LSN News › India

Technology · India Bureau

Electoral IT vulnerabilities flagged months ago, many still unresolved

Critical security flaws in India's electronic voting infrastructure were reported to election authorities and cyber-security officials in July, with concerns mounting as numerous vulnerabilities remain unaddressed despite partial remedial action.

LSN India · 8 October 2026

Electoral IT vulnerabilities flagged months ago, many still unresolved

A researcher has flagged significant cybersecurity vulnerabilities in election-related IT systems to India's poll body and the government's Computer Emergency Response Team (CERT-In), raising fresh questions about the robustness of electoral infrastructure ahead of major elections.

The security concerns were first brought to the attention of authorities in July, according to disclosures by the researcher. While CERT-In has confirmed addressing at least one vulnerability, the majority of critical flaws identified in the ECINET system remain unresolved, according to available assessments.

ECINET, which handles sensitive election commission data and operations, forms a critical backbone of India's electoral technology framework. The persistence of unresolved vulnerabilities in such systems has sparked concerns among cybersecurity experts about potential risks to electoral integrity and data security.

The Election Commission of India and CERT-In have not yet issued comprehensive public statements addressing the full scope of identified vulnerabilities or timelines for remediation. The incident underscores ongoing challenges in securing complex government IT infrastructure against evolving cyber threats.

Electoral security remains a matter of national importance, with stakeholders emphasizing the need for robust safeguards to protect the integrity of India's democratic processes and sensitive election data from potential compromise.