Top News

Website hacked without permission, know what the law says? Could go to jail!
Samira Vishwas | June 3, 2026 10:24 PM CST

New Delhi: Ethical hacking means finding and fixing flaws in a computer system, network, or app in a legal way. This is also called white-hat hacking. Its purpose is to catch the flaws in the system before black-hat hackers do. So that data theft and cyber attacks can be prevented. But if this work is done without the permission of the owner then it is considered a crime in India.

What does the law say about ethical hacking   

Under the Information Technology Act 2000, it is illegal to hack a system without written permission. Ethical hacking is legal only when the company or owner has clearly given written authorization. If there is approval and the work is being done within the prescribed scope then it is completely legal. It is a crime to enter any system or network without permission.

legally required things   

First, written consent and contract from the system owner is required before testing can begin. Second, the permission letter should clearly state which systems, apps or data you can check and which you cannot. Third, the deficiencies found in testing have to be reported directly to the company. It is a crime to make them public or misuse them.

According to Sections 43 and 66 of the IT Act 2000, breaking into a computer, network or database without permission is punishable. This can result in both heavy fine and jail. Sections 66C and 66D consider misuse of password, OTP or digital identity as online fraud. Under Section 66E, it is illegal to take, store or share someone’s personal photos or data without consent.

Five steps of ethical hacking   

1. Gathering information: Extracting as much detail as possible about the target system.
2. Scanning: Finding open ports, active devices and vulnerabilities in the network.
3. Gaining access: Taking advantage of vulnerabilities to enter the system.
4. Maintaining access: Checking whether the system can be accessed later.
5. De-trace: Removing logs and evidence of entries so that no one else can track them.

Disadvantages of hacking without permission   

Even if the intent is not malicious, it is still illegal to hack a system without consent. Doing so can result in heavy fines or several years in jail under cyber laws.

What is needed to become an ethical hacker   

Basic understanding of networking is necessary. Must know IP address, DNS, OSI model and TCP/IP. Requires knowledge of Linux especially Kali or Parrot OS and Windows commands. Practical knowledge of languages ​​like Python, Bash, SQL and JavaScript is beneficial.

Certifications like CEH v12, OSCP and CompTIA Security+ help in career. With the rise of digital banking, cloud and AI in India, the demand for cyber experts is increasing. Fresher can get Rs 4 to 7 lakh annually. The package increases manifold with experience.


READ NEXT
Cancel OK