Explained | Gaps in Aadhaar-enabled Payment System (AePS) abused by cybercriminals

Posted on:
Key Points

Pushpendra Singh, a popular YouTuber, in a Twitter thread, shared how his mothers bank account was drained using an Aadhaar-linked fingerprint without needing two-factor authentication..

In January this year, a similar incident was reported in Gurugram, Haryana, with complaint being lodged against unidentified suspects for allegedly misusing fingerprints to authenticate Aadhaar biometrics and withdrawing money from the victims bank account...

Aadhaar-enabled Payment Services (AePS) is a bank-led model which allows online financial transactions at Point-of-Sale (PoS) and Micro ATMs through the business correspondent of any bank using Aadhaar authentication..

The UIDAI is proposing an amendment to the Aadhaar (Sharing of Information) Regulations, 2016, which will require entities in possession of an Aadhaar number to not share details unless the Aadhaar numbers have been redacted or blacked out through appropriate means, both in print and electronic form...

If users have not already locked their Aadhaar biometric information, they should do so immediately in case of any suspicious activity in their bank accounts..