JustDial’s Data Breach Involves Over 100 Million Users

Aadhya Khatri - Apr 18, 2019


JustDial’s Data Breach Involves Over 100 Million Users

The latest data breach scandal comes from JustDial and it might have leaked personal information of over 100 million users

There is a new data breach happened recently that exposed the information of over 100 million people. The company at fault of this scandal is JustDial, a firm providing local search for different services in India. What was leaked are names, emails, mobile numbers, gender, address, and D.O.B. The incident was first reported by Rajshekhar Rajaharia, a security researcher & growth hacker, on his Facebook page.

Screenshot 7

According to Rajaharia, 7 out of 10 cases in this incident have used JustDial’s customer care number. Other information like users’ occupation, which is required when they sign up for its service is also leaked. He had tried to contact the company as well as its security team but failed.

Rajaharia’s report reveals that the leading cause of this data breach is an API endpoint that lets anyone online gets access. This endpoint has been around since 2015, and no one can be sure if a similar breach had happened, but we did not know about it. If someone wants to harvest these data, they can do it in real-time with the API weakness.

Please note that the problematic API endpoint is no longer in use and JustDial has a new, protected one now that can protect these data. With this improvement, the new website is more secure than the old one. However, Rajaharia has found more than one API endpoints that can open the door for identity theft.

According to The Economic Times, JustDial had contacted Rajaharia about this incident, but at the time of writing, the issue has not been fixed yet. The company also denied the claim of a data breach, saying that they had encrypted the old apps and there has been no leak regarding financial information. There is also a tech-audit in charge of finding such an issue and deal with it if there is.

Comments

Sort by Newest | Popular

Next Story

Read more

Anticipating the Samsung Galaxy S26 and S26+: Key Rumors and Specs

Mobile- Feb 17, 2026

Anticipating the Samsung Galaxy S26 and S26+: Key Rumors and Specs

The Samsung Galaxy S26 series is on the horizon, sparking excitement among tech enthusiasts.

Xiaomi Launches Affordable Tracker to Compete with Apple's AirTag

Mobile- Feb 16, 2026

Xiaomi Launches Affordable Tracker to Compete with Apple's AirTag

For users tired of ecosystem lock-in or high prices, the Xiaomi Tag represents a compelling, no-frills option that delivers core functionality at a fraction of the cost.

Google's Project Toscana: Elevating Pixel Face Unlock to Rival Apple's Face ID

ICT News- Feb 18, 2026

Google's Project Toscana: Elevating Pixel Face Unlock to Rival Apple's Face ID

As the smartphone landscape evolves, Google's push toward superior face unlock technology underscores its ambition to close the gap with Apple in user security and convenience.