CBSE OSM Portal Security Concerns: Governance and Cybersecurity Implications

Updated 27 May 2026

Contents4

Hindustan Times - India · 27 May 2026 · 2 min read
Prelims · Education Mains · GS2 Governance High relevance

A Class 12 student alleged vulnerabilities in CBSE's On Screen Marking (OSM) portal, prompting CBSE to clarify no breach occurred, highlighting governance and cybersecurity challenges in digital education systems.

Key points

On Screen Marking (OSM): CBSE introduced OSM for Class 12 exams to digitize evaluation, aiming to reduce errors and enhance transparency, but alleged vulnerabilities raise concerns about its robustness.

Security Claims: A 19-year-old student claimed to find vulnerabilities like hardcoded master passwords and OTP flaws, which CBSE refuted, stating the issues were on a testing site, not the live portal.

CERT-In Involvement: The student reported the issues to CERT-In, India's nodal agency for cybersecurity, but alleged delayed action, pointing to gaps in institutional response mechanisms.

Public Trust: The incident underscores the need for robust cybersecurity measures in public education systems to maintain trust in digital evaluation processes.

GS3-Science and Technology: This connects to GS3's focus on cybersecurity and governance, highlighting the importance of secure digital infrastructure in public services.

GS2-Governance: The case reflects on governance challenges in implementing digital systems, emphasizing the need for accountability and transparency in public institutions.

Way Forward: CBSE should conduct third-party security audits of OSM, establish a bug bounty program for ethical hackers, and enhance collaboration with CERT-In for timely vulnerability resolution.

Key terms

CERT-In
The Indian Computer Emergency Response Team, the national agency for cybersecurity under MeitY. It handles cyber threats and coordinates responses, playing a critical role in safeguarding India's digital infrastructure.
Cybersecurity Vulnerabilities
Weaknesses in digital systems that can be exploited to compromise data integrity or privacy. In public systems like OSM, such vulnerabilities risk undermining trust and operational reliability.
Digital Governance
The use of technology to improve public service delivery and institutional transparency. The OSM case highlights the challenges of ensuring security and accountability in digital governance initiatives.
On Screen Marking (OSM)
A digital evaluation system introduced by CBSE for Class 12 exams, where answer sheets are scanned and marked online. It aims to reduce manual errors and increase transparency but faces scrutiny over cybersecurity vulnerabilities.

Practice question

Examine the governance and cybersecurity challenges highlighted by the alleged vulnerabilities in CBSE's On Screen Marking (OSM) portal. What measures can be taken to enhance the security and reliability of such digital education systems? (250 words, 15 marks)

GS2 15 marks 250 words Mains

Key terms to include: Digital Governance On Screen Marking (OSM) CERT-In Cybersecurity Vulnerabilities Public Trust Third-party audits Bug bounty programs Multi-factor authentication

Answer framework

Introduction

Briefly introduce the CBSE OSM portal and the recent allegations of vulnerabilities, setting the context for discussing governance and cybersecurity challenges in digital education systems.

Governance Challenges

Accountability and transparency issues in implementing digital systems in public education.

Delayed institutional response mechanisms, as seen with CERT-In's alleged slow action.

Need for robust oversight and third-party audits to ensure system integrity.

Cybersecurity Vulnerabilities

Risks posed by hardcoded master passwords and OTP flaws in digital evaluation systems.

Potential impact on data integrity and public trust in digital education initiatives.

Importance of secure digital infrastructure to prevent exploitation and breaches.

Measures for Enhancement

Conducting regular third-party security audits of the OSM portal.

Establishing bug bounty programs to incentivize ethical hackers to report vulnerabilities.

Enhancing collaboration with CERT-In for timely vulnerability resolution and response.

Implementing robust encryption and multi-factor authentication to secure the system.

Conclusion

Emphasize the need for a balanced approach that combines technological safeguards with governance reforms to ensure the reliability and security of digital education systems, thereby maintaining public trust.

Fact check

All facts verified