< Back to all clusters
[TECHNOLOGY] · India · 2 sources

started · updated

CBSE vendor Coempt accused of login ID leak affecting students and teachers

Indian educational technology firm Coempt Edu Teck Pvt Ltd, a vendor for the Central Board of Secondary Education (CBSE), has been accused of a data breach that exposed login IDs and passwords belonging to students and educators. The allegations were first raised by ethical hacker Nisarga Adhikary, who reported that an internal audit uncovered compromised credentials and that a publicly accessible code repository contained plaintext login details. The claims were amplified on social media, with student Sarthak Sidhant sharing screenshots of messages linking Coempt to the alleged leak.

CBSE responded by stating that an immediate inquiry is underway and reaffirmed its commitment to safeguarding student data. Coempt has not yet issued a public comment. The controversy adds to earlier criticism of CBSE's On‑Screen Marking (OSM) portal, which had faced complaints over grading accuracy and security vulnerabilities.

The incident highlights concerns over data privacy in India's rapidly digitising education sector and may prompt a review of third‑party vendor security practices for the board.

Entities

Central Board of Secondary Education · Coempt Edu Teck Pvt Ltd · Nisarga Adhikary · Sarthak Sidhant