A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections. (provider: Named Pipes Provider, error: 40 - Could not open a connection to SQL Server) "Dedication Is Thy Name": Assam Cop Wins Many Hearts On Social Media, National : Today Indya

Latest News

  • Home
  • National
  • CBI techie creates program to cheat Tatkal ticket system, makes big money instead of helping IRCTC
CBI techie creates program to cheat Tatkal ticket system, makes big money instead of helping IRCTC
Friday, December 29, 2017 IST
CBI techie creates program to cheat Tatkal ticket system, makes big money instead of helping IRCTC

Garg learned about the vulnerabilities during his tenure at IRCTC prior to joining the CBI.

 

 

 
 

Every system, every programme, every website has a weakness. A loophole that can exploited if one has a keen sense and understanding of how it works. Some may use the information for good and notify those in charge about it, while other may use it to serve their own nefarious means. A case of the latter recently emerged when a software programmer was caught for creating and distributing a software that could allow agents to book around 1000 IRCTC Tatkal tickets at one go. Ironically, the programmer was working for CBI.
 
Booking train tickets under Tatkal can be an ordeal, which is why many seek the help of agents to book it for them. Agents ask for a modest fee in return of their service, and usually guarantee the booking. One of the ways in which some agents were able to book Tatkal tickets was through the help of Ajay Garg, a programmer for the Central Bureau of Investigation since 2012. Garg was able to create a software that could exploit vulnerabilities of the IRCTC ticket booking system. He was able to do this since he worked at IRCTC prior to joining the CBI and learned the weaknesses in the system to his advantage.
 
Garg's operation was quite successful while it lasted. He amassed a lot of money from agents who used his software to book Tatkal tickets. Notably, he was able to hide his tracks by using a chain of Indian and foreign servers and payments in cryptocurrency like Bitcoin, the last of which would have shot up in value during the Bitcoin bubble this month.
 
His software is quite intriguing and shows how familiar he was with the workings of the website. While it normally takes around 120 seconds to generate a PNR, Garg's software was able to generate a number of them extremely fast. The software could bypass IRCTC captcha, bank OTP and form, providing proxy IP addresses and multiple user IDs passwords, PTI reports. All agents needed to do was install the software and key on the username and password, which Garg would change often to ensure payments. All of this essentially allowed agents to confirm hundreds of Tatkal tickets, making life all the more difficult for individuals trying to book tickets by themselves.
 
The fact that the vulnerabilities continued to exist for all these years suggests that Garg never informed IRCTC while he was there. More importantly, it also shows that websites running on old or outdated software are at greater risk of being exploited. While Garg has been arrested by the CBI for his illicit business, the case should be a wake up call for the IRCTC and other platforms like it that can be manipulated. There is no word yet on whether IRCTC has managed to fix the loophole, but it looks like at least for now users should not have to worry about being duped under Tatkal booking.
 
Cyber-security is a major concern in India, as outdated software and programs running in a number of organisations across various sectors have made it an easy target for hacking. 2017 has seen some global attacks like Wannacry and Petya which affected a number of countries including India. Following the Tatkal ticketing scam, Railway Minister Piyush Goyal has directed IRCTC and the Centre for Railway Information Systems (CRIS) to take measures to strengthen cyber-security.

 
 

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
Here is the full list of 827 porn websites banned by the DoT

While the Uttarakhand High Court has asked to block 857 websites, the Ministry of Electronics and IT (Meity) found 30 portals without any pornographic content. ...

Recently posted . 64K views . 1 min read
 

 Article
Class XII Boys Raped 16-Year-old in Dehradun School After Watching Porn on Phone: Police

The four boys as well as five school officials, including the director and principal, were arrested after the incident. The minors were presented before the Juvenil...

Recently posted . 10K views . 1 min read
 

 Article
Sept 27,2001 Rahul Gandhi and his girl friend Veronique,was arrested in Logan airport in Boston

Rahul was having an Italian passport and was carrying suitcase full of dollars. Some say it was about was it $2 million. Rahul and his girl friend was th...

Recently posted . 9K views . 7 min read
 

 Article
TOP 10 GYM EQUIPMENT BRANDS IN INDIA 2017

True – Tr...

Recently posted . 8K views . 83 min read
 

 
 

More in National

 Article
India story would be damaged if Modi is not re-elected, says Chris Wood

The India story would be badly damaged if Prime Minister Narendra Modi is not re-elected, said CLSA's Chief Strategist Christopher Wood in his widely read weekl...

Recently posted. 618 views . 1 min read
 

 Article
Comedian Raju Srivastava, 58, Dies Weeks After Cardiac Arrest In Gym

Comedian Raju Srivastava was hospitalised on August 10 after he collapsed in the gym and was rushed to AIIMS.

Recently posted. 5K views . 0 min read
 

 Article
Heartbreaking video captures last moments of 8 Nanda Devi climbers swept away in avalanche

The 8-member mountaineering team was swept away in an avalanche while on their way to the Nanda Devi East Peak. The video, released by the Indo-Tibetan Border Polic...

Recently posted. 677 views . 1 min read
 

 Video
Police Brutality History in Bihar



Recently posted . 1K views
 

 Reviews
Top 10 financial services companies in India



Recently posted . 3K views . 31 min read
 

 Reviews
Top 10 Real Estate Websites for Property Search



Recently posted . 1K views . 48 min read
 

 Article
Shimla water shortage: Water harvesting is the answer, not dependence on the state

The capital of Himachal Pradesh has always had a water problem – but it is time for residents to take the initiative.

Recently posted. 737 views . 0 min read
 

 Article
Scientists Are Slowly Unlocking The Secrets Of The Earth's Mysterious Hum

It's comforting to think of Earth as solid and immovable, but that's false. The world is vibrating, stretching and compressing. We're shaking right al...

Recently posted. 730 views . 3 min read
 

 
 
 

   Prashnavali

  Thought of the Day

“Either you run the day or the day runs you”
Jim Rohn

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top