Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Thousands of records related to Indian bank transfers discovered on the internet

Thousands of records related to Indian bank transfers discovered on the internet

Bitget-RWA2025/09/26 09:15
By:Bitget-RWA

A misconfigured cloud server has resulted in the leak of hundreds of thousands of confidential bank transfer records in India, exposing account details, transaction amounts, and personal contact information.

Cybersecurity experts from UpGuard found a publicly accessible Amazon cloud storage server in late August, which contained 273,000 PDF files associated with bank transfers for Indian clients. 

The compromised documents were completed transaction forms meant for processing through the National Automated Clearing House (NACH), a centralized platform in India that handles large-scale recurring payments like payroll, loan installments, and utility bills.

According to the researchers, the leaked data was associated with at least 38 banks and financial organizations, as reported to TechCrunch.

The reason for the data being left open to the public remains unknown, but such incidents often occur due to configuration mistakes or human oversight.

However, it is still uncertain who was responsible for the exposure, who took steps to secure the data, and who should notify those affected by the breach.

Data is now protected, but accountability is lacking

In a blog post outlining their discovery, UpGuard’s team noted that over half of a 55,000-document sample referenced Aye Finance, an Indian lender that applied for a $171 million IPO last year. The State Bank of India, a government-owned institution, was the next most frequently mentioned in the sample, according to their findings.

Upon identifying the leak, UpGuard contacted Aye Finance via its corporate, customer support, and grievance redressal email addresses. The team also notified the National Payments Corporation of India (NPCI), which oversees NACH.

By the start of September, the researchers observed that the server remained exposed, with thousands of new files being uploaded each day. 

UpGuard then reached out to CERT-In, India’s computer emergency response team. Soon after, the server was secured, the researchers informed TechCrunch.

Yet, no organization has stepped forward to accept responsibility for the breach.

When asked for a statement, NPCI spokesperson Ankur Dahiya told TechCrunch that the leaked data did not originate from NPCI’s infrastructure.

“A thorough review and verification have established that no NACH mandate data or records from NPCI’s systems were exposed or compromised,” the spokesperson wrote in an email to TechCrunch.

Sanjay Sharma, co-founder and CEO of Aye Finance, did not reply to TechCrunch’s request for comment. The State Bank of India also did not respond to inquiries.

0
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

PENGU Price Forecast: Managing Immediate Market Fluctuations and Exploring Future AI Opportunities

- PENGU token's price fell to $0.01114 in Nov 2025, far below its 2024 peak of $0.068, amid regulatory and macroeconomic risks. - Short-term volatility is amplified by SEC ETF delays, $7.68M short positions, and susceptibility to broader crypto market downturns. - Long-term potential emerges through AI-driven features like dynamic staking and cross-chain interoperability, plus Schleich's physical collectible partnerships. - Pudgy Penguins' hybrid digital-physical model, including Walmart retail presence, d

Bitget-RWA2025/12/14 06:56
PENGU Price Forecast: Managing Immediate Market Fluctuations and Exploring Future AI Opportunities

The Rise of Dynamic Clean Energy Markets

- CleanTrade, CFTC-approved as a Swap Execution Facility (SEF), transformed clean energy markets into institutional-grade assets by standardizing VPPAs, PPAs, and RECs. - The platform addressed fragmented pricing and opaque risks, enabling $16B in transactions within two months and bridging renewable assets with institutional capital. - Institutional investors now use CleanTrade’s tools to hedge fossil fuel volatility and lock in renewable energy prices, mirroring traditional energy strategies. - Global cl

Bitget-RWA2025/12/14 06:36
The Rise of Dynamic Clean Energy Markets

COAI Token Fraud: Insights for Cryptocurrency Investors During Times of Regulatory Ambiguity

- COAI token's 88% collapse in late 2025 exposed systemic risks in AI-driven DeFi ecosystems, with $116.8M investor losses. - Governance flaws included 87.9% token concentration in ten wallets, untested AI stablecoins, and lack of open-source audits. - Panic selling accelerated by AI-generated misinformation and CEO resignation, amid conflicting global crypto regulations. - Lessons emphasize scrutinizing token distribution, demanding transparent audits, and avoiding jurisdictions with regulatory ambiguity.

Bitget-RWA2025/12/14 06:00
COAI Token Fraud: Insights for Cryptocurrency Investors During Times of Regulatory Ambiguity

Renewable Energy Training as a Key Investment to Meet Future Workforce Needs

- Farmingdale State College's Wind Turbine Technology program aligns with surging demand for skilled labor in decarbonizing economies, driven by U.S. renewable energy targets. - Industry partnerships with Orsted, GE Renewable Energy, and $500K in offshore wind funding validate the program's role in addressing workforce shortages in expanding wind sectors. - Hands-on training with GWO certifications and VR simulations prepares graduates for high-demand, high-salary roles ($56K-$67K annually), reducing corpo

Bitget-RWA2025/12/14 06:00
Renewable Energy Training as a Key Investment to Meet Future Workforce Needs
© 2025 Bitget