FB pixel

Gemalto publicly apologizes for alleging massive Aadhaar data breach in report

 

Gemalto has retracted the claim in its Breach Level Index (BLI) that roughly 1.2 billion Aadhaar records have been compromised so far in 2018, and published an apology to the “People of India” in a leading newspaper, Moneylife reports.

Earlier this month Gemalto published the Breach Level Index, showing less frequent but larger breaches compared to last year. It originally showed Aadhaar among the top sources of data breaches globally, but was revised within days and the paid apology was issued this weekend signed by CEO Philippe Vallee.

“Gemalto wants to make it clear that this error has been corrected in the revised report,” Vallee writes. “All concerned parties should take note that we have not been able to find any verified or substantiated data breach of Aadhaar data. As a result, Gemalto has withdrawn the data breach claim from the Breach Level Index Report.”

Vallee also notes that the methodology of the report is being revisited to apply more stringent criteria and validation.

Indian publication ThePrint reports that following the initial publication of the BLI, the Unique Identification Authority of India (UIDAI) issued a circular calling for the Aadhaar system to suspend the use of the company’s products on grounds of the discovery of security issues.

Gemalto provides digital tokenisation, 10-digit fingerprint scanners and iris scanners to the Aadhaar program, as well as Hardware Security Modules (HSMs) used to store private cryptographic keys used to digitally sign and authenticate Unique Identification Numbers (UIDs).

In a statement issued between the revision of the report and the public apology and quoted by The Indian Express, the company noted that the mistaken information came from an “unverified news article.”

Indian media has reported numerous Aadhaar breaches, many of which have been denied by the UIDAI, with disputed details and degrees of impact.

Article Topics

 |   |   |   | 

Latest Biometrics News

 

Sri Lanka sets Q4 target for SL-UDI rollout

Sri Lanka is preparing to issue its first production digital identities next quarter, beginning a phased rollout of the country’s…

 

Madagascar strengthens trust architecture for national digital ID

Madagascar is strengthening the legal, institutional and technical foundations of its national digital identity program, introducing new cybercrime legislation as…

 

Cybastion backs Cameroon digital sovereignty with $75M infrastructure project

Cybastion has committed $75 million to fund the construction of digital infrastructure in Cameroon, including a data center and an…

 

Co-Develop, Caribou outline governance blueprint for DPI adoption

Digital public infrastructure (DPI) programs have grown to include more than 100 countries globally. Recognizing this expansion, Co-Develop and Caribou…

 

Socure brings Aeropay into RiskOS to connect identity verification with bank payments

Socure is extending its RiskOS platform further into payments through an integration with Aeropay that combines identity verification, bank account…

 

trinamiX accuses Apple of infringing Face ID skin-detection patents

Germany-based BASF subsidiary trinamiX has sued Apple in U.S. federal court, alleging that Face ID technology in newer iPhones and…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Market Intelligence

Featured Company

Biometric Update Podcast

Most Read This Week

White Papers

Latest Webinars

Biometrics Industry Events