The lender said it had started a forensic investigation and was working with relevant authorities after initial containment measures were implemented.
| Photo Credit:
REUTERS/ANUSHREE FADNAVIS
The lender said in a statement on Monday that it had started a forensic investigation and was working with relevant authorities after initial containment measures were implemented.
The breach involved a compromised employee email account, which resulted in “unauthorised access to certain data”, the Mumbai-based bank said.
“The bank’s core banking systems were not accessed and continue to remain secure,” it added.
The leaked data includes customer details, identification documents, loan papers and internal audit records, said cybersecurity researcher Srikanth L, founder of Cashless Consumer.
It was not immediately clear how many customers were affected.
The Reserve Bank of India and India’s cybersecurity regulator CERT-In did not immediately respond to requests for comment.
The leak comes amid growing concerns over cybersecurity risks facing large companies and financial institutions that store vast amounts of customer and business data.
The data appeared on a dark web site on Saturday night and was advertised as a cache containing more than 700 gigabytes of information, based on metadata analysis of the site, Srikanth said.
In June, a cyberattack on Apple supplier Tata Electronics led to component design and specification documents linked to Apple and Tesla being leaked on the dark web.
Earlier this month, ransomware group World Leaks posted files on the dark web related to India’s largest nuclear plant.
Published on July 27, 2026