Posts

Showing posts from March, 2021

MobiKwik, Biggest KYC Data Leak Ever...

Image
MobiKwik , an Indian company that provides mobile phone based payment system and digital wallet, has recently underwent one of the biggest data breach. Data of about 3.5 million users (8.2 TB) were put on sale in Dark Web, which consists of user’s name, phone number, bank account details, e-mail IDs and the credit card information . Source: Google           The data dump is said to contain 350GB of MySQL dumps or 500 databases, 99 million email, phone, passwords, physical addresses, IP address, GPS location and device related data, as well as 40 million records of card numbers, expiry dates, card hashes (SHA256 encrypted). It has been regarded as the “BIGGEST KYC DATA LEAK EVER” .      One of the independent security researcher, Rajshekhar Rajaharia tweeted about the leak, “ 11 crore Indian cardholder’s card data including personal details & KYC soft copy has been leaked ” which was then confirmed by French researcher (Source). Source: ...