WhatsApp Pay may put Indian digital banking at risk: Experts

Agencies
November 8, 2019

After WhatsApp accounts of 121 Indians were compromised by the Israeli spyware Pegasus, experts have warned that the payment feature the Facebook-owned platform is planning to launch in India may put the digital banking system at risk.

"WhatsApp payment needs to be seen with microscopic eye, primarily because in payment you will be dealing with sensitive personal data and cyber security is going to be an essential building block component for WhatsApp to demonstrate its due diligence," Pavan Duggal, one of the nation's top cyber law experts, told IANS.

The Ministry of Electronics and Information Technology (Meity) has already expressed dissatisfaction over the manner WhatsApp communicated about the compromised accounts.

The piece of NSO Group software called Pegasus allegedly exploited WhatsApp's video calling system by installing the spyware via missed calls to snoop on 1,400 users globally. The devices were compromised with just a WhatsApp video call.

In May, WhatsApp, which has 400 million users in India, urged its 1.5 billion global users to upgrade the app after discovering the vulnerability.

"WhatsApp's recent operations have shown that it's difficult for the government to get information from it. WhatsApp is an intermediary under the Information Technology Act and is mandated to exercise due diligence under the law. But it has failed to do due diligence," Duggal said.

"You should not be in a hurry to grant new licences or permission to WhatsApp without being satisfied with its adherence to cyber-security norms, international best practices and Indian laws," he said.

The Facebook-owned company is learnt to have countered the government charge that it didn't inform it about a privacy breach on the messaging platform. WhatsApp didn't even comply with the data breach notification law in India, Duggal said.

"It (WhatsApp) didn't follow reasonable security practices as mandated in Section 43A of the IT Act, 2000. In fact, it abetted the crime of un-authorised access too. Granting WhatsApp pay licence should be given a second thought by the Reserve Bank of India," said Prashant Mali, cyber lawyer at Bombay High Court.

In light of the recent hack, the government, the RBI and the National Payments Corporation of India (NPCI) is reportedly evaluating the risk of allowing social media apps into the digital payment ecosystem.

"With the government, the RBI and the NPCI planning to evaluate the risks involved in making payments via social media apps and services, the security of the UPI payment infrastructure on WhatsApp Pay has been rendered under a cloud of vulnerability," said Salman Waris, Managing Partner at TechLegis Advocates & Solicitors, a law firm.

The RBI revealed in an affidavit in the Supreme Court earlier that WhatsApp had not complied with the data localisation norms. In an April 2018 circular, the RBI stated that the data of any payment banking system have to physically located in India.

"The history of WhatsApp has shown that it's not cooperative with the government in sharing of information. If financial information is compromised, it will not only have an impact on users, but it can also have an impact on the sovereignty and security of India," Duggal said.

The government must go slow till the time WhatsApp demonstrates compliance to Indian law and showed that the platform was secure, he said.

"Because almost every phone user in India is on WhatsApp, it's all the more important for the government and the RBI to ensure that WhatsApp not only complies with the parametres of cyber security and data localisation norms, but also the IT Act and the rules and regulations thereunder.

"If WhatsApp doesn't comply with the data localisation norms, rules and regulations of the IT Act, then there is no question of granting new permission," Duggal said.

In a statement, a WhatsApp spokesperson said that safety and security of users remains the platform's highest priority.

"In May, our security team caught and stopped a cyber attack designed to send malware to mobile devices. Unable to break end-to-end encryption, this kind of malware abuses vulnerabilities within the underlying operating systems that power our mobile phones," the WhatsApp spokesperson said.

"Technology companies are constantly working to stay ahead of these kind of challenges through updates and patches. The safety and security of our users remains our highest priority, which is why in May we blocked the attack and have taken action in the courts to hold NSO accountable," the statement added.

Facebook filed a lawsuit against Israel's NSO Group last month. According to Facebook, the NSO Group violated laws, including the US Computer Fraud and Abuse Act.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
March 6,2020

New Delhi, Mar 6: As panicky depositors rushed to withdraw money from Yes Bank whose control was seized by the RBI in a dramatic late-night move, Finance Minister Nirmala Sitharaman on Friday assured depositors that their money is safe and said the central bank was working for an early resolution of the crisis.

The Reserve Bank of India (RBI) on Thursday evening capped withdrawals at Rs 50,000 for the next one month and imposed strict limits on operations at the country's fourth-largest private lender that faced "regular outflow of liquidity" after an effort to raise new capital failed.

"I am in continuous interaction with the RBI. The RBI is fully seized of the matter and has assured they will give a quick resolution," Sitharaman said here.

She said no depositor will lose his or her money and insisted that the immediate priority is to ensure Yes Bank customers are able to withdraw money within the stipulated cap.

"I want to assure every depositor that their money shall be safe. Their monies are safe," she said. "I am constantly in contact with the RBI and the steps that are taken are taken in the interest of depositors, banks and economy. We are fully seized of the development."

