'Nearly 3 crore Indian job seekers’ data leaked on Dark Web'

Agencies
May 26, 2020

In a startling revelation, cybersecurity researchers have claimed that a hacker has posted personal details of nearly 2.9 crore Indian job seekers at one of the hacking forums on the Dark Web for free.

As part of the regular sweep over the Deep Web and Dark Web, researchers from cybersecurity firm Cyble came across an interesting item, where a threat actor posted 2.3GB (zipped) file on one of the hacking forums.

"The leak actually has a lot of personal details of millions of Indians Job seekers from different states," Cyble said in its blog on Friday.

This breach includes sensitive information such as email, phone, home address, qualification and work experience etc from job seekers spanning across states, from New Delhi to Mumbai and Bengaluru. 

Cybercriminals are always on the lookout for such personal information to conduct various nefarious activities such as identity thefts, scams, and corporate espionage.

"It appears to have originated from a resume aggregator service given the sheer volume and detailed information," it added.

Cyble indexed this information at ‘AmIbreached.com; – Cyble's data breach monitoring and notification platform.

Cyble researchers have identified a sensitive data breach on the dark web where an actor has leaked personal details of nearly 29 million Indian job seekers from various states. 

"Cyble's team is still investigating this further and will be updating their article as they bring more facts to the surface,” it said in a statement.

Cyble said it has acquired the leaked data. 

The same cyber security firm earlier exposed that Bengaluru-based edtech firm Unacademy was hacked.

According to Cyble researchers, nearly 22 million Unacademy user accounts were affected and the data was dumped and sold on Dark Web.

'We would like to assure our users that no sensitive information such as financial data or location has been breached," said Hemesh Singh, Co- Founder and CTO, Unacademy, in a statement.

In April, hackers sold personal data of a whopping 267 million Facebook users for just Rs 41,500 (approximately 500 Euros) that includes email addresses, names, Facebook IDs, dates of birth and phone numbers.

No passwords of the 267 million Facebook users were exposed by the hacker, according to Cyble.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
January 2,2020

Perambalur, Jan 2: Veteran Tamil writer Nellai Kannan was arrested in Perambalur for criticizing Prime Minister Narendra Modi and Home Minister Amit Shah during a protest against Citizenship (Amendment) Act.

The Tirunelveli Police had registered the FIR against the writer for the speech delivered at a meeting, which was called by the Social Democratic Party of India on December 29 last year.

The police have booked him on the basis of multiple complaints filed by BJP leaders.

Kannan has been booked under Sections 504, 505(1) and 505(2) of the Indian Penal Code.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
May 28,2020

Several India-based firms are spoofing the World Health Organisation (WHO) by creating fake Gmail accounts and luring business leaders in disguise of informing them of latest COVID-19 announcements and hack their personal and financial information, Google has warned.

These "hack-for-hire" firms, many based in India, have been creating Gmail accounts spoofing the WHO, largely targeting business leaders in financial services, consulting, and healthcare corporations within numerous countries including, the US, Slovenia, Canada, India, Bahrain, Cyprus, and the UK.

"The lures themselves encourage individuals to sign up for direct notifications from the WHO to stay informed of COVID-19 related announcements, and link to attacker-hosted websites that bear a strong resemblance to the official WHO website," security researchers from Google's Threat Analysis Group said on Wednesday.

The sites typically feature fake login pages that prompt potential victims to give up their Google account credentials, and occasionally encourage individuals to give up other personal information, such as their phone numbers.

On any given day, Google's Threat Analysis Group (TAG) said it is tracking more than 270 targeted or government-backed attacker groups from more than 50 countries.

Last month, it sent 1,755 warnings to users whose accounts were targets of government-backed attackers.

"Our team of analysts and security experts is focused on identifying and stopping issues like phishing campaigns, zero-day vulnerabilities and hacking against Google, our products and our users," said the tech giant.

