RBI

Bank ATM Credit Debit Card Data Security Breach-Hacking. RBI urges card holding bank customers to change the PIN and passwords periodically

Bank ATM Credit Debit Card Data Security Breach-Hacking. RBI urges card holding bank customers to change the PIN and passwords periodically.

Reserve Bank of India

Date : Oct 24, 2016

ATM/Debit Card Data Breach

The Reserve Bank of India convened a meeting today with senior officials from select banks, National Payment Corporation of India and card network operators to review the steps taken by various agencies to contain the adverse fall out of certain card details alleged to have been compromised.

It has come to the Reserve Bank’s notice on September 8, 2016 that details of certain cards issued by a few banks had been possibly compromised at ATMs linked to the ATM Switch of one of the service providers. The issue is currently being investigated by an approved forensic auditor, under PCI-DSS framework.

The number of cards misused, as per currently available information, is few. As a matter of abundant precaution, card network operators concerned were earlier advised to share the details of cards used during the period of such exposure. Based on this, banks have been taking necessary remedial action to avoid any potential abuse of such cards in future by unscrupulous elements and to protect the interest of their customers. Banks have taken measures including advising the customers to change PIN, blocking payments at international locations, reducing the withdrawal limits, monitoring unusual patterns, replacing the cards and  re-crediting the accounts of cardholders for amounts wrongly debited.

The Reserve Bank urges the cardholding bank customers that it is a good practice to change the PIN and passwords periodically and not to share them with anyone for any reason. Banks do not ask for card or account details from their customers, hence, customers may exercise caution and not reveal such information to any person on phone or email.

The Reserve Bank of India has already issued instructions to banks vide Circular dated June 2, 2016 on Cyber Security Framework in Banks. Banks have once again been advised to review the extant cyber security arrangements. RBI has emphasized an early implementation of this framework so that (i) possibility of such incidents happening in future is minimised and (ii) in the event of such incidents, containment measures are taken immediately.

Alpana Killawala
Principal Adviser

Press Release : 2016-2017/1014

Share

Recent Posts

  • ICAI

Empanelment of ICAI Exam observer for January 2027 Examinations. Last date: 20.11.2026

Empanelment to act as ICAI exam observers for January 2027 CA Examination. Last date to apply is 20.11.2026 Empanelment of…

6 hours ago
  • GST

No arrest under GST- Major decision of 57th Meeting of GST Council held on 8th October 2026

No arrest under GST- Major decision taken in 57th Meeting of the GST Council on 8th October 2026 PRESS RELEASE…

2 days ago
  • Income Tax

Later SC ruling cannot render an act done in compliance of a court order a statutory default

A subsequent Apex Court ruling on the substantive issue cannot retrospectively make an act done in compliance of a binding…

2 days ago
  • Income Tax

Interest payment on mobilisation advance to NHAI not liable to TDS u/s 194A

Interest payment on mobilisation advance to NHAI not liable for deduction of tax at source u/s 194A - ITAT Interest…

3 days ago
  • Income Tax

Typographical error in turnover accepted during assessment not a mistake apparent from record

Typographical error in turnover declared in ITR was not as a mistake apparent from the record u/s 154 when AO…

5 days ago
  • Income Tax

Plea that assessee was not aware of order cannot be brushed aside in absence of proof of service

Ground taken by assessee that he was not aware of the order cannot be brushed aside so lightly in absence…

5 days ago