Thursday, April 24, 2025
HomeCyber Security NewsBSNL Data Breach Exposes Millions of Users to Fraud and Security Risks

BSNL Data Breach Exposes Millions of Users to Fraud and Security Risks

Published on

SIEM as a Service

Follow Us on Google News

Bharat Sanchar Nigam Limited (BSNL), India’s state-owned telecommunications provider, has suffered a major data breach orchestrated by a threat actor known as “kiberphant0m”.

The cyberattack has compromised over 278GB of sensitive data, putting millions of users at risk of SIM card cloning, identity theft, and financial fraud.

According to a report by digital risk management firm Athentian Tech, the compromised data includes international mobile subscriber identity (IMSI) numbers, SIM card details, home location register (HLR) data, and critical security keys.

- Advertisement - Google News

Free Webinar on API vulnerability scanning for OWASP API Top 10 vulnerabilities -> Book Your Spot

This extensive operational data could enable sophisticated attacks targeting not only BSNL but also interconnected systems and networks, posing significant national security risks.

Kanishk Gaur, CEO of Athentian Tech, told The Economic Times that the compromised data is being sold on the dark web for $5,000. Gaur emphasized the complexity and critical nature of the breached data, which goes beyond typical user information and targets the core of BSNL’s operational systems.

This high price tag underscores the data’s value due to its sensitive nature and broad scope, surpassing typical user information and targeting BSNL’s core operations.

This incident marks the second data breach BSNL has experienced in the past six months. In December 2023, a threat actor known as “Perell” released a dataset containing 32,000 lines of sensitive information about BSNL’s fibre and landline users. 

Potential risks include:

  1. SIM cloning and identity theft: Attackers can create duplicate SIM cards to intercept communications, access bank accounts, and commit fraud.
  2. Financial losses: Bypassing security measures on financial accounts could lead to significant user losses.
  3. Service disruptions: Unauthorized access to telecom operations may cause outages and degrade performance.
  4. National security threats: The breach could undermine infrastructure stability and set a precedent for attacks on critical systems.

Experts urge BSNL to promptly investigate and contain the breach, secure network endpoints, audit access logs, and implement enhanced security measures.

Users are advised to monitor accounts for unusual activity, enable two-factor authentication, and remain vigilant against phishing and social engineering attacks.

This incident marks the second data breach for BSNL within six months, raising serious concerns about the company’s data security practices and the potential consequences for its users and national security.

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Verizon DBIR Report: Small Businesses Identified as Key Targets in Ransomware Attacks

Verizon Business's 2025 Data Breach Investigations Report (DBIR), released on April 24, 2025, paints...

Lazarus APT Targets Organizations by Exploiting One-Day Vulnerabilities

A recent cyber espionage campaign by the notorious Lazarus Advanced Persistent Threat (APT) group,...

ToyMaker Hackers Compromise Numerous Hosts via SSH and File Transfer Tools

In a alarming cybersecurity breach uncovered by Cisco Talos in 2023, a critical infrastructure...

Threat Actors Exploiting Unsecured Kubernetes Clusters for Crypto Mining

In a startling revelation from Microsoft Threat Intelligence, threat actors are increasingly targeting unsecured...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Verizon DBIR Report: Small Businesses Identified as Key Targets in Ransomware Attacks

Verizon Business's 2025 Data Breach Investigations Report (DBIR), released on April 24, 2025, paints...

Lazarus APT Targets Organizations by Exploiting One-Day Vulnerabilities

A recent cyber espionage campaign by the notorious Lazarus Advanced Persistent Threat (APT) group,...

ToyMaker Hackers Compromise Numerous Hosts via SSH and File Transfer Tools

In a alarming cybersecurity breach uncovered by Cisco Talos in 2023, a critical infrastructure...