Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Threat Actors Claiming Breach of Airpay Payment Gateway

Threat Actors Claiming Breach of Airpay Payment Gateway

Posted on July 28, 2025July 28, 2025 By CWS

Cybercriminals have allegedly compromised Airpay, considered one of India’s outstanding digital fee gateway suppliers, exposing delicate monetary knowledge of 1000’s of customers and companies. 

The risk actors are at present promoting the corporate’s full database on darkish internet marketplaces, elevating severe considerations concerning the safety of India’s digital fee infrastructure.

Key Takeaways1.  Indian fee gateway allegedly compromised by way of credential injection assault.2. Risk actors declare ongoing system entry by means of backdoors in fee infrastructure.3. KYC data, financial institution particulars, PAN numbers, enterprise knowledge, and make contact with info allegedly compromised.

Credential Injection Compromise Cost Infrastructure

In accordance with Every day Darkish Net reviews, the breach reportedly occurred by means of a complicated credential injection assault, permitting cybercriminals to achieve persistent entry to Airpay’s core methods. 

This assault vector usually includes injecting malicious credentials into authentication mechanisms, bypassing commonplace safety protocols, and enabling unauthorized entry to backend databases and API endpoints.

The attackers declare to have maintained deep system entry, suggesting they might have established persistent backdoors inside the fee gateway’s infrastructure. 

This sort of extended entry allows risk actors to conduct intensive knowledge exfiltration operations whereas remaining undetected by safety monitoring methods. 

The assault methodology signifies superior persistent risk (APT) traits, with the criminals probably sustaining entry for prolonged intervals to maximise knowledge assortment.

Cost gateways like Airpay course of 1000’s of transactions each day, dealing with delicate fee card business (PCI) compliant knowledge by means of encrypted channels. 

The alleged compromise of such infrastructure represents a major breach in India’s fintech ecosystem, significantly given Airpay’s function in facilitating service provider fee processing and digital pockets providers.

In depth Information Exfiltration 

The compromised dataset allegedly comprises complete personally identifiable info (PII) and monetary data spanning a number of classes of delicate knowledge. 

The risk actors declare to own full Know Your Buyer (KYC) data, together with full authorized names, dates of beginning, Everlasting Account Numbers (PAN), and residential addresses.

Alleged Breach Declare

Banking info kinds probably the most important part of the breach, with attackers claiming entry to checking account numbers, Indian Monetary System Codes (IFSC), department particulars, and account holder names. 

This monetary knowledge may allow subtle social engineering assaults and potential unauthorized fund transfers.

Company intelligence knowledge consists of registered enterprise names, annual turnover figures, and Items and Companies Tax (GST) mappings, offering complete enterprise profiles that might be exploited for focused company fraud schemes. 

Contact info, together with cellular numbers and e-mail addresses linked to consumer accounts, creates further vectors for phishing and id theft operations.

The alleged breach highlights important vulnerabilities in fee gateway safety structure, emphasizing the necessity for enhanced multi-factor authentication, API safety protocols, and steady safety monitoring methods inside India’s digital funds infrastructure.

Expertise sooner, extra correct phishing detection and enhanced safety for your online business with real-time sandbox analysis-> Attempt ANY.RUN now

Cyber Security News Tags:Actors, Airpay, Breach, Claiming, Gateway, Payment, Threat

Post navigation

Previous Post: Women’s Dating App Tea Exposes Selfie Images of 13,000 Users
Next Post: NASCAR Confirms Personal Information Stolen in Ransomware Attack

Related Posts

Hackers Flooded npm Registry Over 43,000 Spam Packages Survived for Almost Two Years Hackers Flooded npm Registry Over 43,000 Spam Packages Survived for Almost Two Years Cyber Security News
Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth Cyber Security News
Hackers Using Dedicated Phishlet to Launch FIDO Authentication Downgrade Attacks Hackers Using Dedicated Phishlet to Launch FIDO Authentication Downgrade Attacks Cyber Security News
Smart Electric Vehicles Face Hidden Cyber Vulnerabilities Exposing Drivers to Risks Smart Electric Vehicles Face Hidden Cyber Vulnerabilities Exposing Drivers to Risks Cyber Security News
Microsoft Teams Meeting Access Issues After Edge Update Microsoft Teams Meeting Access Issues After Edge Update Cyber Security News
Ransomware Attack on European Organizations Surge as Hackers Leveraging AI-Tools for Attacks Ransomware Attack on European Organizations Surge as Hackers Leveraging AI-Tools for Attacks Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Cybersecurity: Key Developments and Emerging Threats
  • Trellix Data Breach Exposes Source Code to RansomHouse
  • Cyberattack Disrupts Canvas Platform as Finals Near
  • Linux PamDOORa Backdoor Exploits PAM to Steal SSH Credentials
  • DarkMoon Launches AI-Driven Penetration Testing Platform

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Cybersecurity: Key Developments and Emerging Threats
  • Trellix Data Breach Exposes Source Code to RansomHouse
  • Cyberattack Disrupts Canvas Platform as Finals Near
  • Linux PamDOORa Backdoor Exploits PAM to Steal SSH Credentials
  • DarkMoon Launches AI-Driven Penetration Testing Platform

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark