{"id":41070,"date":"2021-04-20T13:34:26","date_gmt":"2021-04-20T10:34:26","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=41070"},"modified":"2025-08-30T17:06:28","modified_gmt":"2025-08-30T14:06:28","slug":"unknown-hacker-puts-dominos-india-customer-data-up-for-sale-for-10-btc","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/unknown-hacker-puts-dominos-india-customer-data-up-for-sale-for-10-btc\/","title":{"rendered":"Unknown hacker puts Domino\u2019s India customer data up for sale for 10 BTC"},"content":{"rendered":"<p>The Domino\u2019s Pizza chain in India, Jubilant FoodWorks, is reportedly the victim of a cyberattack. <a href=\"https:\/\/gadgets.ndtv.com\/internet\/news\/dominos-india-data-breach-13tb-files-customer-details-credit-card-numbers-2416829#:~:text=The%20hacker%20is%20selling%20the,roughly%20Rs.%204.25%20crores).&#038;text=Domino's%20India%20data%20that%20included,sale%20on%20the%20dark%20Web.\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"> Gadgets 360<\/a>.<\/p>\n<p><!--more--><\/p>\n<p>An unknown attacker allegedly stole customers\u2019 phone numbers and credit card data. Jubilant FoodWorks representatives told the publication that a security breach occurred but denied the leak.<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><em>&#8220;In line with our policy, we do not store financial information or credit card data of our customers, so such information was not compromised,&#8221; the company said.<\/em><\/p>\n<\/blockquote>\n<p>Hudson Rock&#8217;s chief technology officer Alon Gal posted screenshots of the dark-web listing. The unknown actor claimed to have hacked Domino\u2019s India and stolen 13 TB of confidential data.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Threat actor claiming to have hacked Domino&#8217;s India (<a href=\"https:\/\/twitter.com\/dominos?ref_src=twsrc%5Etfw\">@dominos<\/a>) and stealing 13TB worth of data.<\/p>\n<p>Information includes 180,000,000 order details containing names, phone numbers, emails, addresses, payment details, and a whopping 1,000,000 credit cards. <a href=\"https:\/\/t.co\/1yefKim24A\">pic.twitter.com\/1yefKim24A<\/a><\/p>\n<p>\u2014 Alon Gal (Under the Breach) (@UnderTheBreach) <a href=\"https:\/\/twitter.com\/UnderTheBreach\/status\/1383673094963822597?ref_src=twsrc%5Etfw\">April 18, 2021<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>According to another screenshot, the hacker listed the database for 10 BTC (~$550,200 at the time of writing). He demanded 50 BTC (~$2.7 million) from Domino\u2019s to keep the information from becoming public.<\/p>\n<blockquote class=\"twitter-tweet\" data-conversation=\"none\">\n<p lang=\"en\" dir=\"ltr\">The threat actor is looking for around $550,000 for the database and saying they have plans to build a search portal to enable querying the data. <a href=\"https:\/\/t.co\/o2UuA7LWXJ\">pic.twitter.com\/o2UuA7LWXJ<\/a><\/p>\n<p>\u2014 Alon Gal (Under the Breach) (@UnderTheBreach) <a href=\"https:\/\/twitter.com\/UnderTheBreach\/status\/1383673645516476419?ref_src=twsrc%5Etfw\">April 18, 2021<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Earlier in February 2021, on a hacker forum, a <a href=\"https:\/\/forklog.com\/en\/news\/hacker-lists-purported-trezor-user-database-developers-suspect-it-is-fake\"> database <\/a>, allegedly containing information on 342,619 users of Trezor hardware wallets, appeared. Company representatives suggested that the listing was fake.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Jubilant Foodworks, the company that runs Domino\u2019s Pizza in India, is reportedly the victim of a cyberattack.<\/p>\n","protected":false},"author":1,"featured_media":41071,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1188],"class_list":["post-41070","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-data-breach"],"aioseo_notices":[],"amp_enabled":true,"views":"24","promo_type":"1","layout_type":"1","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/41070","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=41070"}],"version-history":[{"count":1,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/41070\/revisions"}],"predecessor-version":[{"id":41072,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/41070\/revisions\/41072"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/41071"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=41070"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=41070"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=41070"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}