Bank of Baroda Alleged 1TB Data Leak on Dark Web
A threat actor claims to have exfiltrated roughly 1 terabyte of Bank of Baroda’s customer and corporate data and posted it on the dark web. The alleged dump is said to contain personal details such as names, Aadhaar numbers, mobile numbers and email IDs, as well as banking records, loan appraisal notes, KYC documents, internal audit reports and vigilance handbooks.
Software engineer Srikanth Lakshmanan, founder of CashlessConsumer, shared sample files and a download link on X, saying the breach was first identified on July 25 by the dark‑web monitoring site ransomware.live. He suggested the new hacking group “TripleX”, previously linked to an Indonesian bank breach, could be behind the attack.
Bank of Baroda, the Reserve Bank of India and India’s CERT‑In have not issued any official comment confirming the breach, and the authenticity of the claimed data leak remains unverified. Authorities have urged customers to remain vigilant, monitor account activity and follow standard cybersecurity hygiene.
Entities: Bank of Baroda · CERT-In · CERT‑In · Reserve Bank of India · Srikanth Lakshmanan · TripleX
Claims
What the coverage asserts, and how well corroborated each claim is across sources.
- [● 4 SOURCES] Srikanth Lakshmanan, founder of CashlessConsumer, posted sample files and a download link to the alleged data dump on X. (c9d9da34-361c-404b-af0b-d809b1c7d02e, fcf69b95-5d6d-4198-93a1-06c936b33bc8, c175d3ad-f536-4e19-9ace-efbbf3639ea6, a07b9a)
- [● 3 SOURCES] The breach was first reported on July 25 by the dark‑web monitoring site ransomware.live. (attributed)
- [● 3 SOURCES] The authenticity of the claimed data leak has not been verified by the bank or authorities. (attributed)
- [● 3 SOURCES] A threat actor claimed to have leaked approximately 1 terabyte of Bank of Baroda customer and corporate data on the dark web. (attributed)
- [● 3 SOURCES] The alleged attacker may belong to a hacking group called “TripleX,” previously linked to an Indonesian bank breach. (attributed)
- [● 3 SOURCES] Sample files reportedly contain KYC documents, loan appraisal notes, internal audit reports and vigilance handbooks. (attributed)
- [● 3 SOURCES] Bank of Baroda, the Reserve Bank of India and CERT‑In have not issued an official comment confirming the breach. (attributed)
- [● 3 SOURCES] The alleged leaked data includes customer names, Aadhaar numbers, banking details, loan records, and internal audit documents. (attributed)