Concur News
  • Home
  • India
  • Startup
  • Regulation
  • Interview
  • Press Release
  • Login
July 4, 2025
No Result
View All Result
Concur News

Home » 13M Indian Bank Users’ Personal Details Allegedly Exposed

13M Indian Bank Users’ Personal Details Allegedly Exposed

March 28, 2025
in India, News, Privacy
Reading Time: 3 mins read
13M Indian Bank Users’ Personal Details Allegedly Exposed
Share on LinkedinShare on Whatsapp

A massive data breach has allegedly compromised the personal and financial information of over 13 million Indian bank customers. A threat actor claimed responsibility for the hack, which they offered for sale to a single buyer for $10,000. The revelation has raised significant concerns about the state of data security in India’s banking sector.

Details of the Alleged Data Leak

The compromised data reportedly includes:

  • Full names of account holders
  • Bank account numbers
  • IFSC codes
  • Registered mobile numbers
  • Email addresses

The hacker has shared a sample of 6,000 records as proof, and the full dataset is said to be 11.2GB in size, formatted as CSV. The threat actor insists that the data will only be sold to one buyer, offering escrow services to ensure a secure transaction.

Consent Foundation

Banks Allegedly Affected by the Breach


The breach allegedly affects customer databases from several prominent Indian banks, including:

  • State Bank of India (SBI)
  • HDFC Bank
  • ICICI Bank
  • Kotak Mahindra Bank

Other private and public sector banks

Though the exact method of the attack remains unknown, experts speculate that the vulnerability may have been exploited via third-party banking APIs or KYC data aggregators.

Potential Risks and Consequences

If the breach is confirmed, cybersecurity experts warn of severe implications, including:

  • Financial Fraud: The exposure of account numbers and phone numbers could lead to targeted phishing or vishing attacks.
  • Identity Theft: With email, phone, and banking details available, attackers could carry out impersonation and KYC fraud on a large scale.
  • Reputational Damage: If major banks are confirmed as victims, the breach could seriously damage consumer trust and complicate regulatory compliance for the fintech sector.

Experts describe this breach as a “bombshell,” noting the high level of sophistication involved, especially with the use of escrow services in the transaction.

Authorities Remain Silent on the Breach

As of now, there has been no official response from Indian authorities, including CERT-In or the Reserve Bank of India (RBI). The banks affected by the breach have not confirmed or denied the claims.

Dark Web Trends and Growing Concerns

This breach highlights a concerning trend on the dark web, where threat actors increasingly trade sensitive data like a commodity. Threat actors have become more business-like, offering samples, using escrow services, and negotiating exclusive deals with buyers. With the rise of digital banking and fintech, banking data has become a prime target for cybercriminals, fueling fears of more widespread breaches.

The full extent of the breach remains unclear, but cybersecurity experts are closely monitoring developments as further details emerge.

Tags: DataData breach

Related Posts

Data breach
Global

Apple, Google, Facebook Among Victims in 16 Billion Password Leak

June 23, 2025
TRAI Pilot
India

TRAI Teams Up with RBI and Banks to Launch Digital Consent Pilot Against Spam

June 17, 2025
Utkarsh
Interview

Interview with Utkarsh Srivastava, Founder of Securelytix, on Securing India’s Data Future with Privacy Infrastructure

June 19, 2025
Vodafone
Germany

Vodafone Fined $51 Million by Germany Over Data Privacy Breaches

June 5, 2025

RECOMMENDED NEWS

global tech summit

Experts at Carnegie Global Tech Summit Praise India’s Financial Sector for Being Well-Regulated and Digitally Ready for Data Protection Law

3 months ago
CISA Highlights Risks of Data Breaches Following Oracle Cloud Hack

CISA Highlights Risks of Data Breaches Following Oracle Cloud Hack

2 months ago
Performance Tracking Gets a Red Card from Footballers

Performance Tracking Gets a Red Card from Footballers

3 months ago
Yahoo privacy

Yahoo Privacy Violation? Levi & Korsinsky Launches Investigation

3 months ago

BROWSE BY TOPICS

AI AI Governance AI Privacy Apps Children privacy Compliance Consent Cross-Border Cybercrime Cyber security Data Data breach Data leak Data privacy Data Protection Data security Data Violation Digital DPDP DPDPA DPDP Act EU FBI Fines GDPR google Hack Hacked Industry Interview Investigation Investment Law Meity penalty Personal data Press Release Privacy RBI RTI Act Startek Tech giants Technology Training Trending

701, The Capital, BKC(E), Mumbai, India

Follow us on social media:

Categories

Categories Layout
  • Africa
  • America
  • India
  • Asia
  • Europe
  • Japan
  • Business
  • Events
  • Regulation
  • Law
  • News
  • Privacy
  • Startup
  • Technology
Categories Layout
  • Apps
  • Cybercrime
  • Data
  • Data Breach
  • Data Privacy
  • Data Protection
  • Digital
  • FBI
  • Investment
  • Law
  • Privacy
  • Tech Giants
  • DPDP
  • DPDPA

Harmonize Data Compliance

Footer with Animated Button
Effortlessly align your data compliance with Concur, ensuring seamless integration and robust adherence to regulatory standards.
BOOK A DEMO
  • About
  • Advertise
  • Careers
  • Home
  • Demo

© 2025 Concur - consent manager

Welcome Back!

OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • News
  • Business

© 2025 Concur - consent manager