WhatsApp Pay may put Indian digital banking at risk: Experts

Agencies
November 8, 2019

After WhatsApp accounts of 121 Indians were compromised by the Israeli spyware Pegasus, experts have warned that the payment feature the Facebook-owned platform is planning to launch in India may put the digital banking system at risk.

"WhatsApp payment needs to be seen with microscopic eye, primarily because in payment you will be dealing with sensitive personal data and cyber security is going to be an essential building block component for WhatsApp to demonstrate its due diligence," Pavan Duggal, one of the nation's top cyber law experts, told IANS.

The Ministry of Electronics and Information Technology (Meity) has already expressed dissatisfaction over the manner WhatsApp communicated about the compromised accounts.

The piece of NSO Group software called Pegasus allegedly exploited WhatsApp's video calling system by installing the spyware via missed calls to snoop on 1,400 users globally. The devices were compromised with just a WhatsApp video call.

In May, WhatsApp, which has 400 million users in India, urged its 1.5 billion global users to upgrade the app after discovering the vulnerability.

"WhatsApp's recent operations have shown that it's difficult for the government to get information from it. WhatsApp is an intermediary under the Information Technology Act and is mandated to exercise due diligence under the law. But it has failed to do due diligence," Duggal said.

"You should not be in a hurry to grant new licences or permission to WhatsApp without being satisfied with its adherence to cyber-security norms, international best practices and Indian laws," he said.

The Facebook-owned company is learnt to have countered the government charge that it didn't inform it about a privacy breach on the messaging platform. WhatsApp didn't even comply with the data breach notification law in India, Duggal said.

"It (WhatsApp) didn't follow reasonable security practices as mandated in Section 43A of the IT Act, 2000. In fact, it abetted the crime of un-authorised access too. Granting WhatsApp pay licence should be given a second thought by the Reserve Bank of India," said Prashant Mali, cyber lawyer at Bombay High Court.

In light of the recent hack, the government, the RBI and the National Payments Corporation of India (NPCI) is reportedly evaluating the risk of allowing social media apps into the digital payment ecosystem.

"With the government, the RBI and the NPCI planning to evaluate the risks involved in making payments via social media apps and services, the security of the UPI payment infrastructure on WhatsApp Pay has been rendered under a cloud of vulnerability," said Salman Waris, Managing Partner at TechLegis Advocates & Solicitors, a law firm.

The RBI revealed in an affidavit in the Supreme Court earlier that WhatsApp had not complied with the data localisation norms. In an April 2018 circular, the RBI stated that the data of any payment banking system have to physically located in India.

"The history of WhatsApp has shown that it's not cooperative with the government in sharing of information. If financial information is compromised, it will not only have an impact on users, but it can also have an impact on the sovereignty and security of India," Duggal said.

The government must go slow till the time WhatsApp demonstrates compliance to Indian law and showed that the platform was secure, he said.

"Because almost every phone user in India is on WhatsApp, it's all the more important for the government and the RBI to ensure that WhatsApp not only complies with the parametres of cyber security and data localisation norms, but also the IT Act and the rules and regulations thereunder.

"If WhatsApp doesn't comply with the data localisation norms, rules and regulations of the IT Act, then there is no question of granting new permission," Duggal said.

In a statement, a WhatsApp spokesperson said that safety and security of users remains the platform's highest priority.

"In May, our security team caught and stopped a cyber attack designed to send malware to mobile devices. Unable to break end-to-end encryption, this kind of malware abuses vulnerabilities within the underlying operating systems that power our mobile phones," the WhatsApp spokesperson said.

"Technology companies are constantly working to stay ahead of these kind of challenges through updates and patches. The safety and security of our users remains our highest priority, which is why in May we blocked the attack and have taken action in the courts to hold NSO accountable," the statement added.

Facebook filed a lawsuit against Israel's NSO Group last month. According to Facebook, the NSO Group violated laws, including the US Computer Fraud and Abuse Act.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 13,2024

buldozerjustice.jpg

New Delhi: The Supreme Court took a firm stance on ‘bulldozer justice’ today, affirming that the Executive cannot bypass the Judiciary and that the legal process must not prejudge the guilt of an accused. In a significant judgment, the bench led by Justices BR Gavai and KV Viswanathan set new guidelines for demolition practices, responding to petitions challenging the controversial bulldozer actions taken against individuals accused of crimes.

The rise of this practice, termed 'bulldozer justice,' has seen authorities in various states demolish what they claim to be illegal structures belonging to accused individuals. However, multiple petitions questioned the legality and fairness of this approach, bringing the matter before the court.

