Read all Blogs from this Author
CloudSEK’s SVigil uncovered a misconfigured .git repository at a major roadside assistance and insurance vendor, exposing over 20GB of sensitive data tied to leading automotive brands. The leak included full source code, payment gateway tokens, cloud database credentials, and over 1 million PII records of customers and merchants. This flaw risked large-scale phishing, fraud, identity theft, and severe reputational damage across India’s automotive and insurance ecosystem.
Right before Mother’s Day sales, a hidden flaw in a vendor’s dashboard exposed the personal and payment data of 375,000+ online shoppers—live, in real time. From Shopify tokens to refund metadata, everything was up for grabs. Here’s how CloudSEK’s SVigil stepped in just in time to prevent a massive e-commerce data disaster.
Read all Whitepapers and reports from this Author
In 2022, CloudSEK’s TRIAD identified several incidents, especially targeting banking customers, and released advisories to inform the affected SaaS companies and the public. As this trend continues, we recommend that SaaS companies and consumers stay alert to these tactics in 2023 as well.
Read MoreXVigil’s Fake Customer Care Number module scours the internet for fake customer care numbers. In this report, CloudSEK researchers have analyzed a sample of ~20,000 Indian mobile numbers used by threat actors, to run such customer care scams.
Read MoreCloudSEK has identified an increase in cyber threats targeting the banking sector in 2022, as compared to the same period in 2021.
Read MoreOur Research data indicates that the number of attacks targeting the government sector has increased
Read MoreRead all knowledge base articles from this Author