Aditya Birla Fashion (ABFRL) Data Allegedly Leaked Online, Over 5 Million Email Addresses Breached

The data breach is said to include details of employees including salary details, religion, and their marital status.

Advertisement
By Jagmeet Singh and Nithya P Nair | Updated: 15 January 2022 15:18 IST
Highlights
  • ABFRL's alleged database included personal details of affected users
  • The database has been leaked by a hacker group known as ShinyHunters
  • ABFRL has not yet confirmed the leak

ABFRL owns brands such as Louis Philippe and Van Heusen

Photo Credit: Pixabay

Aditya Birla Fashion and Retail Limited (ABFRL), one of India's biggest fashion retail companies, has become a victim of a massive data breach. Data with over 5.4 million email addresses have been allegedly scraped from the Aditya Birla Group-owned platform and posted online. The alleged database includes personal customer information such as names, phone numbers, addresses, dates of births, order histories, credit card details, and passwords stored as Message-Digest algorithm 5 (MD5) hashes. The data breach is said to include details of employees including salary details, religion, and their marital status.

The alleged Aditya Birla Fashion and Retail database has been made public by a hacker group known as ShinyHunters. The news of a breach of ABFRL accounts was informed to some affected customers by data breach tracking website Have I Been Pwned. As many as 5,470,063 Aditya Birla Fashion and Retail Limited accounts are said to be breached and ransomed in December last year. The hacker group's ransom demand was allegedly rejected, and the data was subsequently posted publicly on a popular hacking forum.

Aditya Birla Fashion and Retail (ABFRL) data breach was informed to some affected customers by Have I Been Pwned

Advertisement

 

To check if you have been a part of the breach, visit the Have I Been Pwned website and enter your email or phone number. Gadgets 360 has reached out to ABFRL for a comment on the breach. This report will be updated when we hear back.

Advertisement

"It's an enormous amount of data and it includes source code as well," Troy Hunt, the creator of the Have I Been Pwned website, told Gadgets 360. "There's a lot of personal information on customers, but also on staff. I've got no idea why they'd store sensitive PII like religion, along with very personal things like marital status. It's not clear why this would be required in order for someone to fulfil their job."

Advertisement

Hunt also noted that there was a complete lack of disclosure from ABFRL on the matter.

"The data is very extensively circulating on hacking forums yet as far as I know, they've yet to inform customers. That's inexcusable," he said.

Advertisement

ShinyHunters had access to the ABFRL database for many weeks, as per a report by RestorePrivacy. According to the report, the information which was allegedly hacked is claimed to include the details of ABFRL employee data like full name, email, birth date, physical address, gender, age, marital status, salary, religion, and more. It is also said to have ABFRL customer data and hundreds of thousands of invoices and the website source code of the company and server reports.

Gadgets 360 was able to independently verify the existence of the forum post created by ShinyHunters to announce the data leak.

"We tried to get in touch with ABFRL. They sent a negotiator but he was just stalling (the offer was more than reasonable for a 'US$ 45-Billion conglomerate'. So we decided to leak everything for you guys including their famous divisions such as Pantaloons.com or Jaypore.com," the hackers group noted in the post dated January 11. However, the exact amount requested for payment is unknown.

Aditya Birla Fashion and Retail (ABFRL) data has allegedly been leaked by a hacker group

 

As per the report by RestorePrivacy, the data includes server logs and vulnerability reports for ABFRL Indian clothing brands including American Eagle, Pantaloons, Forever21, The Collective, Van Heusen, Peter England, Planet Fashion, and Shantanu & Nikhil.

The leaked database is said to include financial and transaction details with 21GB of ABFRL invoices. ShinyHunters informed RestorePrivacy that they acquired ABFR customers' credit card data, specifically from Pantaloons. ABFRL staff is said to know that ShinyHunters is in possession of such data.


Why are Galaxy S21 FE and OnePlus 9RT launching now? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Redmi Pad 2 Pro 5G Will Launch in India Soon: See Expected Features
  2. Ethirneechal Thodargiradhu Now Streaming on SunNXT: What You Need to Know
  3. OTT Releases of the Week: Thamma, Mrs Deshpande, Nayanam, and More
  4. Xiaomi 17 Ultra With Leica-Tuned Cameras Confirmed to Launch Soon
  5. Nvidia's GeForce RTX 50 Series GPUs Are About to Be Scarce
  6. OnePlus Watch Lite With Up to 10 Days Battery Life Launched: See Price
  7. OnePlus 15s Visits BIS Certification Website; Could Launch in India Soon
  8. Truecaller's Voicemail Feature Is Now Free for Android Users in India
  1. Physicists Push Superconducting Diodes to Higher Temperatures
  2. NASA’s Perseverance Rover Poised for Years of Exploration Across Jezero Crater
  3. James Webb Space Telescope Could Illuminate Dark Matter in an Unexpected Way
  4. James Webb Confirms First Runaway Supermassive Black Hole Rocking Through Space
  5. Interstellar Comet 3I/ATLAS to Make Closest Approach to Earth on December 19
  6. The Roofman Now Streaming Online: Everything You Need to Know
  7. Adobe Firefly Platform Updated With New AI Models and Tools, Offers Limited-Time Unlimited Generations
  8. Boat Valour Ring 1 Launched in India With Heart Rate Variability Tracking, Up to 15-Day Battery Life: Price, Features
  9. Call of Duty: Black Ops 7 Was the Best-Selling Game in the US in November, but Trails Battlefield 6 in 2025
  10. Truecaller Voicemail Feature Launched for Android Users in India With Transcription in 12 Regional Languages
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.