No security breach in Aarogya Setu app: Govt assures after ethical hacker raises privacy concerns


PTI, May 6, 2020, 10:50 AM IST

New Delhi: The government on Wednesday, May 6 said no data or security breach has been identified in Aarogya Setu after an ethical hacker raised concerns about a potential security issue in the app.

The app is the government’s mobile application for contact tracing and disseminating medical advisories to users in order to contain the spread of COVID-19.

On Tuesday, a French hacker and cybersecurity expert Elliot Alderson had claimed that “a security issue has been found” in the app and that “privacy of 90 million Indians is at stake”.

Dismissing the claims, the government said “no personal information of any user has been proven to be at risk by this ethical hacker”.

“We are continuously testing and upgrading our systems. Team Aarogya Setu assures everyone that no data or security breach has been identified,” the government said through the app’s Twitter handle.

The tweet gave point-by-point clarification on the red flags raised by the hacker.

“We discussed with the hacker and were made aware of the following. the app fetches user location on a few occasions,” it said but added that this was by design and is clearly detailed in the privacy policy.

“The app fetches users’ location and stores on the server in a secure, encrypted, anonymized manner – at the time of registration, at the time of self-assessment, when users submit their contact tracing data voluntary through the app or when it fetches the contact tracing data of users after they have turned COVID-19 positive,” it said.

On another issue that users can get COVID-19 stats displayed on the home screen by changing the radius and latitude-longitude using a script, Aarogya Setu said that all this information is already public for all locations and hence does not compromise on any personal or sensitive data.

“We thank the ethical hacker on engaging with us. We encourage any users who identify any vulnerability to inform us immediately…,” it said.

Responding to Aarogya Setu’s clarification, Alderson tweeted, “I will come back to you tomorrow”.

Udayavani is now on Telegram. Click here to join our channel and stay updated with the latest news.

Top News

IPL 2024: Jacks, Kohli power RCB to easy win over GT

18-ft-tall Kali idol carved out of single marble stone to be sent from Jaipur to Kerala temple

Chikkamagaluru: At least 30 injured after tourist mini bus overturns near Datta Peetha

Those who turned down Ram temple invitation will be rejected by voters: PM Modi

Have only resigned as Delhi Congress chief, not joining any political party: Arvinder Singh Lovely

BJP’s Manifesto promises developed India, Congress’s Manifesto fosters division: Rajnath Singh

Congress urges ECI to probe ‘terrible mismanagement’ of Lok Sabha polls in Kerala

Related Articles More

Reservation row: Congress campaign ‘biggest lie’ of the decade, says Kishan Reddy

BJP trying religious polarisation in Nagaon: Congress candidate Pradyut Bordoloi

3 arrested for ATM manipulation in Delhi

Heroin worth Rs 600 crore seized from Pakistani boat off Gujarat coast; 14 held

Congress accuses Modi Government of undermining reservations through privatization

MUST WATCH

Skin Rash, Causes, Signs and Symptoms

11 bullets found in python’s body!

K. Jayaprakash Hegde Sharing His Memories

Grafting Jack Anil

Heat Illness


Latest Additions

Some countries, institutions want weak govt to make easy profits: PM Modi

People can talk anything they want to, I know my game better: Virat Kohli on his strike rate

Sexual harassment, stalking case registered against ex-minister H D Revanna and his son Prajwal

Reservation row: Congress campaign ‘biggest lie’ of the decade, says Kishan Reddy

BJP trying religious polarisation in Nagaon: Congress candidate Pradyut Bordoloi

Thanks for visiting Udayavani

You seem to have an Ad Blocker on.
To continue reading, please turn it off or whitelist Udayavani.