Bank of Baroda has come under the spotlight after a hacking group claimed to have leaked nearly 1TB of sensitive customer and internal banking data on the dark web. While the allegations have drawn widespread attention from cybersecurity experts, neither the bank nor government agencies have officially confirmed that a data breach has occurred. According to media reports, the ransomware group TripleX has claimed responsibility for the alleged leak. A listing on the dark web monitoring platform Ransomware.live, dated July 24, claims the leaked database includes 100,000 to 300,000 customer account-opening forms, along with photographs, identity documents, Aadhaar details, savings and current account records, loan applications, NetBanking user information, and NRI and corporate banking documents.
The alleged data dump also reportedly contains confidential internal banking records, including branch audit reports, loan appraisal documents, vigilance investigation files, bob World audit reports, and customer application forms from branches across India. Cybersecurity researcher and CashlessConsumer founder Srikanth Lakshmanan said he reviewed sample files shared by the attackers and described the incident as a “cyber disaster,” stating that the leaked material appears to include both customer data and sensitive internal operational records.
TripleX has previously targeted financial institutions and earlier claimed responsibility for stealing nearly 2TB of data from Indonesia’s state-owned Bank Negara Indonesia earlier this year. However, the authenticity of the alleged leaked data has not been independently verified. As of now, Bank of Baroda, the Reserve Bank of India (RBI), and the Indian Computer Emergency Response Team (CERT-In) have not confirmed the claims or announced any findings from an official investigation. Until verified, the reported breach remains an unconfirmed allegation.


