Skip to main content
Security

BoB data breach: A look at India's biggest corporate cyberattacks

<div class="paragraphs"><p>Credit: Reuters Photo</p></div> Image: Primary
Bank of Baroda has confirmed a security incident involving the compromise of customer data. The bank stated that due to an employee's lack of digital hygiene, an email account was compromised, leading to the breach. Bank of Baroda said the matter was promptly identified and immediate containment measures were implemented. The bank confirmed its core banking systems were not accessed and remain secure. A comprehensive forensic investigation has been initiated, and the bank is working with relevant authorities. The statement was issued almost three days after the news of the breach broke. Srikanth Lakshmanan, founder of CashlessConsumer, examined the leaked data and said it contained genuine information of Bank of Baroda's customers. He flagged the issue with the Reserve Bank of India, Bank of Baroda, and the IT Ministry on the X platform. Lakshmanan believes the Triple X data extortion and ransomware threat group is behind the breach. The leaked data includes personal and corporate banking records, savings and current account numbers, phone numbers, email details, Aadhaar numbers, loan applications, netbanking user IDs, NRI customer database, corporate banking services, customer support, and ATM-related records. Around 1TB of customer data was reportedly put for sale on the darknet by hackers, as reported by Dark Web Intelligence on the X platform. Bank of Baroda remains committed to maintaining the highest standards of information security and safeguarding customer trust.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from deccanherald.com and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Products Security
Products Security

Figma launches Japan data residency for enterprise file hosting

Figma introduced data residency in Japan, letting enterprise customers store Figma Design, FigJam, Figma Slides, and Figma Make file data in the country. The company said the option responds to customer demand for domestic storag...

Security Policy
Security Policy

Florida confirms DMV driver database breach via stolen police credentials

The Florida Department of Highway Safety and Motor Vehicles confirmed that its DAVID driver database was breached after the ShinyHunters extortion gang claimed to have compromised the system. The agency said it learned of the bre...

Security
Security

Wiz reports Artifactory flaw chain exploited to plant Rust backdoor

Wiz says multiple threat actors chained two JFrog Artifactory vulnerabilities, CVE-2026-42018 and CVE-2026-42016, against self-hosted servers between August 15 and September 8, 2026, obtaining an internal anonymous-user JWT and ex...

Security Infrastructure
Security Infrastructure

GitLab patches maximum-severity file-read flaw as probes hit exposed servers

GitLab released patches for a maximum-severity path traversal flaw in its repository commits API that lets an unauthenticated attacker read arbitrary files from a GitLab server under certain conditions, the company said. The vuln...