• हिन्दी
  • ગુજરાતી
  • বাংলা
  • తెలుగు
  • मराठी
  • ಕನ್ನಡ
  • money9
  • Insurance
  • Saving
  • Mutual Funds
  • Mirae Asset MF
  • Breaking Briefs
downloadDownload The App
Close
  • Home
  • Videos
  • Podcast
  • Banking
  • Bulletin
  • Gold
  • Healthcare
  • Real Estate
  • Tax
  • Travel
  • Survey 2023
  • Survey Report
  • Breaking Briefs
  • Insurance
  • Savings
  • Loan
  • Crypto
  • Investment
  • Mutual Funds
  • Real Estate
  • Tax
  • Exclusive
  • Home / Investment

Financial data of over 4 cr investors exposed twice within 10 days: Report

Vulnerability at CDSL Ventures led to the data breach

  • Money9
  • Last Updated : November 8, 2021, 14:59 IST
  • Follow
CVL is a subsidiary of leading Demat services provider Central Depository Services (India) Limited (CDSL).
  • Follow

A vulnerability at CDSL Ventures (CVL) exposed personal and financial data of over 4 crore investors twice within 10 days, the Business Standard has reported.

The exposed data includes the name of investors, their phone numbers, email address, PAN, date of birth, and other crucial information from a part of the data which has been exposed.

CVL is a subsidiary of leading Demat services provider Central Depository Services (India) Limited (CDSL).

CVL took immediate action to address the vulnerability, CDSL has said.

The report, quoting cyber security consultancy startup CyberX9 founder and managing director Himanshu Pathak, said CERT-In and NCIIPC have accepted its vulnerability report for CDSL.

CyberX9 said it reported the vulnerability on October 19 to CDSL and it was fixed in around 7 days though it could have been resolved immediately.

A few days later on October 29, the CyberX9 team found an “easy and complete bypass” for the fix that CDSL implemented to address the vulnerability. It was not a complex issue when the vulnerability was detected for the second time.

CyberX9 in a blog said that it is strongly suspected that the data might have already been stolen by attackers. A security audit of CDSL is required now , it said.

“Armed with such access to CDSL KYC data, phishers and scammers would have an endless supply of compelling scamming templates for calls and emails to use. A database like this would also give fraudsters a constant feed of new investors getting KYC to target them,” CyberX9 said.

The theft of personal and financial data can lead to financial fraud and identity theft.

Published: November 8, 2021, 14:59 IST

Download Money9 App for the latest updates on Personal Finance.

  • Central Depository Services (India) Limited
  • CVL
  • Demat services

Related

  • पहली छमाही में रियल एस्टेट में संस्थागत निवेश 37% घटकर तीन अरब डॉलर रहने का अनुमान
  • Budget’24: New LTCG rule to hit long-term property owners hard
  • Looking to buy gold? Buy now before it’s too late!
  • Budget 2024: What is NPS ‘Vatsalya’ scheme? How to apply & other benefits?
  • Budget’ 24: Startup ecosystem all smiles with scrapping of angel tax
  • Budget’24: New NPS scheme for minors launched, here’s how you can benefit

Latest

  • 1. Know the correct way to get KYC done!
  • 2. Why health insurance claim gets rejected?
  • 3. Power to Respond!
  • 4. What is Asset Under Management?
  • 5. No Worries on Medical Expenses!
  • Trending Stories

  • DGCA प्रमुख ने सुचारू उड़ान संचालन सुनिश्चित करने के लिए पायलटों से मांगा सहयोग
  • रेपो दर में कटौती से घर के लिए कर्ज होगा सस्ता, मांग बढ़ेगी: रियल एस्टेट
  • मीशो के 5,421 करोड़ रुपये के आईपीओ को दूसरे दिन मिला 7.97 गुना अभिदान
  • इंडिगो को अगले साल 10 फरवरी तक उड़ान संचालन पूरी तरह बहाल होने की उम्मीद
  • Indigo की 200 से ज्यादा फ्लाइट रद्द, हजारों पैसेंजर फंसे
  • TV9 Sites

  • TV9 Hindi
  • TV9Telugu.com
  • TV9 Marathi
  • TV9 Gujarati
  • TV9 Kannada
  • TV9 Bangla
  • TV9 English
  • News9 Live
  • Trends9
  • Tv9tamilnews
  • Assamtv9
  • Malayalamtv9
  • Money9 Sites

  • Money9 Hindi
  • Money9 English
  • Money9 Marathi
  • Money9 Telugu
  • Money9 Gujarati
  • Money9 Kannada
  • Money9 Bangla
  • Money9live
  • Topics

  • Insurance
  • Savings
  • Loan
  • Stocks
  • Mutual Funds
  • Real Estate
  • Tax
  • Crypto
  • Exclusive
  • Follow us

  • FaceBook
  • Twitter
  • Youtube
  • Instagram
  • Linkedin
  • Download App

  • play_store
  • App_store
  • Contact Us
  • About Us
  • Advertise With Us
  • Privacy & Cookies Notice
  • Complaint Redressal
  • Copyright © 2025 Money9. All rights reserved.
  • share
  • Facebook
  • Twitter
  • Whatsapp
  • LinkedIn
  • Telegram
close