A security researcher, going by the pseudonym ‘Ded Sec’ reported a cyber-security vulnerability on the Reserve Bank of India’s (RBI) website on Sunday morning. Ded Sec detected cross-site scripting that allows an attacker to execute malicious codes remotely on the RBI’s website.
“This allows several opportunities to attack, mostly by hijacking the user’s current or by changing the look of the page in order to steal the user's credentials,” the researcher told Business Standard.
Ded Sec, through a series of tweets, tried to get the attention of the Computer Emergency Response Team (CERT-In) in New Delhi, the country’s nodal cyber

)