A French researcher has claimed that he Discovered That a security lapse that Supposedly exposed Countless Aadhaar numbers of dealers and Vendors associated with Indane, an LPG brand owned by the Indian Oil Corporation (IOC).
Baptiste Robert, that goes by the online handle Elliot Alderson and contains exposed Aadhaar escapes in the past, composed in a blog article on Moderate late Monday the Aadhaar data of almost 6.7 million dealers and distributors of Indane, available only with a valid username and password, has been left exposed.
“Due to a lack of authentication in the regional traders portal, Indane is leaking the names, addresses along with the Aadhaar numbers of the clients,” said Alderson.
Employing a custom-built script to scratch the database, Alderson discovered customer data for nearly 11,000 traders, including addresses and names of customers, before his IP was blocked by Indane.
“I composed the python script. By running this script, it gives us 11062 valid dealer ids. After more than 1 day, my script tested 9,490 dealers and found a total of 5,826,116 Indane clients are affected by this escape,” he wrote.
The French researchers discovered 5.8 million Indane customer records before his script was blocked.
“Regrettably, Indane likely blocked my IP, so I didn’t test the rest 1,572 dealers. By doing some basic math we could estimate the last number of affected clients around 6,791,200,” Alderson added.