RBI

Bank ATM Credit Debit Card Data Security Breach-Hacking. RBI urges card holding bank customers to change the PIN and passwords periodically

Bank ATM Credit Debit Card Data Security Breach-Hacking. RBI urges card holding bank customers to change the PIN and passwords periodically.

Reserve Bank of India

Date : Oct 24, 2016

ATM/Debit Card Data Breach

The Reserve Bank of India convened a meeting today with senior officials from select banks, National Payment Corporation of India and card network operators to review the steps taken by various agencies to contain the adverse fall out of certain card details alleged to have been compromised.

It has come to the Reserve Bank’s notice on September 8, 2016 that details of certain cards issued by a few banks had been possibly compromised at ATMs linked to the ATM Switch of one of the service providers. The issue is currently being investigated by an approved forensic auditor, under PCI-DSS framework.

The number of cards misused, as per currently available information, is few. As a matter of abundant precaution, card network operators concerned were earlier advised to share the details of cards used during the period of such exposure. Based on this, banks have been taking necessary remedial action to avoid any potential abuse of such cards in future by unscrupulous elements and to protect the interest of their customers. Banks have taken measures including advising the customers to change PIN, blocking payments at international locations, reducing the withdrawal limits, monitoring unusual patterns, replacing the cards and  re-crediting the accounts of cardholders for amounts wrongly debited.

The Reserve Bank urges the cardholding bank customers that it is a good practice to change the PIN and passwords periodically and not to share them with anyone for any reason. Banks do not ask for card or account details from their customers, hence, customers may exercise caution and not reveal such information to any person on phone or email.

The Reserve Bank of India has already issued instructions to banks vide Circular dated June 2, 2016 on Cyber Security Framework in Banks. Banks have once again been advised to review the extant cyber security arrangements. RBI has emphasized an early implementation of this framework so that (i) possibility of such incidents happening in future is minimised and (ii) in the event of such incidents, containment measures are taken immediately.

Alpana Killawala
Principal Adviser

Press Release : 2016-2017/1014

Share

Recent Posts

  • Income Tax

Form 26 to replace Form 3CD of tax audit report by a CA from Tax Year 2026-27

Form 26 to replace Form 3CD of tax audit report from Tax Year 2026-27 Draft Form 26 has been issued…

17 hours ago
  • Income Tax

When no addition is made on the basis of reasons recorded, reopening is bad in law

When AO do not make any addition on the basis of the reasons on which the reopening was done, the…

18 hours ago
  • Insurance

No separate compensation for loss of love and affection under MV Act – SC

Under MV Act separate compensation can not be granted under the head “loss of love and affection” – Supreme Court…

2 days ago
  • Income Tax

Trust accredited by National Open School eligible for registration u/s 12AB & u/s 80G

Trust accredited by National Institute of Open Schooling eligible for registration u/s.12AB and u/s 80G of the Act. In a…

2 days ago
  • Income Tax

Delay in furnishing Form 10B – Covid Period to be excluded as per decision of Supreme Court

Delay in furnishing Form 10B – Period between 15.03.2020 till 20.08.2022 to be excluded as per decision of Hon'ble Supreme…

4 days ago
  • Income Tax

Section 271AAB does not grant any immunity from penalty in terms of section 273B

Section 271AAB does not grant any immunity from penalty even if the assessee was able to show some reasonable cause…

4 days ago