Jump to: Latest News ⚡ Live Intel 🔬 Research Labs 📡 All News →
🇮🇳 India Regulatory Feed

India Regulatory Updates

Live circulars, advisories and policy updates from RBI, SEBI, CERT-In, MeitY, NPCI, and IRDAI — relevant to cybersecurity and data protection compliance.

All regulators RBI 0 SEBI 0 CERT-In 0 MeitY 0 NPCI 0 IRDAI 0
48 updates
CISA
View CSAF Summary Successful exploitation of this vulnerability could result in an attacker obtaining confidential information from the device. The following versions of Johnson Controls XAAP Android are affected: XAAP Android <1.53 CVSS Vendor Equipment Vulnerabilities v3 3.3 Johnson Controls Johnson Controls XAAP Android Cleartext Storage of Sensitive Information Background Critical Infrastructure Sectors: Critical Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Ireland Vulnerabilities Expand All + CVE-2026-34490 A cleartext storage weakness exists in the Fire Solutions Android application, which stores application data locally on the device without encryption. An attacker with physical access to the device and one able to compromise the device through a separate, unrelated flaw, could potentially read this data in plaintext. Exploitation does not require network access and is limited to the local device environment. View CVE De
CISA
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker with network access to achieve remote code execution. The following versions of Johnson Controls C-CURE 9000 and Victor application server are affected: C-CURE 9000 and victor <=v2.90_v3.0  victor Web <=v7.1  CVSS Vendor Equipment Vulnerabilities v3 9.6 Johnson Controls Johnson Controls C-CURE 9000 and Victor application server Server-Side Request Forgery (SSRF), Execution with Unnecessary Privileges Background Critical Infrastructure Sectors: Critical Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Ireland Vulnerabilities Expand All + CVE-2026-21655 Under certain circumstances, successful exploitation of this vulnerability could allow an unauthenticated attacker on the adjacent network to achieve arbitrary code execution on the C-CURE 9000 or victor application server, as well as connected clients (e.g., workstations of physica
CISA
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker with access to the IT network to manipulate industrial control devices without requiring physical access, specialized insider knowledge, or advanced tooling. The following versions of Panduit IntraVUE are affected: IntraVUE <=3.2.1a14  CVSS Vendor Equipment Vulnerabilities v3 10 Pronetiqs Panduit IntraVUE Plaintext Storage of a Password, Unintended Proxy or Intermediary ('Confused Deputy'), Exposure of Sensitive System Information to an Unauthorized Control Sphere, Inadequate Encryption Strength Background Critical Infrastructure Sectors: Critical Manufacturing, Energy, Information Technology, Water and Wastewater Countries/Areas Deployed: Worldwide Company Headquarters Location: Netherlands Vulnerabilities Expand All + CVE-2026-40430 Pronetiqs IntraVUE Versions 3.2.1a14 and prior have a plaintext storage of a password vulnerability that could expose cleartext credenti
NCSC UK
GCHQ’s National Cyber Security Centre and international partners issue warning as ‘LAUNDRY BEAR’ cyber threat group exposed for targeted phishing campaign
NCSC UK
No organisation can navigate the migration alone; key takeaways from our first PQC migration workshop.
NCSC UK
Cyber Advisors are offering free 30-minute consultations to help small businesses get started with cyber security.
NCSC UK
New advisory highlights Russian state cyber actors’ global exploitation of poorly configured routers
NCSC UK
An alternative path to Cyber Essentials Plus certification, without compromising the integrity of the scheme. 
NCSC UK
Why the UK is pioneering an initiative to develop a national scale, sovereign defence capability
NCSC UK
Pen testers suggest what organisations can do to make their job more difficult.
NCSC UK
Five Eyes cyber security agencies urge organisations to act on rapidly transforming cyber risk.
NCSC UK
Organisations using Fortinet services are being urged to take action following a campaign affecting firewalls and VPN gateways.
NCSC UK
Different code deserves different levels of oversight, so calibrate your approach to ‘vibe coding’ accordingly.
NCSC UK
Dr Richard Horne highlighted the scale of cyber threats against the UK’s critical infrastructure at RUSI’s Annual Security Lecture.
NCSC UK
Attackers are compromising open-source packages to spread malware. Cyber defenders are asked to review dependencies to reduce risks
NCSC UK
New guidance explains how to design Zero Trust Network Access architectures aligned with zero trust principles and not built on old trust assumptions.
NCSC UK
When it comes to using agentic AI, make sure you can walk before you run.
NCSC UK
Using Artificial Intelligence to find vulnerabilities can bring added security considerations.

Sources

RBI 0
SEBI 0
CERT-In 0
MeitY 0
NPCI 0
IRDAI 0