Justice Gavai highlighted that owning a home is a cherished goal for many families, and an essential question was whether the Executive should have the authority to strip individuals of their shelter. “In a democracy, the rule of law protects citizens from arbitrary actions by the state. The criminal justice system must not assume guilt,” stated the bench, underscoring that due process is a fundamental right under the Constitution.

On the principle of separation of powers, the bench reinforced that the Judiciary alone holds adjudicatory powers and that the Executive cannot overstep these boundaries. Justice Gavai remarked, “When the state demolishes a home purely because its resident is accused of a crime, it violates the doctrine of separation of powers.”

The court issued a strong warning about accountability, stating that public officials who misuse their power or act arbitrarily must face consequences. Justice Gavai observed that selectively demolishing one property while ignoring similar cases suggests that the aim might be to penalize rather than enforce legality. “For most citizens, a house is the product of years of labor and dreams. Taking it away must be an action of last resort, thoroughly justified,” he said.

In its directives under Article 142 of the Constitution, the Supreme Court established new demolition guidelines. These include:

Mandatory Show-Cause Notice: No demolition should occur without first issuing a show-cause notice. The person served has a minimum of 15 days or the duration stated in local laws to respond.

Transparency of Notice Content: The notice must include specifics about the alleged unauthorized construction, the nature of the violation, and the rationale for demolition.

Hearing and Final Order: Authorities are required to hear the response of the affected individual before issuing a final order. The homeowner will have 15 days to address the issue, with demolition proceeding only if no stay order is obtained from an appellate authority.

Contempt Proceedings: Any breach of these guidelines would lead to contempt proceedings. Officials who disregard these norms will be personally accountable for restitution, with costs deducted from their salaries.

Additionally, the court mandated that all municipal bodies establish digital portals within three months, displaying show-cause notices and final orders on unauthorized structures to ensure public transparency and accountability.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 18,2024

Advisors to US President-elect Donald Trump have instructed his allies and associates to refrain from using the inflammatory language they previously employed when discussing issues related to migrants and the deportation of asylum seekers, in a bid to avoid “looking like Nazis.”

US media reports said that Trump’s associates had been asked to stop using the word “camps” to describe potential facilities that would be used to accommodate migrants rounded up in deportation operations across the country.

The reports said the US president-elect’s allies had been ordered to stave off such charged terms as they would bring to mind “Nazis,” and be used against Trump.

“I have received some guidance to avoid terms, like ‘camps,’ that can be twisted and used against the president, yes,” one Trump ally told American monthly magazine Rolling Stone.

“Apparently, some people think it makes us look like Nazis.”

The presidential advisers also cautioned surrogates and allies to keep racist terms, which have dogged Trump’s campaign, out of their remarks.

They said with Trump’s heated rhetoric that used to compare undocumented immigrants to “animals” and his slight that they are “poisoning the blood of our country,” detractors did not need to reach too far to find parallels to Nazi Germany.

Stephen Miller, who Trump tapped to be his deputy chief of staff of policy, specifically used the word “camps” to describe holding facilities that he hoped the military could put together for immigrants.

Tom Homan, who served as the acting director of Immigration and Customs Enforcement and is chosen by Trump to be in charge of the US borders, was no stranger to such language.

“It’s not gonna be a mass sweep of neighborhoods,” he said in an interview earlier this week. “It’s not gonna be building concentration camps. I’ve read it all. It’s ridiculous.”

Becoming a little more forthright about the new government’s aggressive deportation plans, Homan likened the early days of the Trump administration to the initial invasion of Iraq in 2003.

“I got three words for them – shock and awe,” he said. “You’re going to see us take this country back.”

Trump made immigration a central element of his 2024 presidential campaign but unlike his first run, which was mainly focused on building a border wall, he has shifted his attention to interior enforcement and the removal of undocumented immigrants already in the United States.

People close to the US president and his aides are laying the groundwork for expanding detention facilities to fulfill his mass deportation campaign promise.

The businessman-turned-politician deported more than 1.5 million people during his first term.

The figure do not include the millions of people turned away at the border under a Covid-era policy enacted by Trump and used during most of Biden’s term.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 23,2024

congkarnataka_0.jpg

Bengaluru: In a boost to the ruling Congress in Karnataka, the party on Saturday swept the by-polls to three Assembly segments, causing a major setback to the BJP-JD(S) alliance in the state.

The Congress has retained Sandur, the seat considered to be its strong hold, and has also bagged Shiggaon and Channapatna segments, which were earlier held by BJP and JD(S) respectively.

