Bank of Baroda Faces Claims of Massive 1TB Data Breach on Dark Web

Data-volume estimates for the BoB breach vary, with some reports citing about 700 GB of data (based on metadata analysis of a dark web listing) while others publicly claim around 1 TB.
Dark web listings reportedly include between 100,000 and 300,000 customer application forms, many containing photographs and identity documents submitted during account opening.
The hacker group TripleX (Triplx X) has claimed involvement in the BoB breach and has previously boasted about a 2 TB data theft from Bank Negara Indonesia in May.
Observers describe the incident as potentially among the biggest bank breaches in India if it is confirmed, underscoring the scale and risk to consumers.
There has been no official confirmation from Bank of Baroda, with regulators such as the RBI and CERT-In not publicly commenting on the breach as of now.
Sensitive data from India's state-run Bank of Baroda has appeared on the dark web, with cybersecurity researchers warning the leak could be one of the biggest bank breaches in Indian history. The exposed dataset is estimated at 700 GB to 1 terabyte and reportedly includes Aadhaar numbers, loan records, NetBanking details, and internal audit documents, according to Reuters.
A hacker group calling itself TripleX has claimed involvement. The bank, the Reserve Bank of India, and national cybersecurity agency CERT-In have not publicly confirmed the breach or issued any official statement as of now, according to Yahoo Finance.
The dark web listing reportedly contains between 100,000 and 300,000 customer application forms. Many of those forms include photographs and identity documents submitted when customers opened their accounts, according to Reuters. The data spans branches across India.
Beyond customer files, the leak allegedly includes internal bank documents. These include branch audits, loan appraisal records, vigilance investigation files, and bobWorld audit reports. Researchers say Aadhaar numbers, NRI banking data, corporate account details, and ATM-related records are also in the dataset, according to Yahoo Finance.
The group calling itself TripleX, also written as Triplx X, has claimed credit for the BoB breach. This is not the group's first alleged major attack. In May, TripleX boasted about stealing 2 terabytes of data from Bank Negara Indonesia, according to Reuters.
Some reports suggest the initial breach may have started through a compromised email system inside the bank. The group has not revealed how it accessed the data, and no independent body has verified their specific claims about the method of entry.
Cybersecurity researcher Srikanth L, founder of Cashless Consumer, described the dataset as genuine. He warned that even without exposed passwords or PINs, the leaked data puts customers at serious risk. Aadhaar numbers and identity documents are enough to enable phishing attacks and identity theft, according to Yahoo Finance.
Metadata analysis of the dark web listing puts the actual file size closer to 700 GB, though the hackers claim 1 TB. The gap between those numbers has not been explained. Either figure, if confirmed, would make this one of the largest financial data leaks ever seen in India, according to Reuters.
Bank of Baroda has not publicly confirmed a breach. The bank has also not notified Indian stock exchanges, which listed companies are typically required to do when a significant incident occurs. The RBI and CERT-In have not released any public statements, according to Yahoo Finance.
The silence from regulators has frustrated cybersecurity observers. India's financial sector has faced growing threats from state-linked and criminal hacking groups. Researchers say this case shows how internal documents — not just customer data — are now being targeted in attacks on major banks, according to Reuters.
Publishers
57
Articles
82
Reach
139