May have found a Critical Security Flaw in UPI , Whom To Report?

UPDATE: I am not reporting anything to anyone, the shitstorm is not worth my time. To give you guys a context of what the flaw is about,

Most digital payment apps in india strive to provide convenience to end users and it is this very convenience which makes it highly susceptible to fraud (The system suffers from a Single point of failure (SPOF) vulnerability, security guys go figure) . The flaw is critical to the point where any person can clean out to a max of 1 lakh (which is the upi limit/day) from the victims account. Since payment is instant by the time the victims realizes what happened it will be too late. All those uncles, baniyans , businessmen who don't use technology are highly vulnerable.

My best advice is stick to old school paper based transactions (cheque) and have another account from another family member (This is very important) with minimal funds for all digital payments including debit card transactions at POS terminals . Its long and tedious but thats what also makes it secure as there are multiple checkpoints to ensure security . Such as the cheque has to pass through the bank and clearing house etc.

/r/india Thread