Aditya Birla Fashion (ABFRL) Data Allegedly Leaked Online, Over 5 Million Email Addresses Breached

The data breach is said to include details of employees including salary details, religion, and their marital status.

Advertisement
By Jagmeet Singh and Nithya P Nair | Updated: 15 January 2022 15:18 IST
Highlights
  • ABFRL's alleged database included personal details of affected users
  • The database has been leaked by a hacker group known as ShinyHunters
  • ABFRL has not yet confirmed the leak

ABFRL owns brands such as Louis Philippe and Van Heusen

Photo Credit: Pixabay

Aditya Birla Fashion and Retail Limited (ABFRL), one of India's biggest fashion retail companies, has become a victim of a massive data breach. Data with over 5.4 million email addresses have been allegedly scraped from the Aditya Birla Group-owned platform and posted online. The alleged database includes personal customer information such as names, phone numbers, addresses, dates of births, order histories, credit card details, and passwords stored as Message-Digest algorithm 5 (MD5) hashes. The data breach is said to include details of employees including salary details, religion, and their marital status.

The alleged Aditya Birla Fashion and Retail database has been made public by a hacker group known as ShinyHunters. The news of a breach of ABFRL accounts was informed to some affected customers by data breach tracking website Have I Been Pwned. As many as 5,470,063 Aditya Birla Fashion and Retail Limited accounts are said to be breached and ransomed in December last year. The hacker group's ransom demand was allegedly rejected, and the data was subsequently posted publicly on a popular hacking forum.

Aditya Birla Fashion and Retail (ABFRL) data breach was informed to some affected customers by Have I Been Pwned

Advertisement

 

To check if you have been a part of the breach, visit the Have I Been Pwned website and enter your email or phone number. Gadgets 360 has reached out to ABFRL for a comment on the breach. This report will be updated when we hear back.

Advertisement

"It's an enormous amount of data and it includes source code as well," Troy Hunt, the creator of the Have I Been Pwned website, told Gadgets 360. "There's a lot of personal information on customers, but also on staff. I've got no idea why they'd store sensitive PII like religion, along with very personal things like marital status. It's not clear why this would be required in order for someone to fulfil their job."

Advertisement

Hunt also noted that there was a complete lack of disclosure from ABFRL on the matter.

"The data is very extensively circulating on hacking forums yet as far as I know, they've yet to inform customers. That's inexcusable," he said.

Advertisement

ShinyHunters had access to the ABFRL database for many weeks, as per a report by RestorePrivacy. According to the report, the information which was allegedly hacked is claimed to include the details of ABFRL employee data like full name, email, birth date, physical address, gender, age, marital status, salary, religion, and more. It is also said to have ABFRL customer data and hundreds of thousands of invoices and the website source code of the company and server reports.

Gadgets 360 was able to independently verify the existence of the forum post created by ShinyHunters to announce the data leak.

"We tried to get in touch with ABFRL. They sent a negotiator but he was just stalling (the offer was more than reasonable for a 'US$ 45-Billion conglomerate'. So we decided to leak everything for you guys including their famous divisions such as Pantaloons.com or Jaypore.com," the hackers group noted in the post dated January 11. However, the exact amount requested for payment is unknown.

Aditya Birla Fashion and Retail (ABFRL) data has allegedly been leaked by a hacker group

 

As per the report by RestorePrivacy, the data includes server logs and vulnerability reports for ABFRL Indian clothing brands including American Eagle, Pantaloons, Forever21, The Collective, Van Heusen, Peter England, Planet Fashion, and Shantanu & Nikhil.

The leaked database is said to include financial and transaction details with 21GB of ABFRL invoices. ShinyHunters informed RestorePrivacy that they acquired ABFR customers' credit card data, specifically from Pantaloons. ABFRL staff is said to know that ShinyHunters is in possession of such data.


Why are Galaxy S21 FE and OnePlus 9RT launching now? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Top OTT Releases of the Week: Kantara Chapter 1, Lokah Chapter 1, Idli Kadai, and More
  2. iQOO Neo 11 With Snapdragon 8 Elite SoC Launched: Price, Specifications
  3. Vivo X300 Series With 200-Megapixel Zeiss Camera Launched Globally
  4. Reliance Offers Free 18-Month Google AI Pro with Gemini, Veo to Jio Users
  5. Gemini 3 AI Model Will Be Released Soon, Says Google CEO Sundar Pichai
  6. Samsung Galaxy S26 Series Teased to Launch With These Notable Upgrades
  7. Apple CEO Confirms Partnership Plans for AI Services Beyond OpenAI
  8. Realme GT 8 Pro Will Launch in India in November With This Chipset
  1. Realme GT 8 Pro India Launch Date Tipped After Company Confirms November Debut
  2. iPhone 17 Series, iPhone Air Join Apple’s Self Service Repair Programme Across US, Canada and Europe
  3. iQOO 15 Indian Variant Allegedly Surfaces on Geekbench With Snapdragon 8 Elite Gen 5 Chipset
  4. Apple CEO Reportedly Confirms Partnership Plans Beyond OpenAI; Revamped Siri Expected to Launch in 2026
  5. Scientists May Have Finally Solved the Sun’s Mysteriously Hot Atmosphere Puzzle
  6. Vivo X300 Series Launched Globally With 200-Megapixel Zeiss Camera, Up to 6.78-Inch Display: Price, Features
  7. Canva Introduces Revamped Video Editor, New AI Tools and a Marketing Platform
  8. Thode Door Thode Paas OTT Release Date: Know When and Where to Watch it Online
  9. Blackmail Now Streaming Online: Know Where to Watch This Tamil Crime Thriller Movie
  10. Eva Husson’s Playdate OTT Release Date: When and Where to Watch it Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.