NEWS / GENERAL

HDFC bank hacked, bank claims vulnerabilities fixed

06 Sep, 2011, 5:53 pm IST | by Anuradha Shetty | General

One of India’s premier banking institutions, i.e. HDFC bank reportedly suffered a hack affecting its customer database system. Citing a threat of a critical level was discovered on the 15th July, 2011 by team zSecure. News of the vulnerability was immediately notified to the bank by the zSecure team through an email. A vulnerability called 'Hidden SQL Injection Vulnerability' had apparently gripped HDFC bank's customer database. According to the blog post by zSecure, the vulnerability allowed the hackers to have total control of the information they wished to access. Hackers could create a dump and easily carry out shell uploading, too. 

The affected database (Image credit: zSecure)

The affected database (Image credit: zSecure)

 

 

The post further revealed that the mail notifying the bank of the critical vulnerabilities was replied to, a good 22 days later. Furthermore, the reply mail stated that they (HDFC bank) had looked into the vulnerability and had fixed it, which later was proved to be a false claim. A reply to the second mail read, "We have remediated all the vulnerability reported on our website. Also we have got the application vulnerability assessment performed through one of our third party service provider and they confirmed that there are no more SQL Injection vulnerability."

 

The zSecure post ended with an optimistic - ".....finally the vulnerable file was removed from HDFC’s web-server.

Tags: Housing Development Finance Corporation Limited , HDFC Bank , HDFC , zSecure , banks , hack , vulnerabilities , security , SQL injection , customer database system

RELATED STORIES

Vodafone, HDFC bring 'm-paisa' to Rajasthan

Vodafone, HDFC bring 'm-paisa' to Rajasthan

In an attempt to make the most basic of banking transactions accessible to millions of those across India, popular mobile ...

Star Announces Mobile Platform - Plus

BillDesk To Boost Mobile Billing In India

Update: TimesofMoney and HDFC Bank Vulnerable to Hack Attack

Symantec Announces Two Security Solutions

 

OPINIONS

Padmini Harchandrai

The latest "should they-shouldn't they" event with Facebook is the lift of the minimu...

MORE OPINIONS

Leaked Images, Availability, Pricing,
Specs, Pre-order

features

Top 5 potential Gmail alternatives

Top 5 potential Gmail alternatives

Google’s Gmail service is arguably the most advanced and feature-packed...

By Naina Khedekar

The Future of Broadband - views from industry leaders

The Future of Broadband - views from industry leaders

One of the other events that took place at the same venue as the recent...

By Rossi Fernandes

Tech2 goes around the World IT Show 2012, Seoul

Tech2 goes around the World IT Show 2012, Seoul

Tech2 was part of an entourage that was invited for the Korea IT Show and...

By Rossi Fernandes

MORE FEATURES

Beetel GD 777 touchscreen mobile phone for Rs.5,499

Vaibhav Dewada

Sun May 27, 18:01:15

Samsung launches ES8000 Smart TV series in India

Anand Jomde

Sun May 27, 17:54:30

PS Vita officially launched in India

Asif Qadri

Sun May 27, 12:27:05

MORE DISCUSSIONS