Back to Radar
MO

Moneycontrol

Medium

The Moneycontrol breach exposed over 762k user accounts, including sensitive personal data, in a dataset created in September 2017.

Records exposed
762,874 records
Breach date
Breach Sep 7, 2017
Last update
Updated May 22, 2021

What data was exposed?

Fields reported as compromised in this breach record.

Email addressesGendersGeographic locationsPasswordsPhone numbers

Why does this breach matter?

In-depth analysis of the breach and its implications.

The Moneycontrol data breach revealed the personal data of 762,874 users, including email addresses, geographic locations, phone numbers, genders, dates of birth, and plain text passwords. Initially uncovered for sale online in April 2021, the breach reportedly originated from a dataset created in September 2017, suggesting older compromised data. Moneycontrol acknowledged the situation, noting its age within their systems.

Impact Analysis

Understanding the scope and consequences of this breach.

User Impact
Users face risks of identity theft, phishing, account hijacking, and compromised financial transactions.
Business Impact
The company's reputation took a hit, especially for clients valuing data confidentiality, potentially impacting user trust and retention.
Affected Sectors
  • Financial Services
  • Online Platforms
Geographic Impact
  • India

What You Should Do

Recommended actions to take in response to this breach.

If You Were Affected

  • Change passwords used on Moneycontrol.
  • Review accounts for suspicious activity.
  • Monitor communications for targeted phishing attempts.
  • Activate two-factor authentication whenever applicable.

Preventive Measures

  • Equip systems with encryption for data at rest and in transit.
  • Ensure timely and public breach response processes.
  • Periodically evaluate security controls and update.

Frequently Asked Questions

Common questions about this breach and what it means for you.

Personal data, including email addresses, phone numbers, and plaintext passwords, was compromised.