Skip to main content

Rewind India’s 2024 Cybersecurity Crisis: Major Attacks



India faced a surge in cyber-attacks in 2024, with threats like ransomware, phishing, and Distributed Denial-of-Service (DDoS) attacks impacting businesses, banks, and public services. These incidents have sparked calls for stronger data protection laws. Nearly 370 million malware attacks and over one million ransomware cases were reported during the year. Key industries like healthcare, hospitality, and banking were hit the hardest, with Telangana and Tamil Nadu identified as hotspots.

From January to June alone, there were 135,173 phishing attacks related to financial services, such as e-commerce, banking, and payment systems a 175% increase compared to 2023, as per a Kaspersky report. This rise was fueled by the growing use of digital platforms and AI-driven scams.

A summary of the major cyber-attacks that shook India in 2024:

January

  • SPARSH Portal Data Leak: A breach exposed sensitive information of defense personnel from the pension administration portal, with credentials even shared on Telegram.
  • Hathway Data Breach: Hacker 'dawnofdevil' leaked over 200 GB of data, compromising personal details of 41.5 million customers.

February

  • Motilal Oswal Financial Services Attack: The LockBit ransomware group targeted this broking firm, exposing data of over six million clients.
  • Burger Singh Hack: A Pakistani group hacked and altered the fast-food chain’s website.

March

  • Polycab Ransomware Attack: Despite the attack, operations at the wire manufacturer were unaffected.

April

  • boAt Data Breach: Over 7.5 million customers' personal data was leaked on dark web forums.

June

  • BSNL Breach: Sensitive data, including SIM details and security keys, was compromised in a 278 GB breach.

July

  • WazirX Cryptocurrency Theft: Hackers stole $230 million due to vulnerabilities in the exchange’s wallet system.

October

  • Star Health Insurance Breach: Over 31 million customers’ sensitive data, including medical records, was leaked via Telegram bots.

Additional Incidents

  • Telangana Police Hawk Eye App Breach: Data of 200,000 citizens was exposed, leading to an arrest.
  • Tamil Nadu Facial Recognition Portal Breach: Hackers used stolen credentials but failed to compromise the core system.
  • NDMA Data Leak: Details of 93,000 volunteers were sold on the dark web.
  • Hyundai Motor India Breach: Customer data was leaked due to web link vulnerabilities.
  • Uttar Pradesh Marriage Scheme Fraud: Hackers stole over ₹1 crore by exploiting the government website.
  • Transparent Tribe Espionage: A phishing campaign targeted India's defense sector.
  • Energy Sector Attacks: Government and energy agencies suffered cyber-espionage, with significant data stolen.
  • Uttarakhand Government Websites Hacked: Over 90 sites were taken down, disrupting services.
  • HDFC Life Insurance Breach: Customer data was stolen, prompting immediate action.

 

Popular posts from this blog

ChatGPT-5 Is Powerful and Fast, But It Can’t Replace Software Engineers!

  As someone who’s been following tech closely for over a decade, I’ve seen countless innovations come and go but few have stirred as much excitement and debate as ChatGPT. ChatGPT has developed, and launch ChatGPT 5, it genuinely seems that the enhancements have significantly slowed down. Previous iterations led to significant advancements in AI capabilities, particularly in assisting with coding. However, the enhancements now seem minor and somewhat gradual. It feels as though we’re experiencing diminishing returns in the extent to which these models improve at truly substituting real coding tasks. The vast majority of people say that AI is going to replace software engineers very soon. Yes, AI can perform simple activities and support routine activities, but where there are intricate things like planning the system, tackling more challenging problems, grasping actual business needs, and collaboration with others, it hasn't been able to catch up yet. T hese require creativity...

Security Flaw in India's Income Tax Portal Exposes Sensitive Taxpayer Data

A major security vulnerability in India's income tax filing portal has been fixed, TechCrunch reported. The flaw, discovered by security researchers Akshay CS and "Viral" in September, allowed logged-in users to access real-time personal and financial information of other taxpayers. This included sensitive details such as full names, home addresses, email addresses, dates of birth, phone numbers and bank account information. Exposed Aadhaar numbers of individuals The security flaw in the income tax filing portal also exposed Aadhaar numbers, a unique government-issued identification number used for identity verification and accessing government services. TechCrunch verified the data by allowing researchers to search its records on the portal. The researchers confirmed on October 2 that the vulnerability had been patched. Discovery process Researchers found bug while filing tax returns The researchers found the security flaw while filing their recent income tax return on...

Beware of Fake Starlink Mini Messages: Satellite internet is not free in India.

    A viral message is making the rounds on WhatsApp and social media in India, claiming to offer zero monthly fees and unlimited internet  via a device called   Starlink Mini.While the offer may sound tempting but it is completely misleading and has been flagged by the Indian government as unauthorized and false. Starlink Is Not Yet Operational in India As of June 2025 The satellite internet service by Elon Musk’s SpaceX has not launched its commercial operations in India. Although the company has received a Letter of Intent from the Department of Telecommunications (DoT), it still requires key regulatory approvals including: 1.Spectrum allocation 2.Clearance from IN-SPACE (Indian National Space Promotion and Authorization Centre) Until these approvals are granted, no official Starlink services including Starlink Mini are available in India. Once Starlink gets the green light to operate in India, here’s what consumers can realistically expect: Monthly ...