Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


India now requires port scans to be reported within 6 hours to CERT-In
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

India now requires port scans to be reported within 6 hours to CERT-In

https://www.bleepingcomputer.com/news/security/india-to-require-cybersecurity-incident-reporting-within-six-hours/

"The Indian government has issued new directives requiring organizations to report cybersecurity incidents to CERT-IN within six hours, even if those incidents are port or vulnerability scans of computer systems."

Gave me quite the laugh just now, how is this even feasible? Requiring organisations to report port scans within 6 hours.

Comments

  • AlwaysSkintAlwaysSkint Member
    edited April 2022

    @MrLime said: Gave me quite the laugh just now, how is this even feasible?

    Yup. Could spend my entire life, reporting these b'stards! As if they'd do anything about it; there's a phrase with the keywords organise, piss-up, brewery.

    Thanked by 1BlaZe
  • jarjar Patron Provider, Top Host, Veteran

    I'm not from India but I'd love to contribute to their data points. I'll just have CSF email them directly.

    Maybe if they employ the entire country for the sole purpose of it, they will have enough manpower to say "Yep that's a port scan. So, lunch?"

  • BKKHKBKKHK Member

    apt-get install -y ipset ipset-persistent iptables-persistent
    ipset create india hash:net
    wget -O /tmp/in.zone http://www.ipdeny.com/ipblocks/data/countries/in.zone
    for i in cat /tmp/in.zone; do ipset add india $i; done
    iptables -I INPUT -m set --match-set india src -j DROP
    iptables-save > /etc/iptables/rules.v4
    dpkg-reconfigure ipset-persistent

    Save the new rules so they persist between reboots.

    Done.

  • NekkiNekki Veteran

    Lol

  • FrankZFrankZ Veteran
    edited April 2022

    Seems like they want to be buried in so much data that they will never actually have to do anything.

  • hostdarehostdare Member, Patron Provider
    edited April 2022

    This is stupid idea really but it will be burden for providers to keep 5 years old data .

  • Someone should project a giant image of this Bruce Lee clip on the side of whatever Indian institution decided this was a good idea:

  • dane_dohertydane_doherty Member
    edited April 2022

    I'm guessing that once you check the penalty for non-compliance, it will quickly become clear why the policy was introduced :)

    Thanked by 1devp
  • AdvinAdvin Member, Patron Provider
    edited April 2022

    The funny part is they still don't enforce like 90% of their existing cyber-crime rules/regulations.

    Thanked by 1BlaZe
  • jsgjsg Member, Resident Benchmarker

    @MrLime said:
    https://www.bleepingcomputer.com/news/security/india-to-require-cybersecurity-incident-reporting-within-six-hours/

    "The Indian government has issued new directives requiring organizations to report cybersecurity incidents to CERT-IN within six hours, even if those incidents are port or vulnerability scans of computer systems."

    Gave me quite the laugh just now, how is this even feasible? Requiring organisations to report port scans within 6 hours.

    ... or else?

    Me terribly frightened

    (I welcome governments trying to force companies to get their act together wrt security but those directives are just ridiculous)

  • @MrLime said:
    https://www.bleepingcomputer.com/news/security/india-to-require-cybersecurity-incident-reporting-within-six-hours/

    "The Indian government has issued new directives requiring organizations to report cybersecurity incidents to CERT-IN within six hours, even if those incidents are port or vulnerability scans of computer systems."

    Gave me quite the laugh just now, how is this even feasible? Requiring organisations to report port scans within 6 hours.

    Automation.

    Unless this is a "make work" employment thing if you got hardcore cheap labour.

    Thanked by 1Maounique
  • jarjar Patron Provider, Top Host, Veteran

    @FrankZ said:
    Seems like they want to be buried in so much data that they will never actually have to do anything.

    Step 1: Outline job no one can disagree with

    Step 2: Generate more work than you can possibly do, identify obvious "crisis"

    Step 3: Budget request

    Step 4: Reduce scope for productivity, accept pay raise

  • raindog308raindog308 Administrator, Veteran

    So what's India's data retention policy on this?

    They're going to need a lot of storage.

