Bank of Baroda is reportedly investigating a significant cyberattack that has allegedly resulted in the leak of 1 terabyte (TB) of sensitive customer and internal data onto the dark web. The alleged breach, which surfaced on July 27, 2026, could expose a wide array of personal and financial information from numerous branches across India.
Details of the Alleged Data Breach
Reports indicate the compromised data includes critical customer information such as names, Aadhaar numbers, and detailed banking records. Corporate banking records and loan-related data are also said to be part of the leak. Furthermore, internal bank documents, including branch audit reports, loan appraisal forms, internal communications, and vigilance investigation records, have allegedly been exposed.
The alleged breach was first identified on July 25, 2026, by ransomware.live, a dark web monitoring website. Srikanth Lakshmanan, a software engineer and founder of CashlessConsumer, further corroborated these claims by sharing sample documents on X (formerly Twitter), confirming the live link to the leaked data.
Suspected Perpetrators and Official Response
While no cybercriminal group has officially claimed responsibility for the alleged Bank of Baroda attack, Lakshmanan suggests a new hacking collective, “TripleX,” could be behind it. This group was previously linked to a major breach of an Indonesian bank, where it allegedly accessed over 2TB of data, including contracts, personal identification details, and financial transaction histories.
As of now, Bank of Baroda, the Reserve Bank of India (RBI), and CERT-In have not issued any official comment or confirmation regarding the alleged data breach. The claims remain under investigation by regulatory bodies.
Advice for Customers
In light of these unconfirmed reports, customers and partners of Bank of Baroda are advised to remain vigilant. It is recommended to:
- Monitor account activity for any unusual or unauthorized transactions.
- Regularly check credit reports for suspicious inquiries or new accounts opened in your name.
- Adhere to strong cyber hygiene practices, including using unique, complex passwords and enabling multi-factor authentication (MFA) wherever possible.
- Be cautious of phishing attempts via email, SMS, or phone calls that claim to be from Bank of Baroda and ask for personal or banking details.
Until regulatory bodies complete their investigation, customers should prioritize their digital security to mitigate potential risks.