惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

B
Blog RSS Feed
B
Blog
N
Netflix TechBlog - Medium
量子位
月光博客
月光博客
博客园_首页
博客园 - Franky
酷 壳 – CoolShell
酷 壳 – CoolShell
Last Week in AI
Last Week in AI
T
The Blog of Author Tim Ferriss
Hugging Face - Blog
Hugging Face - Blog
雷峰网
雷峰网
M
MIT News - Artificial intelligence
J
Java Code Geeks
大猫的无限游戏
大猫的无限游戏
D
DataBreaches.Net
腾讯CDC
Engineering at Meta
Engineering at Meta
云风的 BLOG
云风的 BLOG
L
LangChain Blog
GbyAI
GbyAI
IT之家
IT之家
Y
Y Combinator Blog
人人都是产品经理
人人都是产品经理

Education news India, Government education schemes, Department of education | The HinduBusinessLine

Karnataka gets 1,122 additional medical seats with Rs 1,090 crore support CBSE makes three-language study compulsory for Classes 9 and 10, exempts third language from Board exams CBI arrests NTA biology expert in NEET-UG 2026 paper leak investigation NEET paper leak case: Pune professor held as alleged kingpin by CBI Schaeffler India opens new facility at IISC deepening industry and science ties NEET-UG re-exam on June 21; computer-based test from next year, says Dharmendra Pradhan NEET-UG re-exam to be held on June 21 Scaler bets on AI-led upskilling for 25% online growth amid edtech slowdown CBSE results: Over 85% students clear class 12 board exams; pass percentage dips Kejriwal calls on Gen Z to demand accountability on NEET paper leak Medical association moves Supreme Court, seeks overhaul of NEET-UG exam system over 'paper leak' Nalanda Police bust NEET solver gang, MBBS student among arrested Plan for PMIS: Final year diploma students to be eligible Cos can go to campus to pick up interns NEET-UG 2026 cancelled after paper leak allegations, CBI probe ordered Teacher training in AI will be primary focus in next 3-4 months: Official Chhattisgarh’s Rungta University gets NAAC accreditation NCERT to launch postgraduate, doctoral programmes in education soon Tamil Nadu Class 12 results 2026: State records 95.03% pass percentage Maritime India Foundation formalises agreements with IITs and IMU 18% GST on coaching services upheld by Gujarat AAR, no exemption for institutes NEET 2026: Over 1 lakh students appear for exam across Tamil Nadu Tamil Nadu CM Stalin launches help desk to guide class 12 students to higher studies AIU centenary conference in Pune focuses on self-reliant Bharat through education Edtech pivots to AI-first learning, compresses coding modules Medical college SMSIMSR receives NABH entry-level accreditation MAHE, TENVIC launch academic programmes to strengthen sports ecosystem Ramaiah Group to invest ₹850 crore in setting up interdisciplinary STEM institute SASTRA signs MoU with Tata Advanced Systems Symbiosis launches Asia’s first UNESCO chair on gender inclusion in skills UPES Dehradun to focus on tech-driven learning for Kerala students
Ethical hacker, CBSE lock horns over board exam portal vu...
By S Ronendra Singh · 2026-05-27 · via Education news India, Government education schemes, Department of education | The HinduBusinessLine
CBSE said “no security breaches have come to light on the portal deployed for the actual evaluation work”

CBSE said “no security breaches have come to light on the portal deployed for the actual evaluation work” | Photo Credit: MURALI KUMAR K

Ethical hacker Nisarga Adhikary on Tuesday disputed the Central Board of Secondary Education (CBSE)’s clarification that no production data had been compromised in its On-Screen Marking (OSM) system, asserting that he had accessed non-test user data and had visual proof, including screen recordings, to back his allegations. Adhikary had earlier given visual proof of having exposed the vulnerabilities in the CBSE’s OSM system for Class 12 board examination.

The CBSE maintained that the portal referenced in Adhikary’s social media posts was not the one used for actual evaluation work. In a statement posted on X, the Board said the URL which Adhikary said he had hacked into, http://cbse.onmarks.co.in, was “a testing site only with sample data for internal testing and review purposes”, and did not contain “actual evaluation data, marks or other data”.

“At the outset, it is clarified that the portal used for evaluation of answer-books bore a different URL, which has neither been compromised nor does it have the vulnerabilities indicated in the said social media post,” said the Board.

CBSE added that “no security breaches have come to light on the portal deployed for the actual evaluation work”, and said the OSM system had been introduced to improve transparency in assessments while incorporating strong safeguards and grievance redressal mechanisms.

Questioning CBSE’s clarification that the accessed portal was merely a testing site with sample data, Adhikary said: “Then how was I able to access production data on that site? All of the mirrors you had under the onmark domain had the same vulnerabilities.”

He also shared screenshots on X countering the Board’s claims, and alleged that the vulnerabilities extended beyond the removal of a so-called master password. He further asserted that the domain cited by CBSE in its clarification was “not even a real domain”.

In an interview with businessline, Adhikary said he had documented the entire process and reported the issue to the Indian Computer Emergency Response Team (CERT-In). “I recorded the entire process and flagged it to CERT-In. Their response was an automated ‘Thank you for reporting’. A few days later, I reported five additional vulnerabilities. In response, they took the portal down for two or three days, removed the Master Password, and called it a day. But the remaining flaws were just as severe, and they left them completely untouched,” he alleged.

Meanwhile, highly placed sources in the Ministry of Electronics and Information Technology (MeitY) told businessline that the government was supporting CBSE in addressing the matter. “CBSE is working on this and we are giving whatever support they need. CBSE is working with all its vendors on this. CERT-In has also played its role, but it is the CBSE which has to solve the issue now. We in MeitY are taking all the steps required for cybersecurity,” said a source.

digital systems

The controversy comes amid heightened concern over cybersecurity preparedness in critical digital systems. CERT-In has recently directed organisations to resolve vulnerabilities in critical systems within 12 hours of detection “where feasible”, citing the growing threat of AI-assisted cyberattacks.

“In this evolving threat environment, organisations should adopt adaptive, intelligence-driven, continuously validated and resilience-oriented cybersecurity practices, rather than relying solely on static controls or periodic compliance-driven assessments,” said CERT-In in its recent advisory.

It added that “continuous monitoring, rapid remediation, adaptive defence and coordinated cybersecurity preparedness are essential for strengthening resilience against evolving AI-assisted cyber threats and enhancing trust in India’s digital ecosystem.”

Published on May 26, 2026