    Any coincidence Vultr just setup shop there? RAID-0 is the only any to manage the vast data storage need...

  • ChuckChuck Member

    it's time for providers to pull out of india?

  • Finally a use for all the idlers: nmap all of India on loop

  • @raindog308 said:
    So what's India's data retention policy on this?

    They're going to need a lot of storage.

    Any coincidence Vultr just setup shop there? RAID-0 is the only any to manage the vast data storage need...

    The future is here - https://newatlas.com/electronics/2-inch-diamond-wafers-quantum-memory-billion-blu-rays/

  • hostdarehostdare Member, Patron Provider

    @raindog308 said: So what's India's data retention policy on this?

    5 years lol

  • You must also report all instances of Western women refusing to send bobs and vegana within 3 hours.

  • ChuckChuck Member

    @Ahfaiahkid said:

    @raindog308 said:
    So what's India's data retention policy on this?

    They're going to need a lot of storage.

    Any coincidence Vultr just setup shop there? RAID-0 is the only any to manage the vast data storage need...

    The future is here - https://newatlas.com/electronics/2-inch-diamond-wafers-quantum-memory-billion-blu-rays/

    How many cup of coffee do I need to trade for this Two-inch diamond wafers?

  • @Chuck said:

    @Ahfaiahkid said:

    @raindog308 said:
    So what's India's data retention policy on this?

    They're going to need a lot of storage.

    Any coincidence Vultr just setup shop there? RAID-0 is the only any to manage the vast data storage need...

    The future is here - https://newatlas.com/electronics/2-inch-diamond-wafers-quantum-memory-billion-blu-rays/

    How many cup of coffee do I need to trade for this Two-inch diamond wafers?

    Probably like 50 million coffees.

  • BlaZeBlaZe Member, Host Rep

    This is plain stupidity by incompetent "babus" who are at the helm of the institutions.

    This happens when people are hired on basis of "caste/religion" and not merit.

    You can't make a donkey run a horse's race.

  • ChuckChuck Member

    I guess VPN companies are fucked in India.

    Thanked by 1hostdare
  • VoidVoid Member

    @Chuck said:
    I guess VPN companies are fucked in India.

    People who use Indian VPNs are fucked anyway.

    Thanked by 1vovler
  • vovlervovler Member
    edited April 2022

    I wonder if anyone with a huge server gets fked cause the Indian gov may consider their massive port scans and vul scans reports as DoS attack. Now multiply that by god knows how many servers there are in India

  • raviravi Member

    Indian govt. wants to tax you on every possible things and wants to keep record of every activity. We might be close to pay tax for oxygen and report govt. how many times we have breathed in a day.

    Thanked by 2that_guy niceboy
  • India suddenly looks a lot more "western".
    Welcome to the club! In a few years you could apply for E.U. and NATO membership, if you promise to suck Uncle Sams cock as we all love to do 24/7. Don't forget to give all your surveillance data to the NSA, CIA, FBI etc. But don't expect their data in return. That's not how a master slave relationship works.
    [Sorry for the rant! I slept horribly, and thus I'm grumpy. This bullshit just reminded me way too much about Germany. Especially dosai's, blaze's (last) and ravi's comment. Disgusting how similar humans are despite different continents, cultures and religions. Everywhere we have the same problems. And just when you start to become a bit optimistic because the boomers are going the way of the dinosaurs, you realize that they'll be replaced by the PC-WOKE-SJW generation. Different, yet similar. Elon, hurry up with Mars! Climate change is not the only problem we need to flee from!]

    More ontopic: I think they'll quickly realize that they extremely underestimated the number of portscans. They'll get DDoSed with reports. Then they might exclude portscans from the law, except when they are in context with something else.

    Thanked by 3devp ravi Chuck
  • MaouniqueMaounique Host Rep, Veteran

    @TimboJones said: Automation.

    Yep, write scripts to identify port scans and such or use things like spamcop or similar, dump everything in a log and send it every 6 hours.
    The other thing is simply adding a field to registration or order which specifies the purpose and done. You must keep customer data for some 5 years anyway.

Sign In or Register to comment.