Showing posts with label UIAI. Show all posts
Showing posts with label UIAI. Show all posts

Thursday, December 24, 2009

National Security Of India Must Be Strengthened

National security of India is a crucial aspect that has been ignored by Indian politicians for long. The catastrophic consequences of the same are very apparent in the form of terrorists’ attacks and cyber terrorism in India. Time has arisen when we must rejuvenate the national security and internal security of India. The recent proposal by the Home Minister to strengthen Indian National Security and Internal Security must be strictly adhered to by the Indian government. It should not merely be another proposal with no actual implementation and execution.

National security of India has recently received a rejuvenation attempt by the Government of India (GOI). This is good news at a time where the national security issues are grossly ignored in India. The national security of India and internal security of India are suffering not only on the count of lack of political will but also due to absence of suitable policies and strategies.

The ICT Trends of India 2009 have also proved that India has failed on the fronts of Cyber law of India, Cyber Terrorism in India, E-Courts in India, E-Learning in India, Unique Identification Project of India, Serious Frauds and White Collar Crimes, National Security Issues, Crime Reporting by Media, Internet Banking Frauds, Cyber Security of Defense Forces, Cyber War in India, E-Surveillance in India, etc.

According to Praveen Dalal, Managing Partner of Perry4Law and the leading Techno-Legal Expert of India, “Indian approach in this regard is not sensible at all. We should not invest thousands of crores of Indian rupees into security projects that can be manipulated and sabotaged in minutes. Rather we should first analyse the weaknesses and security holes of the same before buying and installing it.

After all security of a Nation is proper application of “common sense” rather than wasting unlimited amount of money. Crime and Criminal Tracking Network & Systems (CCTNS) of India, Unique Identification Authority of India (UIAI), Rs 800 crores centralised facility to control phone tapping activities in India, etc are some of the projects that require common sense application before their implementation. They have to be tested in a “limited environment” before using them in a full fledged manner, says Praveen Dalal.

It seems Indian security initiatives have to be holistically analysed and suitably applied. The Indian security infrastructure and workforces are not in good shape and require rejuvenation. We need a techno-legal security workforce and not personnel who do not have even the basic facilities and technological means and knowledge. The terrorist attacks have really shattered the deep pervasive false sense of security present in the Indian government mentality. We have to think and act against such internal and external threats by going beyond a "political debate". We can fool ourselves by bragging about India’s capabilities and victories against terrorism and cyber terrorism and keep on facing future attacks and bear the traumatic casualties. Alternatively, we must accept our weaknesses against such attacks and take constructive steps to anticipate, prevent and counter such future terrorist and cyber terrorism activities, warns Praveen Dalal.

With a new ray of hope shown by the recent stress upon national security of India we can expect some good results in this direction. However, India is famous for mere assurances and proposals without actually implementing them. Similarly, due to faulty management and policies even the implemented projects have failed in the past. Let us hope that this time India would do the proper homework before starting an initiative that it cannot implement and run.

Friday, December 18, 2009

Decisions Management Of Cyber Security Issues In India

Cyber security of India is a neglected field. Even when we talk and think about this crucial aspect, we tend to adopt an approach that presupposes that procurement of technology is the best solution. We do not analyse the pros and cons of any technological deployment.

According to Praveen Dalal, the leading Techno-Legal Expert of India and Managing Partner of Perry4Law “The cyber security capabilities of a nation is as strong as is its weakest link. If the weakest link is exploited, even the most robust and secure security systems can be collapsed in minutes.

For instance, the Pentagon has fixed a security breach that allowed insurgents to hack into data feeds from pilotless "drone" aircraft that provide real-time video of war zones. Iraqi militants are using a 25.95 US dollars software named SkyGrabber to shoot down highly sophisticated US drones. SkyGrabber helps in capturing the drone feeds in order to neutralise the same. This means we have to apply common sense first before relying upon and procuring technology worth of millions, says Dalal.

Recently, it has been reported that the Chinese intelligence agencies may have planted computer malware and broken into the headquarters of 33 Corps, the army formation looking after most of the north-eastern border with China. The break-in included the planting of trojan viruses which may have given Chinese operatives remote access to the computer network at the 33 Corps headquarters in Sukhna, near Siliguri, West Bengal.

The defense forces of India must pay adequate attention towards securing strategic IT assets from hacking and other cyber attacks. Equally important is the requirement of protecting critical ICT infrastructure of India.

Indian approach in this regard is not sensible at all. We should not invest thousands of crores of Indian rupees into security projects that can be manipulated and sabotaged in minutes. Rather we should first analyse the weaknesses and security holes of the same before buying and installing it, suggests Praveen Dalal.

It seems security of a nation is proper application of “common sense” rather than wasting unlimited amount of money. Crime and Criminal Tracking Network & Systems (CCTNS), Unique Identification Authority of India (UIAI), Rs 800 crores centralised facility to control phone tapping activities in India, etc are some of the projects that require common sense application before their implementation.

SOURCE: ITVOIR

Friday, September 18, 2009

Is The Unique Identification Authority of India (UIDAI) Legally Constituted?


India seems to be following the hit and trial method for some of the most crucial projects in India. The end result is obvious, i.e. wastage of crores of public money and violation of civil liberties of the Indian citizens. In this “guest column”, Mr. Praveen Dalal , Managing Partner of Perry4Law has shared his valuable insights in this regard.

India is notoriously infamous for creating authorities and agencies without any legal sanction and framework. Surprisingly, a majority of them pertains to law enforcement and intelligence agencies like CBI, IB, RAW, etc. What India is actually doing is using administrative circulars and executive orders to give legitimacy to these institutions. Why these circulars and orders have still not been declared “unconstitutional” by Indian judiciary is still a bigger mystery?

The latest in the league is the Unique Identification Authority of India (UIAI) managing the proposed Unique Identification Cards for Indian citizens. Where is that authority, what are its rules and regulations, what legal framework is supporting it, what are the legal and technical safeguards available for the possible misuse of the same, etc are some of the questions that would always vex the Indians.

It seems India has developed a habit of constituting “multiple agencies” without and legal framework and sanctions. This would result in more troubles than solutions. None can dispute that the unique identification number's database is too precious to be handled so casually.

On the front of security and safety of unique identification number's database, even Nandan Nilekani has accepted these concerns to be “legitimate one”. For instance, it would be a big task to secure such database from possible hacking and free from any misuse.

Invasion of Privacy of Indian citizens by Indian Government and its Agencies is certainly going to be there in future. This is more so when the Indian Government has openly declared its Policy to adopt endemic surveillance and e-surveillance over Indian citizens. The Indian Government would spend 800 Crores hard earned public money for tapping all phones in real time. Ironically, Indian citizens’ money would be used against Indian only and that also in an illegal and unconstitutional manner.

With the “Judicial Silence Strategy” adopted by the Delhi High Court and Supreme Court of India, the fate of the already scarce Privacy and Data Protection Rights in India is going to face extermination. It would be a good idea to call for explanation form Indian Government and stressing upon establishment of proper safeguards before departing with any sensitive information to the Unique Identification Authority of India (UIAI).

Mr. Praveen Dalal, Managing Partner of Perry4Law, is the Leading Techno-Legal Specialist of India and is an Internationally renowned Expert in the fields of Cyber Forensics, Cyber Security, Cyber Law, etc. These are his personal views and opinion.

AUTHOR: PRAVEEN DALAL

SOURCE:
MERINEWS