Memories are short. What's the status on:
1. JNU (Komal Sharma)
2. Jamia (bus, library, blinded boy)
3. UP police brutality, protesters who died
4. Dr. Kafeel Khan
5. Davinder Singh
6. Elgar Parishad accused: Navlakha, Bharadwaj etc
7. Kashmir?
DON'T FORGET NOR ALLOW FORGETTING.
Students & Education are important so Modi Ji removed the CBSE Chairperson
Then Modi Ji appointed the same person as Additional Secretary in Agricultural Ministry because Farmers & agriculture are not important?
Masterstroke! 🕺
leaked paper answers in full
1. doing v good job
2. opp was responsible
3. jowarlal was to blame
4. medal of brilliant genius
5. president of g20
6. pakstan
7. world largest stadium
8. ambulance
9. 2047
10. sir rajdeep desai
Don't forget
Bharat is the only country where a medical college is shut down by the government, because Muslim students secured more seats through official entrance process
@iramsubramanian Indian Medicines Pharmaceutical Corporation Limited (IMPCL) to Delhi based Skymap Pharmaceuticals Pvt Ltd for 120.01 crores. Based in Mohan, Almora, IMPCL operated under the Ministry of Ayush. The profit-making Mini-Ratna firm was valued by some estimates at ₹145 cr.
#DIPAM
If the inexplicable incarceration of ONE Umar Khalid was not enough, now we learn of a second, this one held in the UK. The term "Israelisation of societies" is a powerful and precise descriptor. Thank you for your fearlessness, Ms. Albanese.
The Israelization of our societies is already happening: posturing democracies where human rights can be suspended for people that those in power consider a disturbance.
Wake up Brits. Italians. Germans. French. North Americans. Dutch.
कोचिंग तोड़- ताड़ दिया, गार्ड को लहूलुहान कर दिया... '
Patna में Khan Sir के कोचिंग सेंटर के बाहर फायरिंग हुई
ज़िंदा हो तो RT ठोको, ख़ान सर का Support करो 🔥✊
This is Rahul Singh, IAS.
Yesterday, he was transferred and removed as CBSE chairperson, Sanghis started calling it big action and big punishment.
Today, he has been appointed as Agricultural secretary.
Joke is on us, they continue to enjoy one way or the other.
Vedanta Chairman Anil Agarwal paid ₹226 crore to the BJP through electoral bonds.
Today, the ED has raided Vedanta after its conflict with Adani over the Jaypee deal.
Anil Agarwal has been an enabler of hate politics. He has praised Narendra Modi and compared him to God, but today he is getting a taste of the poison he nurtured.
Modi has ditched almost everyone who supported him from the initial days. Now, Anil Agarwal will withdraw the case against Adani in the Jaypee deal.
ED is not only an acquisition tool but also a tool for out-of-court settlements.
Our man at 18 has given more interviews and faced more grilling by Journos in a few days than the PM of India has in the past 12 years.
PS: discussions about mangos are not interviews.
@vasundhar If the @RBI HASN'T sold any gold, why doesn't the @RBI issue an official statement to that effect? The moment you hear the word 'sources' being used, it is no more than an attempt to plant propaganda, with complete deniability.
I Repeat, no one but the whole credit of CBSE expose goes to our GenZ. NO. ONE. ELSE.
Hiii @VEDANTSHRIV17@ni5arga@sidhant_sarthak@thetirthparmar 💥
you are smarter.
You are sharper.
You are unstoppable.
And you are the BEST.
Wholeheartedly 🫡🫡🫡 to all of you.
प्रयागराज यू पी में तानाशाही चरम पर है बंद कमरे में भी लाखों छात्रों के भविष्य पर बात करने तक की इजाजत नहीं पेपर लीक पर बात करने पर प्रशासन रोकने पहुंच गया है।
मोदी योगी की डबल इंजन सरकार पूरी तरह फेल हो चुकी है विपक्ष को कुचलना चाहती है।
be @ni5arga
→ 19 years old, from West Bengal, studied in Delhi for a few years
→ just finished his own Class 12 exams in 2026
→ calls himself a hobbyist cybersecurity researcher
→ says he is an engineer, not a hacker
→ built an OSINT engine, a stock-tracking TUI, a pastebin in Rust
→ once found bugs in FOSS United and disclosed them quietly
→ just another CBSE student watching his own board roll out a new digital marking system
then he opened the portal
→ CBSE moves Class 12 evaluation to On-Screen Marking, 1.8 million students affected
→ Nisarga sees the portal link is fully public, gets curious
→ opens DevTools, downloads the Angular JavaScript bundle
→ first vulnerability found in 30 minutes
→ a literal master password sitting in plain text inside the frontend code
→ enter it, the OTP field auto-fills, the entire login flow gets bypassed
→ OTP validation happens in the user's browser, not on the server
→ no route guards, every internal page reachable by editing browser storage
→ password reset API never checks the old password
→ systemic IDOR across the entire API, change one value in sessionStorage, become any examiner
→ outcome: take over any teacher account, view answer sheets, edit marks
25 February 2026. He reports everything to CERT-In the same day.
→ CERT-In asks for a screen recording, he sends a full walkthrough
→ acknowledgement comes back as a boilerplate reply
→ reference number assigned: CERTIn-16590126
→ he follows up multiple times. no response.
→ three months pass. portal still live. Class 12 results released. vulnerabilities still there.
→ 22 May: publishes the blog post and a thread on X
→ Deedy Das, Satish Acharya, Internet Freedom Foundation amplify it
→ the post goes viral
→ CBSE issues a clarification: that was just a test portal, no breach
→ the URL CBSE cited in their own tweet was not even a registered domain
→ a friend buys the domain and points it at Nisarga's blog
→ CBSE quietly deletes the tweet
then it gets worse
→ 25 May: finds an SQL injection vulnerability on the live production portal
→ reports to CERT-In, gets a one-line thank you
→ gains admin access to the live https://t.co/1WpmNGsczK server
→ portal stays up for four more hours
→ he uploads anime videos and memes, links them publicly from CBSE servers
→ plays a viral Japanese song on a CBSE page, makes the news for it
→ CBSE finally takes the whole portal down
then he reads the database
→ master table accessed: 10 GB, 9.3 million records
→ examiner names, addresses, school names, bank account details
→ passwords stored in plain text
→ login tokens anyone can paste into a browser to log in as that user
→ 31 May: finds a second live CBSE production portal, 45,074 records of failed payments
→ emails, phone numbers, payment IDs, order IDs, all readable
→ 31 May, the bigger one: an AWS S3 bucket is misconfigured
→ ListObjectsV2 works without authentication, the bucket root is listable
→ samples pulled from 18 lakh scanned 2026 answer sheets, every subject
→ multiple institutions sharing the same bucket
→ also notices something strange in the scans: bedsheets visible in the background of answer sheets CBSE paid for proper scanners to handle
CBSE responds
→ posts an AI-generated image saying the system is robust and secure
→ three days later admits some vulnerabilities existed and have been contained
→ refuses to name the cybersecurity firm doing the audit
→ claims they tried contacting him. he says they have not.
→ Internet Freedom Foundation writes to the Ministry of Education and CERT-In
→ asks for an investigation into CBSE, a review of the contract with vendor Coempt EduTeck, a full audit
→ he points out he could have sold this data and made a lot of money
→ he did not. he is a CBSE student too.
→ his own analogy: the door wasn't just unlocked. the key was lying on the ground in front of everyone.
a 19-year-old with a anima pff broke a national exam evaluation system in 30 minutes with browser developer tools and the government is still pretending it was a test environment