Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- This Is A Small Research Write-Up About, How a Aadhar card Information Can Be Hacked And Used For Illegal Activities Or Make it More Scary Like You Can Be A Murderer Or Even A Terrorist.
- -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
- Let Me Explain How Aadhar Authentication Works.
- =====================================================
- When A Aadhar User Do a Verification Or A Tranaction They Provide Their Finger Print And Aadhar No. To A Public Host Machine And A Public Bio metric Reader For Authentication Purposes.
- The Host Machine Takes Aadhar No. and That Fingerprint Photograph Captured By Optical Bio metric Sensor. Then The Whole Data is Converted Into A Template, Which Is Then Converted To PID BLOCK Or Personal ID Block.
- Note:I Will Provide A Link Down About What Is PID Block.
- So, After The Whole Process The PID Block is Sent To UIDAI Gateway Server's For Authentication.
- Then, The UIDAI Servers responds Either A Successful Or A Failed Authentication.
- THIS IS THE WHOLE PROCESS TO Authenticate A AADHAR CARD.
- ==================================================================================
- Now let Me Explain About Its Vulnerability and How It Can Be Hacked.
- ----------------------------------------------------------------------------
- ========================================================================================================
- GOOGLE DORK: aadhaar name filetype:xls (PUBLIC AADHAR CARD INFORMATION AVAILABLE THROUGH A GOOGLE SEARCH)
- ========================================================================================================
- So, lets Start With First Step, Host Machine Takes Fingerprint Aadhar No. OK.! POC: First Thing, The Host Machine Can Store The User Adhar No. And Bio metrics, Which Can Then Be Used Without Individual's Consent.
- In Second Step, POC: The PID Block Is Not Encrypted And So It Is Vulnerable To Interception By Hackers Or Criminals While Data Transmission.
- In Last Process, POC: The Host Computer Is Connected To Public Internet Servers (ISP) And Hence Is Vulnerable To Viruses And Malware That Can Also Steal The PID BLOCK.
- -----------------------------------------------------------------------------------------------------------------------------------------------------------------------
- How My Data Is Used For Illegal Activities.
- ---------------------------------------------
- ONES YOUR INFORMATION AND BIO METRIC ARE STOLEN THEY CAN BE USED AGAINST YOU. BIO METRICS CAN BE USED TO MAKE A 3D PRINTED FINGERPRINT CLONE THAT CAN BE PLANTED IN A CRIME SCENE.
- THIS INFORMATION CAN ALSO BE USED IN BOMB BLAST TO IDENTIFY SPECIFIC PERSON. HAVING THIS INFORMATION IS WRONG HANDS CAN SAVE A CRIMAL AND RUIN YOUR LIFE.
- IS THAT SCARY ENOUGH.? IT CAN BE MORE WROST THAT THIS,
- ==========================================================================================================================================================================================================
- Sources: https://authportal.uidai.gov.in/web/uidai/developer -- https://authportal.uidai.gov.in/static/aadhaar_authentication_api_1_6.pdf
- ==========================================================================================================================================================
- Credit: Scientist Pandit (Team Losers) Help Me.! I Need Someone To Prove Me Wrong In This Write-Up. :)
- Facebook page:https://www.facebook.com/officialvikashpandey/
- Instagram:@vikashpandey_official
Add Comment
Please, Sign In to add comment