Bengaluru-based 'JusPay' refutes 10 cr card data breach claim, says only 3.5 cr users' info leaked

Agencies
January 6, 2021

Juspay.jpg

Bengaluru, Jan 6: Bengaluru-based digital payments gateway JusPay on Tuesday clarified that about 3.5 crore records with masked card data and card fingerprint were compromised by a hacker and the claim of 10 crore cardholders' data being affected is “incorrect". Responding to claims made by independent cyber security researcher Rajshekhar Rajaharia on Sunday that data of nearly 10 crore credit and debit card holders in the country is being sold for an undisclosed amount on the Dark Web -- leaked from a compromised server of Juspay, the company said in a fresh statement that none of its merchants and their customers are at any risk.

"The masked card data is used for display purposes on merchant UI and cannot be used for completing a transaction. A part of user metadata in our system which has non-anonymised, plain-text email IDs and phone numbers got compromised," the company informed.

"On August 18, 2020, an unauthorised attempt on our servers was detected and terminated when in progress," it added.

According to JusPay, no full card numbers, order information, card PINs and passwords were leaked.

"We conducted a thorough audit on the day of the incident which confirmed that our 'Secure Data Store' which hosts the 16-digit encrypted card numbers was not accessed and remains secure. The cyberattack was identified in an isolated/separate system," JusPay elaborated.

"We can confirm that the compromised data does not contain any transaction or order information, as the intrusion was terminated before such an access."

Rajaharia had told IANS that the data was being sold on the Dark Web for an undisclosed amount via cryptocurrency Bitcoin.

"For this data, hackers are also contacting via Telegram," he said, adding that if the hackers can find out the Hash algorithm used to generate the card fingerprint, they will be able to decrypt the masked card number.

"In this condition, all 10 crore cardholders are at risk," Rajaharia noted.

JusPay said that it has made significant investments in security and data governance and its policies are aligned to globally accepted data protection standards.

"We did identify gaps in some of the older access keys and moved them to non-access key-based authentication supported by hosting providers. We have also made two-factor authentication (2FA) mandatory for all the tools accessed by our teams," the company said.

According to Saurabh Sharma, Senior Security Researcher (GReAT), Kaspersky (APAC), data leaks due to internal vulnerabilities has become a common instance in India, especially in the last two years.

"Enterprises and institutions have begun to understand the importance of having a strong security framework to save themselves from an external attack by a cybercriminal. However, they tend to overlook the internal vulnerabilities that can prove to be very damaging to their reputation and business if exploited by the bad guys," Sharma told IANS.

Regular network and server evaluation, proactive detection of zero-day vulnerabilities and patching them immediately, launching attractive bug-bounty programmes and promptly informing the users of a potential leak are some of the "mandatory steps that large enterprises and institutions should follow in order to stay away from cybercriminals and save their reputation," he added.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
December 5,2025

Mangaluru: In a significant step to curb online hate and intimidation, Mangaluru City Police have registered a suo motu case against multiple Instagram accounts accused of circulating alleged provocative and threatening content.

While monitoring social media activity on Tuesday, Kankanady Town PSI Anitha Nikkam identified the Instagram handle ‘team_targetttt_900’ for posting a hate message alongside images of lethal weapons. Another account, ‘team_nagara_900’, allegedly shared a threatening post targeting activist Bharath Kumdelu, tagging additional pages such as KARAVALI-OFFICIAL.

Several other accounts — including ‘immu_bhai.fan’, ‘target_boy_900’, ‘kings_of_manglore’, ‘team_target_boys.900’, ‘arshad_mangalore’, ‘target_ka19_ullal’, ‘team_target__’, ‘troll_tigersz_900’, ‘tr_group_900’, and ‘team_target_900’ — are also under scrutiny for spreading similar inflammatory material, police said.

Authorities have urged citizens, especially young social media users, to report suspicious pages and avoid engaging with groups that glorify violence or threaten individuals. Online hate can quickly escalate into real-world harm, and police stress that sharing or promoting such content can attract legal consequences.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
December 2,2025

Mangaluru, Dec 2: Mangaluru International Airport responded to a medical emergency late on Monday night. Air India Express flight IX 522, travelling from Riyadh to Thiruvananthapuram, was diverted to Mangaluru Airport after a passenger in his late 30s experienced a medical emergency on board.

The Airport’s Operations Control Centre received an alert regarding the passenger’s health condition. The airport activated its emergency response protocol, mobilising the airport medical team and coordinating with stakeholders including CISF, immigration, and customs. 

Upon landing, airport medical personnel attended to the passenger, assessed his condition, and arranged to shift him to a local tertiary-care hospital for further treatment. The passenger’s relatives accompanied the passenger, who incidentally received necessary medical care on board, which helped stabilise the situation.

Following the handling of the emergency, the flight departed for Thiruvananthapuram at 2:05 am on Tuesday.

"We appreciate the cooperation of all parties involved, and this incident reaffirms our ongoing commitment to prioritising passenger safety and readiness to respond to unforeseen emergencies with professionalism and care," the Airport spokesperson said. 

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
December 7,2025

SHRIMP.jpg

Mangaluru, Dec 7: A rare bamboo shrimp has been rediscovered on mainland India more than 70 years after it was last reported, confirming for the first time the presence of Atyopsis spinipes in the country. The find was made by researchers from the Centre for Climate Change Studies at Sathyabama Institute of Science and Technology, Chennai, during surveys in Karnataka and Odisha.

The team — shrimp expert Dr S Prakash, PhD scholar K Kunjulakshmi, and Mangaluru-based researcher Maclean Antony Santos — combined field surveys, ecological assessments and DNA analysis to identify the elusive species. Their findings, published in Zootaxa, resolve decades of taxonomic confusion stemming from a 1951 report that misidentified the species as Atyopsis moluccensis without strong evidence.

The shrimp has now been confirmed at two locations: the Mulki–Pavanje estuary near Mangaluru and the Kuakhai River in Bhubaneswar. Historical specimens from the Andaman Islands, previously labelled as A. moluccensis, were also found to be misidentified and actually belong to A. spinipes.

The rediscovery began after an aquarium hobbyist in Odisha spotted a shrimp in 2022, prompting systematic surveys across Udupi, Karwar and Mangaluru. Four female specimens were collected in Mulki and one in Odisha, all genetically matching.

Researchers warn the species may exist in very small, vulnerable populations as freshwater habitats face increasing pressure from pollution, sand mining and infrastructure development. All verified specimens have been deposited with the Zoological Survey of India for future reference.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.