A: While people were able to query anyone they knew and get details, It is unclear how much data has leaked.
I tried searching for #JusticeForSrimathi in the database and a record exists. Vaccination for minors started in Jan 2022
We crossed billion jabs by late 2021 and this means at the very least billion records were exposed. #CoWINDataLeak is thus largest data leak in Indian history - surpassing #AadhaarLeaks which were at ~ 200 million
As with anything enabled by #Aadhaar - fraud in #CoWIN vaccination is also widespread - While a lot of people complained, sufficient reportage around misuse of SIM / Aadhaar in vaccination and how unknown person's vaccination certificate were SMS'd to people. We now have evidence
I used #UID of Hanuman and Pakistani Spy Mehaboob - both of which are disabled after 2016 reportage. The results are interesting. scroll.in/article/820536…
Mehaboob - Pakistani spy - whose UID was deactivated in 2016 got 5 (or more) vaccinations.
Hanuman too got 5 (or more) vaccinations.
What this exposes - is how much of the 2 billion doses were fraudulent. The vaccine manufacturers were paid for these #CoWIN is multi Crore #SCAM
Given that a large number of people's date of birth is now exposed - financial regulators like @RBI, @SEBI_India@irdaindia must issue guidelines to banks, mutual funds - to avoid any sensitive operation using date of birth to prevent fraudsters exploiting common man.
There were warnings in 2021 - it was vehimently denied - The current #CoWINDataLeak contains data until atleast early 2022.
While its important to seek accountabiliy - we must understand this is largest #DigitalPublicInfrastructure disaster. All those evangalising #DPI - never wrote about disaster response.
Keep a close tab on ALL your bank accounts / insurance policies - now date of birth is public.
Password reset for any of these is one step faster for fraudster now that your date of birth is available. Never share an OTP always - but for every account you have - try password reset flow to ensure it can't be taken over.
the ‘digital-first’ vaccination drive essentially enabled centralized data collection by the government fully ignoring privacy concerns which other countries gave due importance to, providing paper based vaccination certificates.
Reminder that - @internetfreedom@no2uid and several others made a joint call - advocating data-light vaccination - which the government did not listen to.
Usually, hackers reveal a slice of data publicly via a bot or web page to prove to the world they have said data and then sell it on the dark web. While the bot is down now, we don't know where all the data is being traded. wired.com/story/a-massiv…#DPIDisaster#CoWINDataLeak
They self-contradict in their statement. Ether they do not have access/data OR have scraped data.
Whoever in government is saying only year of birth was collected is lying. - The following are pieces of data a vaccinator feeds into CoWIN during vaccination - even if you didn't book online appointment. diffchecker.com/qecNUrYL/
There is a lot of confusion on this #UPI charges and its being made to spread multiple 'fake news' in a area where there is clarity. This directly stems from fact - who is allowed to price on what?
NPCI will charges #MDR for transactions above ₹2000 - when the payment mode by user is a wallet.
Note - this is not the same as using PhonePe / GPay.
It is applicable only when you use Wallet - PhonePe / PayTM are popular wallets still exist.
It is not applicable when you use UPI via banks.
2. Who is making this announcement?
NPCI.
3. Can NPCI make this announcement?
All Payment operators are at liberty to price payment products - except ATM interchange - which @RBI actively regulates.
#UPI#AppUpdate PhonePe UPI, Payment, Recharge play.google.com/store/apps/det… Get. Set. Gold! <br><br>You can now accumulate Gold at regular intervals by setting up a Gold SIP on PhonePe! <br><br> P.S: Without worry about market risks and fluc...
#UPI#AppUpdate Truecaller: Caller ID & Block play.google.com/store/apps/det… We keep updating our App to make it better. <br>This version brings:<br>- Our redesigned profile will show you the number of spam calls, messages and unknown numbers ...
Vaccination data is shared equally between UNDP, BMGF, eGov - That all 3 is funded by @BillGates is connecting thread. #CoWIN#VaccinationCertificate#HealthData loot. -- Also #Modi photo to appease the political head of state to keep the loot silent.
🧵on #UPI frauds. Like all millennials who keep a tab on parents devices occasionally and find strange things on phone, @amabirdman raised an SOS after seeing strange UPI related SMS and was wondering if they were victim of some fraud.
While most of us check for 'auto-installed' apps on mobile, another important thing to check - esp with #UPI fraud is - "Sent SMS". Now android doesn't have recieved / sent SMS seperately, but do stroll messages for any number being sent a message
What ever that number - take that and search on Twitter. For example - if the number is 9717465555 - then search - twitter.com/search?q=97174…
You will see a lot of people having complained about auto-consented SMS sent to HDFC.
After 6 years and billions of transaction, @NPCI_NPCI talks about 'consent' while collecting geo-coords for every #UPI txn & gives 6 more months time to make such data collection a choice based consent.
Is there a #GPS coord in India - where @NPCI_NPCI doesn't have txn data
In the light of recent #CrPC91 request - it is valuable to revisit the privacy guarentees in the payment systems and #PaymentsPrivacy is key to having civil liberties and is no longer a niche digital rights problem.