The arrested suspects, during preliminary questioning, made startling revelations, claiming to have not only orchestrated the ICMR data leak but also to have successfully stolen data from the Federal Bureau of Investigation (FBI) and Pakistan’s Computerised National Identity Card (CNIC), which bears a striking resemblance to India’s Aadhaar system.
Delhi Police has made four arrests in connection with the massive data leak involving personal details of more than 81 crore Indians from the Indian Council of Medical Research (ICMR), which was being sold on the dark web. The suspects, including a B.Tech graduate and two school dropouts, reportedly admitted to also pilfering data from the Federal Bureau of Investigation (FBI) and Pakistan’s Computerised National Identity Card (CNIC), comparable to India’s Aadhaar. The breach came to light in October, prompting authorities to investigate how the data was stolen. The arrested individuals claimed to have met on a gaming platform and joined forces to exploit lucrative opportunities.
The investigation is ongoing, with central agencies examining the intricacies of the data theft. The breach was initially identified by American cybersecurity agency Resecurity, emphasising the sensitivity of the matter. Union Minister of State for Electronics and IT, Rajeev Chandrasekhar, acknowledged the evidence of a leak and ongoing investigations, clarifying that the data was not stolen. Delhi Police has taken significant strides in the investigation surrounding the alarming data leak involving personal details of more than 81 crore Indians from the Indian Council of Medical Research (ICMR), which had found its way onto the dark web for sale. In a noteworthy development, four individuals, including a B.Tech graduate and two school dropouts, have been apprehended in connection with the breach. This comes as a major breakthrough in understanding the scope and nature of data theft.
The arrested suspects, during preliminary questioning, made startling revelations, claiming to have not only orchestrated the ICMR data leak but also to have successfully stolen data from the Federal Bureau of Investigation (FBI) and Pakistan’s Computerised National Identity Card (CNIC), which bears a striking resemblance to India’s Aadhaar system. The audaciousness of their activities raises concerns about the security of sensitive information on a global scale.
The data breach, which came to light in October, triggered a swift response from intelligence agencies. The arrested individuals, said to have initially connected on a gaming platform three years ago, confessed to exploiting the situation to amass quick monetary gains. The magnitude of the breach and the collaboration of individuals from different states underscore the challenges posed by cyber threats in today’s interconnected world.
Authorities are meticulously examining the modus operandi employed by the culprits to steal such vast amounts of sensitive information. The breach’s severity prompted central agencies to intervene promptly, leading to the arrests and subsequent investigations.
The American cybersecurity agency Resecurity, which first identified the breach, highlighted the validity and sensitivity of the leaked data. The agency noted that millions of personally identifiable information records, including Aadhaar cards, belonging to Indian residents were being offered for sale on the Dark Web.
Union Minister of State for Electronics and IT, Rajeev Chandrasekhar, acknowledged the evidence of the data leak and confirmed ongoing investigations. He clarified that the data was not stolen but leaked, emphasising the relevance of various departments’ Covid-related information.
As the investigation unfolds, the need for robust cybersecurity measures becomes increasingly evident. The arrested individuals’ ability to infiltrate not only a crucial Indian medical research database but also sensitive international agencies underscores the urgency for a comprehensive approach to cybersecurity. It serves as a stark reminder of the ever-evolving landscape of cyber threats and the imperative for proactive measures to safeguard individuals’ sensitive information but leaked. The information primarily pertained to Covid-related data held by various departments.

