Friday, August 28, 2026

SBI Data Leak – Millions of Customers Data Leaked From Unsecured Server

SBI Data Leak allows anyone to access millions of its customer’s financial data and recent transactions history.

SBI is an Indian multinational, public sector banking and financial services, it is the largest bank in India with a 23% market share in assets.

According to TechCrunch report, an SBI server in Mumbai-based data center that stored the data from SBI Quick was left online without any password protection.

SBI Quick is free SBI service used by customers to get Account Balance, Mini Statement and more just by giving a Missed Call or sending an SMS with pre-defined keywords to pre-defined mobile numbers.

The bank has failed to protect the server which allows anyone by having the IP address of the server can access the data on millions of customers’ information.

It is not known for how long the server is kept open, Techcrunch confirms the server storing millions of messages every day.

Techcrunch reached out to SBI and the bank reacted quickly and fixed the issue within hours. If this information accessed by threat actors will pose a serious risk to bank customers.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Massive Collection of 2.2 Billion Usernames and Passwords Circulated in Hacker Forums

Cybercrime as a Service – Hackers Selling Ransomware, RDP logins and Credit Card Details on the Underground Markets

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

Hackers Use Ethereum Smart Contracts to Keep New GoCaracal Malware Connected

Dark Caracal-linked operators are using Ethereum smart contracts as...

OpenAI Warns AI-Enabled Cyberattacks Will Surge, Calls for Global Cyber Defense

OpenAI has issued a warning that AI-enabled cyberattacks could...

PaperCut Warns of Actively Exploited Vulnerability Affecting NG and MF Servers

PaperCut has issued an urgent security advisory after confirming...

Critical cPanel Vulnerability Allows Attackers to Gain Full Root Control of Servers

A critical vulnerability in cPanel/WHM could allow authenticated attackers...

AWS Security Teams Can Correlate CloudTrail, VPC and Route 53 Logs to Detect Attacks

AWS security teams can improve detection of multi-stage intrusions...

Hackers Exploit CVE-2023-49105 to Steal Nuclear Records From Philippine Research Agency

Suspected Chinese-speaking operators exploited the critical ownCloud flaw CVE-2023-49105...

CISA Warns of Actively Exploited Citrix NetScaler ADC and Gateway Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has...

Related Articles

Recent News