zerofox logo
Advisories

Breach Disclosure: Upkar Prakashan

|by Alpha Team

banner image

Standing Intelligence Requirements

For the most up to date list of ZeroFox Threat Research’s Intelligence Requirements, please visit:

https://cloud.zerofox.com/intelligence/advisories/14956

Details

Upkar Prakashan, an India-based publishing house which is in to publishing of books and magazines related to careers and competitive examinations, in which 217,518 email addresses and/or usernames were exposed, which were subsequently shared on a deep web platform. Of these, an assessed 217,423 records were successfully linked to hashed passwords. The threat actor noted that the data dump is from the year 2021. Other notable data fields observed in this package include: phone number, name, and physical address. The threat actor did not disclose the ultimate source of the data breach or how it was exploited.

Recommendations

  • If not already enabled, turn on the compromised credentials rule for all relevant entities and ensure relevant emails are entered for those entities, or reach out to [email protected] for assistance
  • If one of your entities receives an alert, ZeroFox recommends immediate password changes for the affected account
  • Enable multi-factor authentication for all of your organizational accounts to help mitigate phishing and credential stuffing attacks

Tags: apac,  data breach,  retail/cpg