Upstox Alerts Users of Data Breach; Says Funds, Securities Remain Safe

Upstox has initiated a secure password reset via OTP for all its users.

Upstox Alerts Users of Data Breach; Says Funds, Securities Remain Safe

Upstox has initiated multiple security enhancements, as per a company spokesperson

Highlights
  • Upstox users' contact data and KYC details are subject to a breach
  • Funds and securities remain safe, CEO Ravi Kumar said
  • Upstox is conducting real-time 24x7 monitoring
Advertisement

Upstox has alerted customers of a security breach that included contact data and KYC details of customers. The retail broking firm assured users that their funds and securities remain safe.

The development comes close on the heels of reports of data breaches at organisations like Facebook, LinkedIn, and MobiKwik.

“On receipt of e-mails claiming unauthorised access into our database, we have appointed a leading international cyber-security firm to investigate possibilities of breach of some KYC data stored in third-party data warehouse systems. This morning, hackers put up a sample of our data on the dark web,” a company spokesperson said in an e-mailed statement.

The spokesperson added that as a proactive measure, the company has initiated multiple security enhancements, particularly at the third-party warehouses, real-time 24x7 monitoring and additional ring-fencing of its network.

“As a matter of abundant caution, we have also initiated a secure password reset via OTP for all Upstox users. Upstox takes customer security extremely seriously. Funds and securities of all Upstox customers are protected and remain safe. We have also duly reported this incident to the relevant authorities,” the spokesperson said.

The spokesperson further said that at this point, “We don't know with certainty the number of customers whose data has been exposed.”

Upstox, backed by investors like Tiger Global and Ratan Tata, has over three million users. In an announcement note on the company website, Upstox co-founder and CEO Ravi Kumar said funds and securities of customers are protected and remain safe.

“Funds can only be moved to your linked bank accounts and your securities are held with the relevant depositories. As a matter of abundant caution, we have also initiated a secure password reset via OTP. Through this time, we have also strongly fortified our systems to the highest standards,” he said.

Kumar added that the company has restricted access to the impacted database, and added multiple security enhancements at all third-party data-warehouses.

The company has also ramped up its bug bounty programme to encourage ethical hackers to stress test its systems and protocols and help it identify any vulnerabilities from time to time.

The company has urged customers to always use unique strong passwords that are different from older versions and to not share OTPs with anyone. It also urged the customers to beware of online fraud and double-check the legitimacy of links and senders, to watch out for OTPs that they have requested and to alert the service provider in such events.


Why did LG give up on its smartphone business? We discussed this on Orbital, the Gadgets 360 podcast. Later (starting at 22:00), we talk about the new co-op RPG shooter Outriders. Orbital is available on Apple Podcasts, Google Podcasts, Spotify, and wherever you get your podcasts.

Affiliate links may be automatically generated - see our ethics statement for details.
Comments

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Loud Debates, Fun Banter: Clubhouse — an Outlet for the Middle East
Share on Facebook Gadgets360 Twitter Share Tweet Snapchat Share Reddit Comment google-newsGoogle News
 
 

Advertisement

Follow Us

Advertisement

© Copyright Red Pixels Ventures Limited 2024. All rights reserved.
Trending Products »
Latest Tech News »