Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    If looks could kill, I’d be in real trouble | Social etiquette

    Prima Facie review – fiery one-woman play is flattened into a bland movie | Toronto film festival 2026

    There’s a surprisingly simple reason for England’s high antidepressant use: lots of people need them | Dean Burnett

    Facebook X (Twitter) Instagram
    Facebook X (Twitter) YouTube LinkedIn
    Naija Global News |
    Monday, September 14
    • Business
    • Health
    • Politics
    • Science
    • Sports
    • Education
    • Social Issues
    • Technology
    • More
      • Crime & Justice
      • Environment
      • Entertainment
    Naija Global News |
    You are at:Home»Technology»Tata Motors confirms it fixed security flaws, which exposed company and customer data
    Technology

    Tata Motors confirms it fixed security flaws, which exposed company and customer data

    onlyplanz_80y6mtBy onlyplanz_80y6mtOctober 29, 2025003 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email
    The TATA Motors emblem is seen at the TATA Motors booth in Kolkata, India, on March 7, 2025.
    Image Credits:Debarchan Chatterjee/ NurPhoto / Getty Images
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Indian automotive giant Tata Motors has fixed a series of security flaws that exposed sensitive internal data, including personal information of customers, company reports, and data related to its dealers.

    Security researcher Eaton Zveare told TechCrunch that he discovered the flaws in Tata Motors’ E-Dukaan unit, an e-commerce portal for buying spare parts for Tata-made commercial vehicles. Headquartered in Mumbai, Tata Motors produces passenger cars, as well as commercial and defense vehicles. The company has a presence in 125 countries worldwide and seven assembly facilities, per its website.

    Zveare said he found that the portal’s web source code included the private keys to access and modify data within Tata Motors’ account on Amazon Web Services, the researcher said in a blog post.

    The exposed data, Zveare told TechCrunch, included hundreds of thousands of invoices containing customer information, such as their names, mailing addresses, and permanent account number, or PAN, a ten-character unique identifier issued by the Indian government.

    “Out of respect for not causing some type of alarm bell or massive egress bill at Tata Motors, there were no attempts to exfiltrate large amounts of data or download excessively large files,” the researcher told TechCrunch.

    There were also MySQL database backups and Apache Parquet files that included various bits of private customer information and communication, the researcher noted.

    The AWS keys also enabled access to over 70 terabytes of data related to Tata Motors’ FleetEdge fleet-tracking software. Zveare also found backdoor admin access to a Tableau account, which included data of over 8,000 users.

    Techcrunch event

    San Francisco
    |
    October 27-29, 2025

    “As server admin, you had access to all of it. This primarily includes things like internal financial reports, performance reports, dealer scorecards, and various dashboards,” the researcher said.

    The exposed data also included API access to Tata Motors’ fleet management platform, Azuga, which powers the company’s test drive website.

    Shortly after discovering the issues, Zveare reported them to Tata Motors through the Indian computer emergency response team, known as CERT-In, in August 2023. Later in October 2023, Tata Motors told Zveare that it was working on fixing the AWS issues after securing the initial loopholes. However, the company did not say when the issues were fixed.

    Tata Motors confirmed to TechCrunch that all the reported flaws were fixed in 2023, but would not say if it notified affected customers that their information was exposed.

    “We can confirm that the reported flaws and vulnerabilities were thoroughly reviewed following their identification in 2023 and were promptly and fully addressed,” said Tata Motors communications head Sudeep Bhalla, when contacted by TechCrunch.

    “Our infrastructure is regularly audited by leading cybersecurity firms, and we maintain comprehensive access logs to monitor for unauthorized activity. We also actively collaborate with industry experts and security researchers to strengthen our security posture and ensure timely mitigation of potential risks,” said Bhalla.

    company confirms Customer data Exposed Fixed flaws Motors security Tata
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article2025 World Series Game 4: Live updates and analysis
    Next Article ‘Last-ditch push’: Pakistan-Afghanistan talks falter amid deep mistrust | Taliban News
    onlyplanz_80y6mt
    • Website

    Related Posts

    Florida sues Netflix over misleading parents over minors’ data collection | Florida

    September 10, 2026

    Instagram CEO denies company hid low use of teen safety feature in Meta trial | Meta

    August 26, 2026

    Largest review of its kind confirms benefits of tai chi and other Chinese exercises | Health

    August 24, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    The science influencers going viral on TikTok to fight misinformation

    February 17, 20262 Views

    We tried 15 lotions over three weeks. Here’s which our testers loved – and which left them high and dry | Life and style

    August 29, 20261 Views

    Salmonella cases in UK likely to rise until source of outbreak is found | Eggs

    August 29, 20261 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    At Chile’s Vera Rubin Observatory, Earth’s Largest Camera Surveys the Sky

    By onlyplanz_80y6mtJune 19, 2025

    SpaceX Starship Explodes Before Test Fire

    By onlyplanz_80y6mtJune 19, 2025

    How the L.A. Port got hit by Trump’s Tariffs

    By onlyplanz_80y6mtJune 19, 2025

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    The science influencers going viral on TikTok to fight misinformation

    February 17, 20262 Views

    We tried 15 lotions over three weeks. Here’s which our testers loved – and which left them high and dry | Life and style

    August 29, 20261 Views

    Salmonella cases in UK likely to rise until source of outbreak is found | Eggs

    August 29, 20261 Views
    Our Picks

    If looks could kill, I’d be in real trouble | Social etiquette

    Prima Facie review – fiery one-woman play is flattened into a bland movie | Toronto film festival 2026

    There’s a surprisingly simple reason for England’s high antidepressant use: lots of people need them | Dean Burnett

    Recent Posts
    • If looks could kill, I’d be in real trouble | Social etiquette
    • Prima Facie review – fiery one-woman play is flattened into a bland movie | Toronto film festival 2026
    • There’s a surprisingly simple reason for England’s high antidepressant use: lots of people need them | Dean Burnett
    • UK ministers urged to act after US flies out diplomat accused of possessing indecent images of children | Politics
    • The one change that worked: I was terrified of the dentist – until I found a very special one | Life and style
    © 2026 naijaglobalnews. Designed by Pro.
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions

    Type above and press Enter to search. Press Esc to cancel.