Security News > 2021 > April > Indian Brokerage Firm Upstox Suffers Data Breach Leaking 2.5 Millions Users' Data
Online trading and discount brokerage platform Upstox has become the latest Indian company to suffer a security breach of its systems, resulting in the exposure of sensitive information of approximately 2.5 million users on the dark web.
Reacting to the development, the company however said it had recently upgraded its security systems following reports of "Unauthorized access into our database" while stressing that users' funds and securities remained protected.
As a precaution, besides initiating a secure password reset of users' accounts, Upstox said it restricted access to the impacted database, implying it was a case of a misconfigured AWS server.
The company said it's incorporating multiple security enhancements at its third-party data warehouses and ring-fencing the network.
News of Upstox's security breach comes weeks after an India-based digital wallet service MobiKwik dealt with a major security incident after 8.2 terabytes of data belonging to millions of its users began circulating on cybercrime forums.
Other Indian companies such as BigBasket, Dunzo, Edureka, Paytm Mall, and Byju's-owned WhiteHat Jr too have reported data breaches in recent months.
News URL
Related news
- Dutch Police: ‘State actor’ likely behind recent data breach (source)
- Comcast and Truist Bank customers caught up in FBCS data breach (source)
- Internet Archive hacked, data breach impacts 31 million users (source)
- Internet Archive data breach, defacement, and DDoS: Users’ data compromised (source)
- Fidelity Investments says data breach affects over 77,000 people (source)
- Fidelity Data Breach Exposes Data of Over 77,000 Customers (source)
- USDoD hacker behind National Public Data breach arrested in Brazil (source)
- Tech giant Nidec confirms data breach following ransomware attack (source)
- Insurance admin Landmark says data breach impacts 800,000 people (source)
- Henry Schein discloses data breach a year after ransomware attack (source)