India Looks To Open-Source Aarogya Setu App As Security Concerns Spike

India Looks To Open-Source Aarogya Setu App As Security Concerns Spike

SUMMARY

Niti Aayog’s official said the government is close in making Aarogya Setu open source

Aarogya Setu was launched by the government to trace Covid-19 spread

However, the application has attracted a lot of security concerns

The government is looking to make Aarogya Setu application open-source as unease over data surveillance grows over microblogging platform Twitter.

Many users on Twitter have demanded the government to make Aarogya Setu open-source so that they can get to know the purpose of the application while ethical hackers can help the government to make it more secure.

In response, Niti Aayog’s programme director Arnab Kumar has now said that the apex body is committed to open-sourcing Aarogya Setu. Kumar, who was involved in the development of the application, also said that the app was developed in two weeks and was audited by IIT-Madras and one of the largest tech audit firms.

He also revealed that the government is not far away from making Aarogya Setu open-source. “However, a final decision is yet to be taken,” Kumar was quoted as saying by Financial Express.

Developed by the National Informatics Centre with the help of a few startups like 1mg and MakeMyTrip, Aarogya Setu was launched by the government to trace the spread of Covid-19. However, the application has raised serious privacy issues, not only from citizens but also from ethical hackers.

One such hacker Robert Baptiste, who goes by the name Elliot Alderson on Twitter, on two occasions found out two different securities issues on Aarogya Setu. He is also supporting the ‘#opensourceaarogyasetu’ campaign on Twitter.

In a tweet, Baptiste said that the UK government has already made its tracing application open-source and now it’s the time for the Indian government to make Aarogya Setu open-source.

Earlier, two days after the app was launched, the ethical hacker had highlighted that it was possible to open any internal file of the app with one command. He claimed that the government had “silently” fixed the issue later.

Meanwhile, Baptiste, earlier this week, raised another security flaw. Baptiste said that he was able to find out the Covid-19 status of a given area by exploiting a flaw which allows users to set a location within the application.

In response to this, Aarogya Setu team said, “Getting the data from multiple locations like Baptiste demonstrated is no different than asking several people of their locations Covid-19 statistics. All this information is already public for all locations and hence does not compromise on any personal sensitive data.”

In a blog titled ‘Aarogya Setu: The story of a failure’, he said that inside the Indian Parliament, an individual had updated their status to infected while two people said they were feeling unwell. He also found that two people had selected the unwell option inside the Indian Army headquarters in New Delhi.

You have reached your limit of free stories
This Diwali, Get Up To 74% Off On Inc42 Plus

Become A Startup Insider With Inc42 Plus

Inc42 Plus Diwali Offer Ends In
countdownmail.com
2 YEAR PLAN
₹19999
₹6499
₹270/Month
UNLOCK 68% OFF
Cancel Anytime
1 YEAR PLAN
₹9999
₹3499
₹291/Month
UNLOCK 65% OFF
Cancel Anytime
Already A Member?
Discover Startups & Business Models

Unleash your potential by exploring unlimited articles, trackers, and playbooks. Identify the hottest startup deals, supercharge your innovation projects, and stay updated with expert curation.

India Looks To Open-Source Aarogya Setu App As Security Concerns Spike-Inc42 Media
How-To’s on Starting & Scaling Up

Empower yourself with comprehensive playbooks, expert analysis, and invaluable insights. Learn to validate ideas, acquire customers, secure funding, and navigate the journey to startup success.

India Looks To Open-Source Aarogya Setu App As Security Concerns Spike-Inc42 Media
Identify Trends & New Markets

Access 75+ in-depth reports on frontier industries. Gain exclusive market intelligence, understand market landscapes, and decode emerging trends to make informed decisions.

India Looks To Open-Source Aarogya Setu App As Security Concerns Spike-Inc42 Media
Track & Decode the Investment Landscape

Stay ahead with startup and funding trackers. Analyse investment strategies, profile successful investors, and keep track of upcoming funds, accelerators, and more.

India Looks To Open-Source Aarogya Setu App As Security Concerns Spike-Inc42 Media
India Looks To Open-Source Aarogya Setu App As Security Concerns Spike-Inc42 Media
You’re in Good company