RBI

RBI warns banks on vulnerability of ATMs running on windows XP or unsupported version of operating system

RBI warns banks on vulnerability of ATMs running on windows XP or unsupported version of operating system and non-implementation of other security measures

Control measures for ATMs – Timeline for compliance

RBI has expressed concerns over the ATMs running on Windows XP and/or other unsupported operating systems.

In a recent communication made to all Scheduled Commercial Banks, Small Finance Banks and Payment Banks and  white-Label ATM Operators, the RBI has expressed displeasure over slow progress on the part of the banks in addressing these issues.

RBI has frawn attention to the vulnerability arising from the ATMs operating on unsupported version of operating system and non-implementation of other security measures which could potentially affect the interests of the banks’ customers adversely, apart from impinging on the image of the bank.

Banks and White-Label ATM Operators have been advised to initiate immediate action in this regard and implement the following control measures as per the prescribed timelines indicated there against:

Sr. No. Control Measures for the ATMs To be completed by
a. Implement security measures such as BIOS password, disabling USB ports, disabling auto-run facility, applying the latest patches of operating system and other softwares, terminal security solution, time-based admin access, etc. August 2018
b. Implement anti-skimming and whitelisting solution. March 2019
c. Upgrade all the ATMs with supported versions of operating system. Such upgrades shall be carried out in a phased manner to ensure that in respect of the existing ATMs running on unsupported versions of operating system,  
i. Not less than 25% of them shall be upgraded by September 2018
ii. Not less than 50% of them shall be upgraded by December 2018
iii. Not less than 75% of them shall be upgraded by March 2019
iv. All of them shall be upgraded by June 2019

Share

Recent Posts

  • Bank

State Bank of India elects four Directors in its Central Board

State Bank of India in its General Meeting of the Shareholders elected four Directors to the Central Board. The meeting…

20 hours ago
  • Income Tax

Declaration of additional income by increasing the WIP was not proper – ITAT

Voluntary declaration of additional income by increasing WIP was not proper, as assessee will take the additional benefit in the…

2 days ago
  • Income Tax

Cash payment for purchase of land or property not violation of 269SS or 269T

Cash payment for purchase of land or property cannot be treated as violation of provisions of section 269SS or 269T…

3 days ago
  • Income Tax

Excel Utility for ITR-1 and ITR-4 available for e-filing for AY 2026-27

Income Tax Department has released excel Utility for e-filing ITR-1 and ITR-4 for AY 2026-27 Excel utilities of ITR-1 and…

4 days ago
  • Insurance

Mediclaim amount not deductible from MACT award under medical expenses – SC

Amount of money received as Mediclaim not deductible from an award passed by MACT under the head of medical expenses.…

5 days ago
  • Income Tax

ITAT jurisdiction is decided by location of AO passing the impugned order

Location of the assessing officer who passed the order shall decide the jurisdiction of the Bench of the Tribunal In…

5 days ago