DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Alleged breaches impacting Indians, Malaysians, under investigation

Posted on February 6, 2021 by Dissent

India:

Airtel continues to deny that it had a breach affecting more than 2.5 million subscribers’ data, despite reports and seeming evidence to the contrary. According to a statement they issued, the threat actors who call themselves “Red Rabbit Team” have made various claims over the past 15 months.

“This group has been in touch with our security team for over 15 months now and has made varying claims in addition to posting inaccurate data from one specific region,” the spokesperson said.

A security researcher who first called attention to a posting on a forum noted the lack of proof:

“The hacker group failed to show evidence that they have a whole India database. Their claim of shell upload may be also fake. The video of SDR portal seems real but only a short portion of data may leak via this. It is still unclear how they got access to whole Jammu and Kashmir subscriber data,” he said.

So are the hackers’ claims true or are they trying to scam and extort Airtel? It’s not yet clear.

Malaysia:

lowyat.net reports that a significant number of user accounts belonging to  e-payment provider  E-Pay Malaysia  appeared on a popular database marketplace forum. According to the listing, the seller claims that the database which was dated January 2020 contained information belonging to 380,000 accounts.

The seller claimed that the database contained a user name, e-mail address, date of birth, contact address, and a mobile phone number. However, the account password and related tokens have apparently been masked.

GHL Systems, the parent company of E-Pay Malaysia, responded to the news reports by issuing a statement on its Facebook page that they are investigating the claims, but they emphasize that the claimed breach only applies to their E.V.E. payment system and not other systems or services.  Read more on lowyat.net.


Related:

  • Confused about the drama with the new BreachForums? Reading this will either help you or make your head spin.
  • In: Threat actor offers to sell 8 TB of MobiKwik's personal and financial data on almost 100M consumers
  • Owner and Operator of India-Based Call Centers Sentenced To Prison for Scamming U.S. Victims Out Of Millions of Dollars
  • Operators of MoviePass Subscription Service Agree to Settle FTC Allegations that They Limited Usage, Failed to Secure User Data
  • "I'm Not Pro-Russia and I'm Not a Terrorist!" —- InfraGard and Airbus Hacker “USDoD” Unveils His New Campaigns
Category: Business SectorHackNon-U.S.

Post navigation

← PL: University fined for omitted notification of a data breach
How the United States Lost to Hackers →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • 45,000 malicious IP addresses taken down in international cyber operation
  • The Broken Records: tracing the human cost of the 2022 British MoD leak
  • Telus Digital confirms breach after ShinyHunters claims 1 petabyte data theft
  • China’s CERT warns OpenClaw can inflict nasty wounds
  • Bell Ambulance data breach impacted over 238,000 people
  • Lotte Card fined 9.6 billion won for leaking users’ social registration numbers
  • Handala claims responsibility for attack on medical device maker Stryker
  • Police Scotland fined £66k for extracting and sharing mobile phone data
  • The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in life
  • Viral ‘Quittr’ Porn Addiction App Exposed the Masturbation Habits of Hundreds of Thousands of Users

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • New data shows increase in FBI searches of Americans’ data last year
  • CalPrivacy Fines PlayOn Sports $1.1 Million for CCPA Violations Involving Student Privacy
  • 17 States Sues Trump Administration Over Unlawful Data Demands Targeting Colleges
  • Privacy watchdogs sound alarm over US bid to get travellers’ social media
  • Petition filed over misuse of protesters’ data by Kenyan government and telcos

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: Dissent.73

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: Dissent.73
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.