A now-fixed security flaw in India’s income tax e-filing portal exposed millions of taxpayers’ personal and financial data due to a basic IDOR vulnerability that let users view others’ records by swapping PAN numbers. “The exposed data included full names, home addresses, email addresses, dates of birth, phone numbers, and bank account details of people who pay taxes on their income in India,” reports TechCrunch. “The data also exposed citizens’ Aadhaar number, a unique…








