IRCTC pauses insurers' services

​​​The vulnerability was discovered by researchers Avinash Jain and Aseem Shrey. According to Jain, the vulnerability called IDOR (insecure direct object reference) allowed anyone to extract passenger information for insurance payout.

Mumbai|New Delhi: Indian Railway Catering and Tourism Corporation (IRCTC) has temporarily taken down the services of Bajaj Allianz and Liberty General Insurance from its platform after a vulnerability on the insurers' websites put personal data of passengers at risk.

The vulnerability was discovered by researchers Avinash Jain and Aseem Shrey. According to Jain, the vulnerability called IDOR (insecure direct object reference) allowed anyone to extract passenger information for insurance payout.

READ MORE
ADVERTISEMENT

READ MORE:

LOGIN & CLAIM

50 TIMESPOINTS

More from our Partners

Loading next story
Business News › Industry › Transportation › Railways › IRCTC pauses insurers' services
Text Size:AAA
Success
This article has been saved

*

+