Google continues to see attacks from groups like Charming Kitten on medical and healthcare professionals, including WHO employees.

"We're seeing a resurgence in COVID-related hacking and phishing attempts from numerous commercial and government-backed attackers," said the company.

Government-backed or state-sponsored groups have different goals in carrying out their attacks: Some are looking to collect intelligence or steal intellectual property; others are targeting dissidents or activists, or attempting to engage in coordinated influence operations and disinformation campaigns.

Google said that since March, it has removed more than 1,000 YouTube channels that were part of a large campaign and behaving in a coordinated manner.

"These channels were mostly uploading spammy, non-political content, but a small subset posted primarily Chinese-language political content similar to the findings of a recent Graphika report," said the company.

Several cybersecurity firms have seen a spike in COVID-19 related scams and hacking attempts. Hackers are also creating scam sites similar to COVID-19 relief packages.

Researchers at Check Point Software Technologies revealed in mid-May that they have seen 192,000 coronavirus-related cyber-attacks per week over the past three weeks, a 30 % increase compared to previous weeks.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
February 26,2020

Mumbai, Feb 26: Observing that the violence in Delhi is akin to a "horror film" depicting the grim reality of the 1984 anti-Sikh riots, the Shiv Sena on Wednesday said the "bloodbath" has brought disrepute to the national capital like never before while US President Donald Trump was in India with the "message of love".

The editorial in party mouthpiece 'Saamana' lamented that Trump was welcomed in Delhi while there was bloodbath on the streets.

It further said that the violence could potentially spread the message that the Central government has failed to maintain the law and order situation in Delhi.

"Violence has erupted in Delhi. People are on the streets equipped with canes, swords, revolvers, blood is being spilled on the roads. Some horror film-like situation is being witnessed in Delhi, which depicts the grim reality of the 1984 riots," the Sena said.

It further said the BJP was still blaming the Congress for the deaths of hundreds of Sikhs in the violence that was erupted after assassination of then Prime Minister Indira Gandhi.

It needs to be unravelled who is responsible for the current riots in Delhi, the Sena said while referring to the "language of threats and warning used by some BJP leaders".

"The national capital was burning at a time when Prime Minister Narendra Modi and visiting US President Trump were holding talks.

"It does not augur well that Trump was welcomed in Delhi with the horror film of violence, bloodbath on the streets, screams of people, and tear gases. Trump saheb came to Delhi with a message of love, but what unfolded before him? 'Namaste' in Ahmedabad and violence in Delhi. Never before Delhi was defamed like this," the editorial said.

Trump had begun his February 24-25 India visit from Ahmedabad in Gujarat.

Seventeen people have died so far and over hundred were injured in the violence that has gripped several parts of north east Delhi over the Citizenship Amendment Act (CAA) since Sunday.

Attacking the Central government over reports that the violence was timed with Trump's visit, Sena said, "the Union Home Ministry has alleged that a conspiracy was hatched to defame India internationally by triggering the violence during Trump's visit to the national capital.

"The Home Ministry not knowing about the conspiracy behind the violence over the CAA is detrimental to national security. There is no problem in controlling the riots with the same courage with which Article 370 and 35A were scrapped," the editorial said.

It further said the anti-CAA protest at Shaheen Bagh in Delhi was yet to be called off yet despite the Supreme Court appointing mediators.

"It is being said that the violence sparked off after some BJP leaders talked the language of threats and warning. So, did someone want the peaceful agitation (at Shaheen Bagh) to acquire the present form of riots? (They) could have waited for at least Trump to leave the country," the Sena said.

The Uddhav Thackeray-led party also questioned the timing of the riots, which are occurring days after the results of the Delhi assembly polls.

"It is mysterious that the violence broke out days after the BJP lost the Delhi assembly elections. The BJP lost and now this is the condition of Delhi," the Sena said.

The Uddhav Thackeray-led party, a former ally of the BJP, now shares power in Maharashtra with the NCP and the Congress.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.