Skip to main content

Rewind India’s 2024 Cybersecurity Crisis: Major Attacks



India faced a surge in cyber-attacks in 2024, with threats like ransomware, phishing, and Distributed Denial-of-Service (DDoS) attacks impacting businesses, banks, and public services. These incidents have sparked calls for stronger data protection laws. Nearly 370 million malware attacks and over one million ransomware cases were reported during the year. Key industries like healthcare, hospitality, and banking were hit the hardest, with Telangana and Tamil Nadu identified as hotspots.

From January to June alone, there were 135,173 phishing attacks related to financial services, such as e-commerce, banking, and payment systems a 175% increase compared to 2023, as per a Kaspersky report. This rise was fueled by the growing use of digital platforms and AI-driven scams.

A summary of the major cyber-attacks that shook India in 2024:

January

  • SPARSH Portal Data Leak: A breach exposed sensitive information of defense personnel from the pension administration portal, with credentials even shared on Telegram.
  • Hathway Data Breach: Hacker 'dawnofdevil' leaked over 200 GB of data, compromising personal details of 41.5 million customers.

February

  • Motilal Oswal Financial Services Attack: The LockBit ransomware group targeted this broking firm, exposing data of over six million clients.
  • Burger Singh Hack: A Pakistani group hacked and altered the fast-food chain’s website.

March

  • Polycab Ransomware Attack: Despite the attack, operations at the wire manufacturer were unaffected.

April

  • boAt Data Breach: Over 7.5 million customers' personal data was leaked on dark web forums.

June

  • BSNL Breach: Sensitive data, including SIM details and security keys, was compromised in a 278 GB breach.

July

  • WazirX Cryptocurrency Theft: Hackers stole $230 million due to vulnerabilities in the exchange’s wallet system.

October

  • Star Health Insurance Breach: Over 31 million customers’ sensitive data, including medical records, was leaked via Telegram bots.

Additional Incidents

  • Telangana Police Hawk Eye App Breach: Data of 200,000 citizens was exposed, leading to an arrest.
  • Tamil Nadu Facial Recognition Portal Breach: Hackers used stolen credentials but failed to compromise the core system.
  • NDMA Data Leak: Details of 93,000 volunteers were sold on the dark web.
  • Hyundai Motor India Breach: Customer data was leaked due to web link vulnerabilities.
  • Uttar Pradesh Marriage Scheme Fraud: Hackers stole over ₹1 crore by exploiting the government website.
  • Transparent Tribe Espionage: A phishing campaign targeted India's defense sector.
  • Energy Sector Attacks: Government and energy agencies suffered cyber-espionage, with significant data stolen.
  • Uttarakhand Government Websites Hacked: Over 90 sites were taken down, disrupting services.
  • HDFC Life Insurance Breach: Customer data was stolen, prompting immediate action.

 

Popular posts from this blog

Cybersecurity Giant CrowdStrike Triggers Worldwide Computer to Blue Screen of Death

    Recently, a widespread issue has paralyzed computers globally, initially mistaken for a cyber attack. Speculations pointed fingers at Microsoft, as only Windows systems seemed affected. However, the real culprit was CrowdStrike, a major cybersecurity firm renowned for its endpoint protection services, akin to antivirus for corporate fleets of computers. The problem stemmed from an automatic update pushed by CrowdStrike, designed to enhance security through its endpoint sensors. Unfortunately, a critical bug slipped into the update, causing affected computers—running CrowdStrike's software—to crash irreparably. Since the sensors operate at a deep system level, the glitch caused entire systems to enter a continuous cycle of crashes, known ominously as the "blue screen of death." CrowdStrike quickly acknowledged the issue and provided a fix, albeit a cumbersome one. Affected PCs must be manually booted into safe mode to remove specific files, a process that needs to be r...

Grok 3: The AI Chatbot Breaking Boundaries with Bold, Uncensored Responses

  In the ever-evolving world of artificial intelligence, Grok 3 is quickly making waves both for its cutting-edge capabilities and its shocking, unfiltered personality. Developed by Elon Musk’s xAI, Grok 3 is an AI chatbot that has taken the internet by storm, especially among regular X (formerly Twitter) users in India. Known for its snarky responses, irreverent tone, and ability to learn from the unpredictable and sometimes profane language of users, Grok 3 is far from your average chatbot. Launched in February 2025, Grok 3 is a powerhouse of computational prowess, utilizing 12.8 trillion tokens to deliver responses that range from wildly intelligent to oddly rebellious. It’s trained with data from a variety of sources everything from legal filings to X posts giving it a diverse range of knowledge and a unique ability to engage in conversation that feels real, yet sometimes, unsettlingly raw. But it’s not just Grok 3’s wealth of knowledge that’s making headlines. The chatbot ...

AI tools on the dark web

  As AI continues to develop, its role in cybercrime on the dark web will only increase. The ability of cybercriminals to experiment with AI-powered tools is a new frontier in the ongoing war between hackers and cybersecurity experts. The Dark Web is quickly becoming a testing ground for new AI-powered attacks. The bad actors can customize their methods and expand their scope of their crimes. 1. FraudGPT – When AI is the worst spammer FraudGPT is a tool that sends fake emails. Create a fraudulent website And it spreads malware like a 24/7 scam operation. It's so clever it can trick you into handing over sensitive information to hackers—just like your grandma's bank details! If installed correctly, it does not require too much energy to operate. 2. Angler AI – A fishing tool that personalizes your attacks. Angler AI is a secret tool. That changes perspective depending on how you respond. It's like a telemarketer who knows everything about you and can even pretend to be y...