Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Hackers Steal 17 Million Users’ Data From Indian Restaurant App Zomato

India’s largest restaurant and food delivery app Zomato announced Thursday that the data of 17 million users had been stolen from its database, including names, email addresses and protected passwords.

India’s largest restaurant and food delivery app Zomato announced Thursday that the data of 17 million users had been stolen from its database, including names, email addresses and protected passwords.

The startup said the “hashed” passwords could not be decrypted but recommended users change their login details if they use the same password for other services.

Zomato’s chief technology officer Gunjan Patidar said customers’ financial information was stored separately from the stolen data and was not compromised by the hack.

“No payment information or credit card data has been stolen/leaked,” he said in a statement on Zomato’s website, adding they were scanning all possible breaches in their system.

“Your credit card information on Zomato is fully secure, so there’s nothing to worry about there.”

Those affected had been logged out of the website and app and had their passwords changed “as a precaution”, he added.

A report on an online hacker news website carried in local media said the trove of personal data was being auctioned on the dark web for roughly $1,000 by a hacker using an alias.

The hack of the internationally popular e-commerce startup comes on the heels of the “WannaCry” cyberattack, the world’s biggest ransomware attack to date.

Advertisement. Scroll to continue reading.

The culprits demanded payment in virtual currency and threatened to delete files on compromised computers, which numbered in the hundreds of thousands worldwide.

Zomato, which boasts 120 million user visits a month, said it was “plugging any security gaps” and would further enhance its security measures after the database breach.

The company — a so-called “unicorn” startup because it is valued at more than $1 billion — was founded in 2008 and it now operates in 23 nations. np/cc/klm

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how the LOtL threat landscape has evolved, why traditional endpoint hardening methods fall short, and how adaptive, user-aware approaches can reduce risk.

Watch Now

Join the summit to explore critical threats to public cloud infrastructure, APIs, and identity systems through discussions, case studies, and insights into emerging technologies like AI and LLMs.

Register

People on the Move

Kenna Security co-founder Ed Bellis has joined Empirical Security as Chief Executive Officer.

Robert Shaker II has joined application security firm ActiveState as Chief Product and Technology Officer.

MorganFranklin Cyber has promoted Nick Stallone and Ferdinand Hamada into newly created roles.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.