Bank of Baroda Probes Alleged 1TB Data Leak Following Employee Email Compromise

July 29, 2026 | CXO Junction

Leave a Comment / Cybersecurity, Data Protection, Enterprise Technology, Industry News / By cxojunction

A suspected data breach at Bank of Baroda has put the spotlight back on cybersecurity in the banking sector after reports claimed that nearly 1TB of sensitive banking data had surfaced online. The bank confirmed that an employee’s email account was compromised but assured customers that its core banking systems remain secure and were not affected by the incident.

Sensitive banking data exposed following an alleged Bank of Baroda employee email account compromise.

The alleged leak reportedly contains a wide range of sensitive information, including customer and corporate banking records, Aadhaar numbers, account details, loan information, NetBanking user data, NRI and corporate banking records, customer support material, and branch- and ATM-related documents. Sample files were also reportedly published online, raising concerns over the potential exposure of confidential banking information.

In its official statement, Bank of Baroda said the unauthorized access was limited to data associated with the compromised employee email account. The bank added that the incident was identified promptly, immediate containment measures were implemented, and a comprehensive forensic investigation is currently underway in coordination with the relevant authorities to determine the full scope and impact of the breach.

The alleged breach was first reported on July 25 by a dark web monitoring platform. Cybersecurity experts who reviewed the sample files said they included internal bank documents such as branch audit reports, loan appraisal records, internal communications, vigilance investigation files, bobWorld audit reports, and customer application forms from multiple branches. While no threat actor has officially claimed responsibility, researchers have suggested a possible connection to the TripleX hacking group, which was previously linked to a cyberattack on an Indonesian state-owned bank that reportedly resulted in the theft of nearly 2TB of data.

What Organizations Can Learn

The incident highlights the importance of securing employee email accounts, as a single compromised account can expose sensitive information even when core systems remain protected. Organizations should strengthen email security with multi-factor authentication (MFA), implement least-privilege access, monitor for suspicious activity, and maintain a well-tested incident response plan to quickly detect and contain potential breaches.

Source: Bank of Baroda investigates alleged data breach after 1TB of information surfaces online | The Mainstream | https://themainstream.co.in/bank-of-baroda-investigate-alleged-data-breach/

CXO Junction remains dedicated to providing you with exclusive insights into transformative leadership journeys. Stay tuned for more updates as we continue to bring industry news to you.

Latest News