NEW DELHI: India’s biometric ID programme, Aadhaar, has been hit by another major security lapse, allowing access to private information, business technology news website ZDNet reported on Saturday.

A data leak on a system run by a state-owned utility company can allow access to private information of Aadhaar holders, exposing their names, their unique 12-digit identity numbers, and their bank details, ZDNet said.

Even though the security lapse had been flagged to some government agencies over a period of time, it has yet to be fixed. ZDNet said it was withholding the name of the utility and other details.

Karan Saini, a New Delhi-based security researcher, said that anyone with an Aadhaar number was affected.

“This is a security lapse. You don’t have to be a consumer to access these deta­ils. You just need the Uni­f­o­rm Resource Locator where the Application Program­ming Interface is located. These can be found in less than 20 minutes,” Saini said.

Vikas Shukla, spokesman for the Unique Identification Authority of India (UIDAI), which runs the Aadhaar programme, said the agency would issue a statement later on Saturday.

Aadhaar, a biometric identification card with over 1.1 billion users, is the world’s biggest database.

But it has been facing increased scrutiny over privacy concerns following several instances of breaches and misuse.

Last Thursday, the CEO of the UIDAI said the biometric data attached to each Aadhaar was safe from hacking as the storage facility was not connected to the internet.

“Each Aadhaar biometric is encrypted by a 2048-key combination and to decode it, the best and fastest computer of our era will take the age of the universe just to hack into one card’s biometric details,” Ajay Bhushan Pandey said.

Published in Dawn, March 25th, 2018

Opinion

Respite needed

Respite needed

All one can fear is a familiar accounting exercise that aims to extract a few more rupees from a narrow, weary economic base.

Editorial

Soft on traders
08 Jun, 2026

Soft on traders

THE Fixed Tax Asaan Scheme for traders with an annual turnover of up to Rs200m has been designed as a ‘pragmatic...
Ceasefire in name
Updated 08 Jun, 2026

Ceasefire in name

Both sides accuse the other of violating the truce that was supposed to halt the conflict in April, yet neither appears willing to abandon negotiations altogether.
Damaged childhoods
08 Jun, 2026

Damaged childhoods

CHILD abuse is so prevalent that the UN ranked Pakistan as the least safe country for children. Even so, more than...
JAAC ban
Updated 07 Jun, 2026

JAAC ban

Though the JAAC’s demands are open to scrutiny, banning any political organisation — as long as it remains committed to peaceful activism — is undemocratic.
GB election
Updated 07 Jun, 2026

GB election

It is important that whichever party ultimately forms the government puts the needs of the people of GB above everything else.
ODI win
07 Jun, 2026

ODI win

AT last, the Pakistan cricket team had something to celebrate: a One-day International series victory against...