HCLTech Refutes Cyberattack Claims, Clarifying Alleged Leaked Employee Data Is Dated

Written By: Radhika Jindal Published:

In response to the recent cyber threats targeting its security, Indian software and IT services firm HCLTech has stated that the data of the company that is available on dark web forums seems to be outdated. In a stock exchange filing, the technology company based in Noida, India, has reassured its customers and investors that the core infrastructure of its organization is completely safe and is not at all compromised.

The disclosure comes after the recent posting by an unknown threat actor of a database on a dark web forum, where he said that the database contained personal information of over 250,000 employees of HCLTech, including the name of the person, corporate email ID, designation, phone number, office location details, and service account logs. 

As per his claims, the data was extracted from the Microsoft Azure tenant environment through compromised administrative credentials. After conducting an internal review of the security of its organization, the company has stated that there seems to be no sign of compromise in its current live systems, and the data is indeed quite outdated.

The company stated that all the data of their clients remains intact, although the forensic team is still working on a complete investigation of the full extent of the leakage of the documents. This attack marks a trend of cybersecurity threats facing leading enterprise service providers in the region. 

The Indian rival, IT services provider Tata Consultancy Services (TCS), revealed an alert on their compromised, four-year-old database of employees’ credentials, along with financial institutions such as Bank of Baroda experiencing targeted credential attacks. With cybercriminals using automated techniques to search for exposed credentials and legacy databases, leading enterprise IT companies face constant pressure. 

In this case, the fast response of HCLTech shows how important proactive monitoring is to keep clients’ trust and isolate the legacy data exposure from the active operational environment.

About the Author
Radhika Jindal

<p><strong>Tech Reporter</strong></p> <p>Radhika Jindal is a Tech Reporter at Breaking Arc. She covers technology, gadgets, web trends, and the IT industry. For over a decade, she has been covering technology events, product launches, and industry developments, having previously reported for Times of India (Times Group) and Cyber Media Services, where she wrote for PCQuest, Data Quest, and Voice and Data. Her reports keep readers updated about how recent developments are affecting their everyday lives. </p> <p>With careful research and verified information from official sources, including lab tests, direct interactions with IT decision-makers, and industry benchmarks, Radhika gives reliable information to the readers. Her educational background of B.Tech in Information Technology from Delhi College of Engineering, along with a diploma in Broadcast Media and English Journalism from the Indian Institute of Mass Communication, gives her a strong technical and journalistic foundation. </p> <div class="h5">Areas of Coverage</div> <ul class="mb-5"> <li>Technology</li> <li>Gadgets & Devices</li> <li>IT Industry</li> <li>Web Trends</li> <li>Product Reviews & Buying Guides</li> </ul> <div class="h5">Editorial Standards</div> <p>Radhika follows Breaking Arc's editorial standards by prioritizing:</p> <ul class="mb-5"> <li>Fact-based and source-backed reporting</li> <li>Independent verification of information</li> <li>Transparency and accountability</li> <li>Regular updates and corrections when required</li> <li>Clear separation between news and opinion</li> </ul> <div class="h5">Languages</div> <ul class="mb-5"> <li>English</li> <li>Hindi</li> </ul>

Read more