Latest news with #ETCISO


Time of India
01-07-2025
- Business
- Time of India
Sebi Cybersecurity Framework: Sebi Grants Additional Two-Month Extension for Cybersecurity Compliance, ET CISO
Markets regulator Sebi on Monday extended the deadline by two months till August for regulated entities to adopt and implement the cybersecurity and cyber resilience framework. The framework is designed to ensure that Sebi-regulated entities (REs) maintain a robust cybersecurity posture, remain equipped with adequate cyber resiliency measures and can withstand, respond to, and recover from cyber threats, effectively. The move came after Sebi received multiple requests for extension of timelines to ensure ease of compliance for them. "Therefore, it has been decided to extend the compliance timelines by two months, i.e., till August 31, 2025 to all REs, except Market Infrastructure Institutions (MIIs), KYC Registration Agencies (KRAs), and Qualified Registrars to an Issue and Share Transfer Agents (QRTAs)," Sebi said in a circular. Advt This marks the second extension granted by the the need for robust cybersecurity measures and protection of data and IT infrastructure, Sebi issued the Cybersecurity and Cyber Resilience Framework (CSCRF) for its regulated entities in August receiving various queries from REs seeking clarification on the framework, the Securities and Exchange Board of India (Sebi) issued a clarification in CSCRF is a significant step in adapting towards evolving cyber risks and technological regulator emphasised that the framework aims to enhance the resilience of regulated entities, enabling them to withstand and recover from cyber incidents regulator said the stock exchanges and depositories have been directed to inform their members and participants of the updated compliance deadline and disseminate the circular on their respective websites. Join the community of 2M+ industry professionals. Subscribe to Newsletter to get latest insights & analysis in your inbox. All about ETCISO industry right on your smartphone! Download the ETCISO App and get the Realtime updates and Save your favourite articles.


Time of India
03-05-2025
- Business
- Time of India
Over 290,000 citizens at risk: CloudSEK uncovers major data breach at BWSSB, ET CISO
CloudSEK, a leading AI-driven cybersecurity firm, has revealed a critical breach in the infrastructure of the Bangalore Water Supply and Sewerage Board (BWSSB). The breach has left sensitive personal data of over 290,000 Bangalore residents vulnerable, after direct root access to BWSSB's database was found being sold by a cybercriminal for just $500 on underground forums. The discovery raises serious concerns about the security of public utilities and the potential for widespread misuse of citizens' personal information. CloudSEK's Investigation: A Timeline of Neglect Advt The Data at Stake: 291,212 user records , including: Full Name Phone Number Complete Address Aadhaar Number Email ID Other sensitive application details , including: Potential Consequences: Targeted phishing attacks on citizens using their verified personal data. on citizens using their verified personal data. Disruption of essential services , as attackers could manipulate BWSSB's operational databases. , as attackers could manipulate BWSSB's operational databases. Erosion of public trust in digital services offered by civic bodies. A Human Cost Behind the Data Advt Who is Behind the Breach? CloudSEK's Recommendations for Immediate Action: Full Security Audit: BWSSB must assess all systems for vulnerabilities and potential backdoors. Credential Rotation: Every exposed or potentially compromised credential must be revoked and replaced immediately. Lock Down Admin Interfaces: Public access to tools like Adminer should be disabled or heavily restricted. Why This Matters – A Call to Action for Public Sector Cybersecurity By , ETCISO Join the community of 2M+ industry professionals Subscribe to our newsletter to get latest insights & analysis. Download ETCISO App Get Realtime updates Save your favourite articles Scan to download App