Bank of Baroda is investigating reports that sensitive customer and corporate banking data was allegedly hacked and released on the dark web. Multiple media reports say the threat actor released about 1TB of data, which reportedly includes Aadhaar information, customer and corporate banking records, savings and current account details, loan data, and net banking user information. The alleged dataset is said to also contain records related to NRI banking, customer support material, and branch and ATM-related information. Additional documents described in the reports include branch audit and loan appraisal files, internal communications, vigilance investigations, and customer application forms from multiple branches across India.
At this stage, Bank of Baroda has not confirmed whether the data is genuine, and one report says India’s banking regulator and national cyber response body have not issued an official statement. The Economic Times adds that it could not immediately verify the claims. No hacker has publicly claimed responsibility, according to one source, and confirmation of the scale and authenticity of the alleged leak remains pending. Customers are awaiting an official update from the bank as the investigation is underway.