Science_TechSecurity
News 26 of 32

E-Rickshaw BMS Vulnerability Exposes Cybersecurity Gaps: Need for Binding Regulations on Connected Battery Systems

Target:UPSC GS-IIIMPSCTeachingSSC GAPrelims HighMains HighStatic GK Link
16 Jul 2026
~2 min
Source: Indian Express
Key Data:CERT-InNCIIPCAIS-156AIS-038 Rev.2AIS-189EU Cyber Resilience Act
Bodies:MeitYCERT-InNCIIPCMoRTHDIT
Practice MCQs from today's news ▸
What This Article Covers

1.E-rickshaws in Delhi stalled after attackers exploited BMS via Bluetooth using weak/default credentials — India's first visible cyber-physical attack on connected batteries.

2.MeitY ordered removal of malicious apps, but the core issue is lack of binding cybersecurity standards for BMS in EVs, commercial storage, and consumer devices.

3.Existing regulations (AIS-156, AIS-189) address battery safety and vehicle cybersecurity but exclude e-rickshaws and two-wheelers; CERT-In guidelines are non-binding.

The Big Picture
Prelims · HighMains · High

Recent e-rickshaw stalling in Delhi due to exploited Battery Management System (BMS) vulnerabilities via Chinese diagnostic apps highlights India's fragmented cybersecurity framework. While CERT-In and NCIIPC exist, binding standards for connected battery systems remain absent, posing risks to power grids, EVs, and defence platforms. The incident underscores the need for integrated regulations covering digital supply chain security.

Exam Lens

Quick Exam Facts From News

Incident LocationDelhi streets - e-rickshaws stalling
Root CauseBMS accepting Bluetooth connections with weak/default credentials
Regulatory Bodies InvolvedMeitY, CERT-In, NCIIPC, MoRTH, DIT
Key Standards MentionedAIS-156, AIS-038 Rev.2, AIS-189
Global Frameworks ReferencedEU Cyber Resilience Act, UK PSTI Act, US SBOM

1-Minute Revision

  • ›Incident Location: Delhi streets - e-rickshaws stalling
  • ›Root Cause: BMS accepting Bluetooth connections with weak/default credentials
  • ›Target this Data: CERT-In and NCIIPC are the two key cybersecurity institutions in India
  • ›Target this Nodal Body: Ministry of Electronics and Information Technology (MeitY) removed the malicious apps
  • ›Target this Legal Point: AIS-189 (cybersecurity for vehicles) and AIS-156 (battery safety) – know which covers what

Mastered this topic? Test your knowledge with a full MCQ quiz.

Practice exam-style questions, track your score, and strengthen your recall.

Q1Static LinkageMedium

Which ministry is responsible for setting automotive battery safety standards (AIS-156 and AIS-189) in India?

Q2Statement-basedHard

Consider the following statements:

1. The e-rickshaw stalling in Delhi was caused by exploiting the Battery Management System (BMS) via Bluetooth using weak credentials.

2. CERT-In guidelines on BMS cybersecurity are legally binding on all manufacturers in India.

3. The NCIIPC protects critical information infrastructure but does not cover consumer BMS in e-rickshaws.

Which of the statements given above is/are correct?

Q3Data-centricMedium

Which automotive standard specifically addresses cybersecurity management across the vehicle lifecycle, as mentioned in the article?

Q4Application/ImpactMedium

What is the primary cybersecurity lesson from the e-rickshaw BMS incident for India's regulatory framework?

All 25 MCQs ▸
You finished this topic
Explore Related Topics
Related Current Affairs
Economy Current Affairs

Govt to Mandate Design-in-India Chips for Smart Meters by Mid-2028, 7.24 Cr Installed

The government plans to mandate domestically designed and manufactured chips in smart meters by mid-2028 to counter cybersecurity threats and reduce import dependence. With 7.24 crore smart meters already installed under various schemes, this move also aims at cost reduction and grid modernization under the new National Electricity Policy.

Science & Tech Current Affairs

Subsea Cables Carry 99% Internet Traffic: Vulnerabilities, Ownership Concentration & India's Resilience Plan

Subsea cables carry over 99% of global internet traffic, yet their supply chain is concentrated among a few private players and hyperscalers, making them vulnerable to sabotage, cyberattacks, and economic disruption. Recent NATO, Finland, and China incidents highlight intensifying threats, while India is building repair capacity via a DoT single-window clearance portal. This is a high-yield topic for GS3 infrastructure, science-tech, and security questions.

Infrastructure Current Affairs

KAVACH Version 4.0 Commissioned on SCR: India’s Indigenous Automatic Train Protection System Explained

KAVACH, India's indigenous Automatic Train Protection (ATP) system, has been upgraded to Version 4.0 and commissioned on the South Central Railway's Malkajgiri–Kamareddi section over 108 route km. This is crucial for UPSC as it touches infrastructure, safety technology, and comparisons with global systems like ETCS, ATC, and PTC. The article also links to Sam Pitroda committee recommendations on railway modernisation.

Security & Defence Current Affairs

AM/NS India Supplies 100% Steel for INS Malvan, 2nd Mahe Class ASW Shallow Watercraft Commissioned

INS Malvan, the Indian Navy's latest indigenously-built Anti-Submarine Warfare Shallow Watercraft (ASW-SWC), has been commissioned using specialised steel from AM/NS India's Hazira plant in Surat. This highlights India's growing defence indigenisation (80%+ content) and the strategic role of Gujarat's industrial ecosystem in national security.

Security & Defence Current Affairs

INS Nipun Commissioned: Indian Navy's 2nd Nistar-class Diving Support Vessel Enhances Submarine Rescue Capability

INS Nipun, the Indian Navy's second Nistar-class Diving Support Vessel, was commissioned at Mumbai. Built indigenously by HSL, it enhances India's submarine rescue, deep-sea diving, and salvage capabilities, marking a step towards Aatmanirbhar Bharat in defence.

Infrastructure Current Affairs

NHAI Expands Digital Local Pass to 121 Plazas, Aims MLFF on All Highways by March 2029

India is moving towards barrier-less tolling with the Multi-Lane Free Flow (MLFF) system. NHAI's expansion of digital local passes to 121 toll plazas and the target to implement MLFF on all four-lane national highways by March 2029 signal a major shift in highway toll collection. For UPSC aspirants, this is a critical GS3 topic covering infrastructure, technology (RFID, ANPR), and policy reforms.

Science & Tech Current Affairs

₹1.27 Lakh Crore Semicon 2.0 Launched: India Targets Domestic Chip Design, 1 Lakh More Engineers

Prime Minister Modi inaugurated Semicon India 2026, highlighting India's progress in semiconductor manufacturing. The government launched Semicon 2.0 with ₹1.27 lakh crore outlay, shifting focus to domestic chip design, talent development, and supply chain localisation. This is critical for national security and tech self-reliance.

Science & Tech Current Affairs

MoRTH Mandates AIS-230 V2V Communication for All Vehicles from Oct 1, 2028

India is set to mandate Vehicle-to-Vehicle (V2V) communication in all new vehicles from October 2028, using the 5.9 GHz spectrum for real-time safety alerts. This makes India one of the early adopters of C-V2X technology globally, a high-impact reform for road safety aspirants.