She was talking to reporters after meeting State Bank of India (SBI) Chairman Rajnish Kumar. On Thursday, the SBI board gave its "in-principle" approval to exploring investment opportunities in Yes Bank.

"So I repeat, the depositors can be assured that their money is safe," she said.

Soon after the RBI takeover, depositors thronged Yes Bank ATMs to withdraw money and police had to be deployed in some places to control the crowds.

Yes Bank has 1,000 branches across the country.

Refusing to elaborate on her meeting with the SBI chairman, the minister said that "was on a completely different matter".

"RBI governor has given me assurance that there will be an appropriate resolution soon. No depositor will lose (money)," she said. "Reserve Bank has taken cognizance of the problem."

The central bank, she said, has gone through the "process over and over again to find out an amicable solution".

"And that has been over the last couple of months. So it is not as if they have come in suddenly now. We have been monitoring the situation," she said adding the RBI has appointed an administrator who previously was with the SBI.

"Both the RBI and the government are looking at this with all the details before them, not just today. I have personally monitored the situation over the last couple of months with the RBI. Therefore we have taken a course which will be in everybody's interest," she added.

Yes Bank had been seeking new capital since last year to bolster its ratios and quell questions about its stability due to its exposure to the non-banking finance industry entangled in a prolonged crunch in the local credit market.

The SBI chairman said the resolution to the Yes Bank crisis will come "very shortly".

"This is not a sectoral problem. It is a bank-specific problem," he said. "The RBI will take all steps to ensure financial stability."

On SBI picking up a stake in Yes Bank, he said the lender already has an in-principle approval for doing so.

"If SBI has to pick up a stake in Yes Bank, we have an in-principle approval for that," he said.

Commenting on the crisis at Yes Bank, Alka Anbarasu, Vice President – Senior Credit Officer, Financial Institutions, Moody's Investors Service, said: "RBI's moratorium on Yes Bank is credit negative as it affects timely repayment of bank depositors and creditors."

"While Moody's expects Indian authorities will take steps to prevent the weakness in the bank's viability from significantly impacting its depositors and senior creditors, the lack of a coordinated and timely action highlights continued uncertainty around bank resolutions in India," she said.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
January 11,2020

New Delhi, Jan 11: Islamic preacher Zakir Naik has revealed that the Bharatiya Janata Party-led government offered to drop false money-laundering charges against him and provide with a "safe passage to India" in return for his support to the government's move to revoke Article 370 of the Constitution.

In a statement issued by Naik's PR team on Saturday, the Islamic preacher said that he was approached by a representative of the Indian government in September, who offered him the said deal on Kashmir, which he refused.

"Three and a half months before, the Indian officials approached me for a private meeting with a representative of the Indian government. When he came to Putrajaya (a Malaysian city), in the fourth week of September 2019, to meet me, he said that he is coming after personally meeting and under the direct instructions of the Prime Minister of India Narendra Modi and the Home Minister of India Amit Shah," Naik said in a video statement released by his Mumbai-based PR team.

Naik, who has been living in Malaysia for the last three years, is facing charges of inciting communal disharmony and committing unlawful activities in India.

"(The representative) said that he wanted to remove the misconceptions and miscommunications between myself (Naik) and the Indian government, and wants to provide me a safe passage to India," he added. "He (the representative) said that he would like to use my connections to better the relationship between India and the other Muslim countries."

"The meeting lasted for several hours. He told me that he wanted me to support the BJP government when they revoked Article 370 in Kashmir. And I flatly refused," he added.

Naik said that after he refused the offer, he was further asked to not make public statements against the BJP or Prime Minister Narendra Modi.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
February 18,2020

New Delhi, Feb 18: Election strategist-turned-politician Prashant Kishor on Tuesday questioned the Nitish Kumar government's development model, even as he sneered at the chief minister for making ideological compromises to stay in an alliance with the BJP.

Kishor, who has been vocal about his opposition to the Citizenship (Amendment) Act (CAA), said Kumar needs to spell out whether he is with the ideals of Mahatma Gandhi or those who support Nathu Ram Godse.

"Nitish ji has always said that he cannot leave the ideals of Gandhi, JP and Lohiya... At the same time, how can he be with the people who support the ideology of Godse? Both cannot go together. If you want to stay with the BJP, I don't have any problem with it but you cannot be on both sides," he said.

"There has been a lot of discussion between me and Nitish-ji on this. He has his thought process and I have mine. There have been differences between him and me that the ideologies of Godse and Gandhi cannot stand together. As the leader of the party you have to say which side you are on," he added.

In a direct assault on Kumar's model of governance, Kishor said Bihar was the poorest state in 2005 and continues to be so.

"There has been development in Bihar during the last 15 years, but the pace has not been as it should have," he added.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.