News News 05-30-2024 at 18:40 comment views icon
Article from  

«Disaster without legal consequences»: cybersecurity expert criticizes «Reserve+»

author avatar
https://itc.ua/wp-content/uploads/2024/03/647dc38d9e7db-bpfull-1-96x96.jpg *** https://itc.ua/wp-content/uploads/2024/03/647dc38d9e7db-bpfull-1-96x96.jpg *** https://itc.ua/wp-content/uploads/2024/03/647dc38d9e7db-bpfull-1-96x96.jpg

Igor Sheludchenko

News writer

Cybersecurity expert Kostiantyn Korsun believes that the «Reserve+» app has a number of significant drawbacks in terms of personal data protection.

In addition, citizens cannot control their personal data — it is impossible to find out who manages it and how it is stored, said he said in an interview with Radio NV.

Here are the main points from the interview.

«Reserve+» — this «catastrophe»

Konstantin Korsun noted that in terms of cybersecurity and personal data protection, «Reserve+» — is a disaster. And the most important thing here is that it is not functionally ready.

Thus, the developers knew the approximate number of people liable for military service and could have calculated the workload and adequately adapted authorization through BankID. But they didn’t.

In addition, there are other factors that indicate functional unreadiness.

  • «Reserve+» made on the basis of an unfinished application «Dream» — this is an online school diary.
  • Users were offered to contact technical support via Telegram (currently, only Viber is left — ed.).
  • The developers were in a great hurry to release it on May 18 to coincide with the first day of the updated law on mobilization.

«And what is done very quickly is never of high quality. Each of us knows this rule» very well,” he said.

And here the expert points out that security always lags behind functionality — «it is in second, third, fifth, tenth place».

Protection of personal data

Konstantin Korsun believes that the risks associated with security, and especially personal data protection, have been “simply ignored,” although they exist.

From a cybersecurity perspective, the main threat and worst-case scenario is if the base somehow ends up at the disposal of the enemy. At the same time, information about how the developers have protected themselves from attacks is closed.

«Nothing — not a word, not half a word — about the infrastructure and how security is ensured is said, not reported. Accordingly, you can build any conspiracy theories», — Korsun emphasized.

As a reminder, the other day, Deputy Defense Minister Kateryna Chernogorenko saidthat more than 700 thousand Ukrainians have been removed from the groundless «wanted list» in «Reserve+».

The agency explained that Ukrainians had this status if they violated the rules of military registration, for example, by ignoring summonses, and the MCC appealed to the National Police. However, according to Chernogorenko, the actual number of such appeals is about 25%.

And there are many errors in the state registers themselves due to «human error», which would be almost impossible to correct without Reserve+.


Loading comments...

Spelling error report

The following text will be sent to our editors: