Defence Research and Development Organisation: Data breach at DRDO? 31 GB of allegedly stolen sensitive data for sale on dark web for $8,000

Defence Research and Development Organisation: Data breach at DRDO? 31 GB of allegedly stolen sensitive data for sale on dark web for $8,000

DRDO Faces Suspected Data Breach as 31GB of Sensitive Missile Technology Data Surfaces on Dark Web

A potential major data breach at India’s Defence Research and Development Organisation (DRDO) has come to light after a threat actor listed 31GB of allegedly stolen sensitive data for sale on the dark web for $8,000. The leaked samples include internal documentation on the electronics architecture of an advanced guidance sensor used in precision-guided missiles and smart munitions.

Intelligence agencies first flagged the breach last Saturday, though the sample files are dated 2020, leaving investigators uncertain about when the data was exfiltrated. A senior intelligence official suggested the breach could be older, noting that ransomware groups often leak stolen data in phases to maximize extortion pressure. A full timeline will only emerge after a thorough analysis of the dataset and available evidence.

The incident has reignited concerns over data governance in critical government agencies, with officials emphasizing that repeated cybersecurity advisories have been issued to enforce stricter protocols. While cybersecurity measures have improved, experts warn that no system is impervious to breaches, underscoring the need for continuous vigilance and defense upgrades.

Separately, authorities are also investigating a suspected major data breach at a leading public sector bank, highlighting broader vulnerabilities in organizational cyber resilience. The incidents raise questions about whether institutions are adequately investing in IT infrastructure upgrades and software patching to counter evolving threats.

Source: https://www.theweek.in/news/defence/2026/07/27/drdo-data-breach-defence-security.html

Defence Research and Development Organisation cybersecurity rating report: https://www.rankiteo.com/company/defence-research-and-development-organisation

"id": "DEF1785177445",
"linkid": "defence-research-and-development-organisation",
"type": "Breach",
"date": "7/2026",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Defence',
                        'location': 'India',
                        'name': 'Defence Research and Development Organisation '
                                '(DRDO)',
                        'type': 'Government Agency'}],
 'data_breach': {'data_exfiltration': 'Yes',
                 'personally_identifiable_information': 'No',
                 'sensitivity_of_data': 'High (Missile technology, '
                                        'precision-guided munitions)',
                 'type_of_data_compromised': 'Internal documentation on '
                                             'electronics architecture of '
                                             'advanced guidance sensors'},
 'description': 'A potential major data breach at India’s Defence Research and '
                'Development Organisation (DRDO) has come to light after a '
                'threat actor listed 31GB of allegedly stolen sensitive data '
                'for sale on the dark web for $8,000. The leaked samples '
                'include internal documentation on the electronics '
                'architecture of an advanced guidance sensor used in '
                'precision-guided missiles and smart munitions.',
 'impact': {'brand_reputation_impact': 'High',
            'data_compromised': '31GB of sensitive data'},
 'initial_access_broker': {'data_sold_on_dark_web': 'Yes'},
 'investigation_status': 'Ongoing',
 'lessons_learned': 'Need for continuous vigilance, defense upgrades, stricter '
                    'data governance protocols, and investment in IT '
                    'infrastructure and software patching.',
 'motivation': 'Financial Gain (Extortion)',
 'ransomware': {'data_exfiltration': 'Yes', 'ransom_demanded': '$8,000'},
 'recommendations': 'Enforce stricter cybersecurity protocols, upgrade IT '
                    'infrastructure, improve software patching, and enhance '
                    'monitoring and response mechanisms.',
 'references': [{'source': 'Intelligence agencies report'}],
 'title': 'DRDO Suspected Data Breach: 31GB of Sensitive Missile Technology '
          'Data on Dark Web',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.