Paytm Mall suffers data breach, ransom demanded by hackers: Report

According to Cyble, ‘John Wick’ has broken into multiple Indian companies and collected ransom from various Indian organizations including OTT platform Zee5, fintech startups, Stashfin, Sumo Payroll, Stashfin, i2ifunding, through other aliases such as ‘South Korea’ and ‘HCKINDIA’

Tarush Bhalla
Published30 Aug 2020, 06:44 PM IST
Paytm Mall has denied this claim and said that it has undertaken measures to verify the matter, with no data breaches detected by its internal cyber security teams as of Sunday evening.
Paytm Mall has denied this claim and said that it has undertaken measures to verify the matter, with no data breaches detected by its internal cyber security teams as of Sunday evening.

E-commerce platform Paytm Mall has suffered a massive data breach, where a cybercrime group under the alias ‘John Wick’ has been able to get unrestricted access to the entire database of the company, according to US-based cyber-risk intelligence platform Cyble Inc.

According to Cyble, ‘John Wick’ has broken into multiple Indian companies and collected ransom from various Indian organizations including OTT platform Zee5, fintech startups, Stashfin, Sumo Payroll, Stashfin, i2ifunding, through other aliases such as ‘South Korea’ and ‘HCKINDIA’.

‘John Wick’ was able to upload a backdoor or Adminer on Paytm Mall application website and was able to gain unrestricted access to their entire databases […] According to the messages forwarded to us by the source, the perpetrator claimed the hack happened due to an insider at Paytm Mall. The claims, however, are unverified, but possible,” said a Cyble blogpost on Sunday.

According to Cyble, its sources also forwarded them messages where the perpetrator claims to have demanded 10 Ethereum (ETH), equivalent to $4,000 and is receiving the ransom payment from the Paytm Mall.

One of the tactics used by this group is to act as a ‘grey-hat’ hacker and offer help to companies or victims to fix their bugs, said Cyble in its report. A ‘grey hat’ is a computer hacker who looks for vulnerabilities in platforms and systems, without the owner’s knowledge and asks for a fee to fix the issue.

Paytm Mall has denied this claim and said that it has undertaken measures to verify the matter, with no data breaches detected by its internal cyber security teams as of Sunday evening.

"We would like to assure that all user as well as company data is completely safe and secure. We invest heavily in our data security, as you would expect. We have been investigating the claims of a possible hack and data breach, and haven't found any security lapses yet. We also have a Bug Bounty program, under which we reward responsible disclosure of any security risks. We extensively work with the security research community and safely resolve security anomalies," said a Paytm Mall spokesperson.

In July, hyperlocal task management startup Dunzo also suffered a data breach that leaked phone numbers and email addresses of its users. The data breach took place through servers “of a third party" Dunzo works with were compromised, the firm’s chief technology officer (CTO) Mukund Jha had said in a blogpost.

There have been several Indian platforms in the past which have faced data breaches. Earlier in May, it was reported that data of 4.75 crore Truecaller Indian users was found to be up for sale on the dark web. The development which was denied by the Swedish mobile application platform Truecaller India, was a result from its data leak.

In January, 2019, e-commerce major Amazon India had admitted to a technical glitch which exposed tax reports of 400,000 sellers on its platform. It was reported that affected sellers received tax reports of other sellers, while attempting to download their own Merchant Tax Reports for December, 2018.

Recently, Mint also reported that North Korea- backed Lazarus group was planning a cyberattack to target 2 million individual email IDs belonging to users in India, according to cyber intelligence firm Cyfirma.

A recent survey by network security provider, Barracuda Networks said that around 66% of Indian organisations have suffered at least one data breach after shifting to the remote working model, which included 1,000 decision makers in India, Australia, New Zealand, Singapore, and Hong Kong.

Catch all the Business News , Corporate news , Breaking News Events and Latest News Updates on Live Mint. Download The Mint News App to get Daily Market Updates.

MoreLess
First Published:30 Aug 2020, 06:44 PM IST
Business NewsCompaniesNewsPaytm Mall suffers data breach, ransom demanded by hackers: Report

Get Instant Loan up to ₹10 Lakh!

  • Employment Type

    Most Active Stocks

    Tata Steel share price

    152.30
    03:50 PM | 5 NOV 2024
    5.35 (3.64%)

    Bharat Electronics share price

    286.15
    03:48 PM | 5 NOV 2024
    2.1 (0.74%)

    Bank Of Baroda share price

    257.80
    03:52 PM | 5 NOV 2024
    5.05 (2%)

    State Bank Of India share price

    849.20
    03:46 PM | 5 NOV 2024
    19.35 (2.33%)
    More Active Stocks

    Market Snapshot

    • Top Gainers
    • Top Losers
    • 52 Week High

    Deepak Fertilisers & Petrochemicals Corporation share price

    1,320.80
    03:48 PM | 5 NOV 2024
    44.1 (3.45%)

    National Aluminium Company share price

    235.00
    03:45 PM | 5 NOV 2024
    4.2 (1.82%)

    Gillette India share price

    10,519.05
    03:29 PM | 5 NOV 2024
    116.1 (1.12%)

    Suven Pharmaceuticals share price

    1,332.50
    03:29 PM | 5 NOV 2024
    12.85 (0.97%)
    More from 52 Week High

    Rainbow Childrens Medicare share price

    1,548.10
    03:45 PM | 5 NOV 2024
    -82.6 (-5.07%)

    Torrent Power share price

    1,708.00
    03:29 PM | 5 NOV 2024
    -88.75 (-4.94%)

    PB Fintech share price

    1,640.20
    03:41 PM | 5 NOV 2024
    -72.55 (-4.24%)

    Tube Investments Of India share price

    4,180.70
    03:42 PM | 5 NOV 2024
    -179.4 (-4.11%)
    More from Top Losers

    HFCL share price

    127.85
    03:47 PM | 5 NOV 2024
    8.5 (7.12%)

    Jindal Saw share price

    326.10
    03:29 PM | 5 NOV 2024
    16.15 (5.21%)

    Adani Energy Solutions share price

    1,014.65
    03:44 PM | 5 NOV 2024
    49.25 (5.1%)

    Oil India share price

    495.45
    03:46 PM | 5 NOV 2024
    23 (4.87%)
    More from Top Gainers

    Recommended For You

      More Recommendations

      Gold Prices

      • 24K
      • 22K
      Bangalore
      80,255.00-160.00
      Chennai
      80,261.00-160.00
      Delhi
      80,413.00-160.00
      Kolkata
      80,265.00-160.00

      Fuel Price

      • Petrol
      • Diesel
      Bangalore
      102.92/L0.00
      Chennai
      100.80/L-0.23
      Kolkata
      104.95/L0.00
      New Delhi
      94.77/L0.00

      Popular in Companies

        HomeMarketsloanPremiumMint Shorts