The November 13 by-polls to Sandur, Shiggaon and Channapatna Assembly segments had witnessed a fierce fight between the ruling Congress and a combative BJP-JD(S) alliance.

The by-polls to Sandur, Shiggaon and Channapatna were necessitated as the seats fell vacant following the election of their respective representatives -- E Tukaram of Congress, former CM Basavaraj Bommai of BJP, and Union Minister Kumaraswamy of JD(S) to Lok Sabha in May elections.

The by-polls witnessed a straight fight between the ruling Congress and BJP in Sandur and Shiggaon segments, while in Channapatna, JD(S) which is part of the NDA alliance took on the grand old party.

Congress' C P Yogeeshwara won the Channapatna segment, defeating JD(S) candidate and Kumaraswamy's son Nikhil Kumaraswamy, by a margin of 25,413 votes.

Former CM Basavaraj Bommai's son Bharath Bommai of BJP faced defeat against Congress' Yasir Ahmed Khan Pathan in Shiggaon Assembly segment by a margin of 13,448 votes.

In Sandur, Congress candidate E Annapoorna, the wife of Bellary MP E Tukaram, won the seat vacated by her husband, by a margin of 9,649 votes.

Congress' win in the by-poll is seen as an endorsement of both Chief Minister Siddaramaiah and his deputy D K Shivakumar's leadership, and the government's programmes, especially the five guarantee schemes.

Nikhil Kumaraswamy and Bharath Bommai, the third generation of Gowda and Bommai family respectively, who contested this bypolls, have lost. Their fathers and grandfathers had served as Karnataka's Chief Ministers in the past.

While for Bharath Bommai this was his electoral debut, for Nikhil it was his third electoral loss.

Among the three segments, Channapatna was considered to be a high profile battle, where the contest was between C P Yogeeshwara and actor-turned-politician Nikhil Kumaraswamy.

A five-time MLA from the segment and a former Minister, Yogeeshwara had joined the Congress after quitting BJP ahead of nomination.

There were plans to field Yogeeshwara on a JD(S) ticket, but he was not interested in it, and instead wanted Kumaraswamy to support him as BJP candidate. This was not acceptable to Kumaraswamy and his party, following which Yogeeshwara jumped ship.

However, Kumaraswamy had subsequently said he had agreed to Yogeeshwara contesting from BJP, and despite that he jumped ship to Congress, under the influence of Deputy Chief Minister D K Shivakumar and his brother and former MP D K Suresh.

Nikhil had faced defeat in 2019 Lok Sabha and 2023 Assembly polls. It is seen as a setback for Kumaraswamy too, as he could not ensure son's win from the Channapatna, the seat he had twice represented in the past.

Congress' win is crucial for Shivakumar, who is also the state Congress chief and his brother Suresh to strengthen their position in their home district of Ramanagara, a Vokkaliga heartland.

In Shiggaon, BJP's Bharath Bommai, son of Basavaraj Bommai lost against Congress' Yasir Ahmed Khan Pathan, who had faced defeat against the former Chief Minister in the 2023 Assembly polls.

Initially, former MLA Syed Azeempeer Khadri, a Congress' ticket aspirant, had raised a banner of revolt in Shiggaon, by filing his nomination as an independent, but later withdrew after intervention by party leadership.

In Sandur, Bellary MP Tukaram's wife E Annapurna of Congress won from the seat vacated by her husband, against BJP ST Morcha president Bangaru Hanumanthu, who is considered close to party leader and former mining barron G Janardhan Reddy.

Sandur is a Congress' bastion, and Tukaram had represented it four times.

Congress winning the by-polls is seen as "crucial" for Chief Minister Siddaramaiah to assert himself , amid demands for his resignation following charges against him in the MUDA site allotment case.

There were also behind-the-scenes political activities within the ruling Congress earlier this year, with a few ministers in his Cabinet holding closed door meetings, fueling speculation about leadership change. But such activities came to a halt following instructions from the party high command.

It is equally important for Shivakumar, who has not shied away from openly expressing his Chief Ministerial ambitions, amid speculations over "rotational Chief Minister formula," according to which he will become CM after two-and-half years (in this govt's five years tenure), but they have not been officially confirmed by the party.

The defeat in this by-poll is seen as a setback for state BJP President Vijayendra, who has been facing intense criticism and opposition from a section within the party, who have raised a banner of revolt against his leadership accusing him and his father, veteran leader B S Yediyurappa of "adjustment politics".

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.