man Mohan Singh.

I am aghast at the ignorance of the officials who sought to appropriate the handle for the outgoing PM. It is clear that “PMOIndia” is an organizational name which cannot be used by you and me and can be used only by the official PMO of India. It would have naturally been maintained by officials who draw salary and remuneration from the Government of India. Obviously the handle “PMOIndia” is a digital property that belongs to the Government of India. Similarly all websites,Facebook Ids and email IDs in official names are properties of the Government of India and has to naturally pass onto the next Government.

The officials who thought that the handle can be retained by the erstwhile Government seem to be not aware of the concept of ‘Trade Mark” and deserve to be sent out of the responsible positions they are now in.

I am sure that the “Mauni Man Mohan” does not need a twitter handle and would be glad if it is taken over by Mr Modi’s PMO. Hope the officials will do the needful without further ado.

Naavi

Posted in Cyber Law | Leave a comment

Cyber Law Space to be active again?

During the last two years of UPA rule, the Ministry of Communications and Information Technology (MCIT) was conspicuous by its lack of productive activity. Mr Kapil Sibal who became the Minister in charge of the minister was involved more in the politicking around Baba Ramdev and other dirty tricks management to the extent that even critical aspects of Governance got neglected.

Naavi.org has been crying out about this lack of Governance particularly the fact that no appointment was made to the position of the Chair person of Cyber Appellate Tribunal (CAT). Though the Government had the time to appoint a member Cyber CAT who was a former judge of Madras High Court, he was never designated the “Chair person” and had to cool his heels without any activity for 9 months before retiring. It was amazing how Mr Kapil Sibal was unmindful of the insult he was heaping on Justice S.K.Krishnan who waited for his turn to bat while the ministry wanted to bring in a junior advocate as the Chairperson. Obviously the Chief Justice of India whose concurrence was required never agreed to this proposal and continued to ask for alternate names from the Ministry. True to the arrogant style of Governance pursued by UPA, the ministry preferred to keep the CAT closed rather than agree to suggest an alternate name. MR Sibal had time to appoint a “Head of Department of CAT” and also a “Technical Member for CAT” but had no time or desire  to appoint a Chairperson though without such a person the entire establishment remained defunct.

As a result, the Cyber Judiciary system in India came to a standstill in the country. Several cyber crime victims who were waiting for justice could not proceed with their cases and had to keep waiting for the Government to act. To compound the problem, Mr M.N.Vidyashankar, adjudicator of Karnataka delivered a bizarre judgement in favour of Axis Bank with an opinion that “No corporate entity can invoke Section 43 of the Information Technology Act 2008 nor any complaint can be launched on a corporate entity under the section by any other person”.  Even an appeal against such a blatantly wrong award got stuck in Mr Kapil Sibal’s desire to get his favoured person into the chair of the CAT.

Despite several attempts by the undersigned to take up the matter with Karnataka Human Rights Commission and Karnataka High Court, the matter remained unresolved since Karnataka High Court also failed to understand the impact and refused to take on the Central Government.

Now the hope is back. We hope that good days will be here again. We are waiting for the new Minister of MCIT from  the Modi Government to take charge when we will renew our efforts to open the eyes of the minister to this gross injustice that Cyber Crime victims are suffering since June 2011 because of UPA’s inaction.

Naavi.org has earlier provided several writeups on how CAT was left languishing and there is no need to repeat it here. Those who are interested may kindly go through the earlier articles.

Naavi

Posted in ITA 2008 | Leave a comment

Welcome NaMo

Today has been a historic day for India. Mr Narendra Modi lead BJP has been successful in getting absolute majority in the Loksabha on its own and the NDA is at a comfortable tally of around 333+.

In this scenario, we can look forward to a functional administration unlike the previous Government which was in a coma for the last several years. The undersigned has been running a battle with Mr Kapil Sibal lead MCIT during the last two years on behalf of Cyber Crime victims and has been frustrated by the complete lack of interest on the part of the Government. I now look forward to better things.

Yes, I expect that the Good days will be here.

We welcome Mr Narendra Modi and wish him all the best in the coming days  to take India ahead.

Naavi

Posted in Cyber Law | Leave a comment

Android Users face attack through Facebook

A malware called iBanking is said to be targetting Android users through Facebook. The malware is spread through the computer to the mobile and is capable of intercepting the two factor authentication of Banks. It can send false SMS, intercept incoming SMS and also record voice calls etc.

Details : http://www.securityweek.com/attackers-use-facebook-target-android-users

Naavi

 

Posted in Cyber Crime | Leave a comment

Heart bleed virus

Users of Internet are being warned about the “heart bleed virus” (Exploitation of an unpatched bug in the Open SSL algorithm) which has the capacity to steal the passwords from your Bank accounts as well as email accounts, Facebook etc.

This virus affects sites which use the open SSL communication with a “https” connection and exploits a vulnerability in the protocol.

More information about the virus and its impact can be found here: http://www.darpanmagazine.com/news/tech/what-is-heart-bleed-bug-and-how-to-dodge-it/

I would like readers to check this site for taking some precautions: http://www.techloon.com/7-things-you-should-do-to-stay-safe-from-heart-bleed-bug/

The seriousness of the issue can be gauged by the fact that the experts are suggesting keeping off internet until a solution is available.

You can check if the sites you frequently visit has the heart bleed vulnerability through this test site.

https://filippo.io/Heartbleed/

Mobile users on Android application can consider downloading this app for security scanning

: https://play.google.com/store/apps/details?id=com.lookout.heartbleeddetector

Naavi

Posted in Cyber Crime | 2 Comments