Reliance confirmed a “partial breach” of data on a server hosted by third-party provider Mumbai-based Yotta, according to Reuters. However, the company did not disclose what data was breached. According to unnamed sources quoted in the Reuters report, the Nuclear Power Corporation of India (NPCIL) has been in contact with Reliance regarding the data breach and CERT-In is reportedly looking into the incident.
MediaNama was able to access Reliance’s leaked data on the dark web, which also included data related to Tamil Nadu’s Kudankulam Nuclear Power Plant. The leaked data is publicly available to anyone who has access to the onion link of the ransomware group’s website. We are not disclosing the onion link to preserve the confidentiality of the leaked information.
Independent cybersecurity researcher Rakesh Krishnan flagged Reliance’s data leak on World Leaks to Reuters and reportedly said that the 19,000 files (14.3 GB) of data have been available since June 11.
What Reliance has to do with Kudankulam Nuclear Power plant? In 2018, the Reliance Group won a contract worth more than Rs 1,081 crore for work on the third and fourth units of the nuclear power plant. You can read the press release on Reliance Infra’s website.
What did we find inside the leaked database? According to the database available on the ransomware group’s onion website, the leaked data is 1.2 TB in size and consists of more than 858,253 files. The database was last updated on June 13, two days after cybersecurity researcher Rakesh Krishnan first spotted the leak. Because of limited resources and poor server performance, we could not examine all the content available in the database. Since this is allegedly leaked data, we could not independently verify the authenticity of the files.
Some of the information we found includes:
- Finance and payroll data, including income tax data (2018-19) and invoices.
- Bank statements of individuals.
- Tender documents inside the KKNPP Project folder.
- A folder named “KKNPP Important Letter” containing PDF documents.
- Human resources (HR) data, including full resumes of individuals.
- Technical inspection reports.
- Information related to chemical equipment.
- Cable-related documents and maintenance data.
- A large volume of additional data that we were unable to examine.
Tata Electronics data also found on the same ransomware group’s onion site: A few weeks ago, on June 22, TechCrunch reported that Tesla-related information, including consumer data, had been leaked from Tata Electronics. The company later acknowledged the breach, and the Indian government said it was monitoring the incident. On July 13, MeitY Secretary S. Krishnan said that “nothing critical has been lost,” according to Moneycontrol’s report on his remarks made while launching the Digital Threat Report.
The leaked Tata Electronics data accessed by MediaNama totals 630.4 GB across 204,341 files. The size…
Source link
Disclaimer
We strive to uphold the highest ethical standards in all of our reporting and coverage. We blogs.grocliq.com want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.
Website Upgradation is going on for any glitch kindly connect at [email protected]