Upgrad
LCI Learning

Share on Facebook

Share on Twitter

Share on LinkedIn

Share on Email

Share More

Background Facts

A database of a widely-used Indian online grocery delivery service BigBasket has been leaked on the dark web affecting millions of people across the globe which has been confirmed a month after on the online grocery delivery platform.


About Big Basket

It was founded in the year 2011 that Big Basket is backed by Alibaba and a leading platform for delivering groceries at online platform. This pandemic has helped the company in expanding its business and even attracted the corporation of Tata Group in February acquiring a major stake in the company.

What did all include in the leaked data?

It includes personal user information including, phone numbers, physical addresses, email addresses, hashed passwords, and date of birth of the affected customers. This data leak has happened months after BigBasket validated a data breach.


What expert has to say

As per the Cybersecurity researcher, Rajshekhar Rajaharia database has been leaked is linked with a data breach that Big Basket confirmed last year.

Personal details of the users have been published by a hacker group identified as ShinyHunters and they have also made that data of everyone available on the dark web for downloading.

Rajaharia also communicated to Gadgets 360 that while the passwords that have been laid down on the dark web are available in a hashed format, another hacker is claiming to have decoded millions of passwords of the BigBasket users.

He articulated that this might lead to a very “stern problem for the exaggerated customers” as hackers can obtain access to a lot of customer’s other personal account details controlling their email addresses and passwords.

In the meantime, there is a website named Have I Been Pwned? that updates users on whether their data has been compromised by any fresh breaches, and mails have been sent to some of the affected customers notifying them about the data leak.

BigBasket still hasn’t circulated any statement yet on the alleged data leak and if you are its user, make sure to change your password to stay safe.

What is your take on such database hacking and how can it be abridged? Tell us in the comments below.
 

"Loved reading this piece by Shreya Taneja?
Join LAWyersClubIndia's network for daily News Updates, Judgment Summaries, Articles, Forum Threads, Online Law Courses, and MUCH MORE!!"




Tags :

  Views  149  Report



Comments
img