Hacker Puts 23TB Database Claimed to Contain Personal Data of Millions of Chinese Citizens for Sale

A sample of the database suggests the hacker could have accessed data from a variety of sources, including facial recognition systems and census data.

Advertisement
By Agence France-Presse | Updated: 5 July 2022 15:45 IST
Highlights
  • China maintains an extensive nationwide surveillance infrastructure
  • The 23TB hacked database is being sold for 10 Bitcoins
  • The record is said to contain summaries of incidents reported to police

The files were reportedly hacked from Alibaba Cloud servers

Photo Credit: Pexels/ Sora Shimazaki

A hacker claiming to have stolen personal data from hundreds of millions of Chinese citizens is now selling the information online.

A sample of 750,000 entries posted online by the hacker showed citizens' names, mobile phone numbers, national ID numbers, addresses, birthdays, and police reports they had filed.

AFP and cybersecurity experts have verified some of the citizen data in the sample as authentic, but the scope of the entire database is hard to determine.

Advertisement

Advertised on a forum late last month but only picked up by cybersecurity experts this week, the 23TB database — which the hacker claims contains the records of a billion Chinese citizens — is being sold for 10 Bitcoins (approximately Rs. 16,00,000).

"It looks like it's from multiple sources. Some are facial recognition systems, others appear to be census data," said Robert Potter, co-founder of cybersecurity firm Internet 2.0.

Advertisement

"There is no verification of the total number of records and I'm sceptical of the one billion citizens number," he added.

China maintains an extensive nationwide surveillance infrastructure that siphons massive amounts of data from its citizens, ostensibly for security purposes.

Advertisement

Growing public awareness of data privacy has led to stronger data protection laws targeting individuals and private firms in recent years, although there is little citizens can do to stop the state from collecting their data.

Some of the leaked data appeared to be from express delivery user records, while other entries contained summaries of incidents reported to police in Shanghai over a span of more than a decade, with the most recent from 2019.

Advertisement

The incident reports ranged from traffic accidents and petty theft to rape and domestic violence.

Heads will roll

At least four people out of over a dozen contacted by AFP confirmed their personal details, such as names and addresses, as listed in the database.

"So that's why so many people have been adding my WeChat over the past few days. Should I report this to the police?" said one woman surnamed Hao.

"I'm really confused about why my personal data has been leaked," said another woman surnamed Liu.

In replies to the original post, users speculated that the data may have been hacked from an Alibaba Cloud server where it was apparently being stored by the Shanghai police.

Potter, the cybersecurity analyst, confirmed that the files were hacked from Alibaba Cloud, which did not respond to an AFP request for comment.

If confirmed, the breach would be one of the largest in history and a major violation of the recently approved Chinese data protection laws.

"Heads will roll over this one," tweeted Kendra Schaefer, tech partner at research consultancy Trivium China.

China's cybersecurity administration did not respond to a fax requesting comment.


What are the best tablets? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Alibaba Cloud, Alibaba, China, Shanghai
Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus Pad Go 2 Launched in India With 10,050mAh Battery, 5G Connectivity
  2. OnePlus 15R With 7,400mAh Battery, Snapdragon 8 Gen 5 Debuts at This Price
  3. Realme 16 Pro+ 5G Listed on Certification Website With These Specifications
  4. Apple's iPhone 18 Pro, iPhone Fold May Feature a Relocated Selfie Camera
  5. OnePlus 15, Nord CE 5 Prices Slashed During Community Sale: See Offers
  6. Dhurandhar OTT Release Date: What We Know So Far
  7. Google Pay Brings Its First Co-Branded UPI-Powered Digital Credit Card
  8. JWST observations may unlock new clues about dark matter
  9. iPhone Air 2 to Launch With Two Rear Cameras, Lower Price Tag: Report
  1. James Webb Space Telescope Could Help Reveal Dark Matter in a Way Scientists Did Not Anticipate
  2. Interstellar Comet 3I/ATLAS Nears Earth on Dec. 19, Offering Rare Insights Into Cosmic Visitors
  3. Europe’s Ariane 6 Rocket Lifts Off With First Galileo Satellites, Boosting Europe’s Navigation Network
  4. NASA’s Parker Solar Probe Observes Solar Wind Making ‘U-Turn’, Shedding Light on Space Weather
  5. ESA Reveals City-Size ‘Cosmic Butterfly’ Crater on Mars Containing Signs of Ancient Water
  6. The Holy Grail of Eris OTT Release: Know When and Where to Watch it Online
  7. OnePlus Pad Go 2 Launched in India With 10,050mAh Battery, 12.1-Inch Display and 5G Connectivity: Price, Features
  8. OnePlus 15R Launched in India With 7,400mAh Battery, Snapdragon 8 Gen 5 SoC: Price, Specifications
  9. Flex By Google Pay: Google Partners With Axis Bank to Introduce UPI-Powered, Digital Credit Card
  10. Warner Bros. Plans to Reject Paramount Bid on Funding, Terms
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.