TCS says received alerts alleging exposure of some employee data

August 10, 2026 2 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: moneycontrol.com

Threat Risk: Low
Victim: Tata Consultancy Services (TCS) employees
Incident: Alleged exposure of legacy employee data through password spraying and MFA fatigue.
Impact: Limited exposure of basic employee information from over four years ago with no impact on customer systems.
Attacker: Unidentified threat actors
Analysis: The incident involves an alleged leak of basic employee data stemming from an attack utilizing password spraying and MFA fatigue. While TCS reports that the data is over four years old and current systems remain secure, the attempt highlights the persistent risk of authentication-based attacks.
Recommendations: Implement robust MFA policies to prevent fatigue attacks; Enforce strong password policies and account lockout mechanisms; Regularly monitor for leaked corporate credentials on the dark web
Source: Moneycontrol

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Latest Developments

Update — 2026-08-11 08:19 UTC

Exposure of legacy employee-related data. Limited exposure of basic employee information with no impact on customer data or active operations. The incident involves the exposure of basic employee data that is reportedly over four years old. TCS states that current systems and customer data remain untouched. The exposure appears to stem from an outdated vulnerability that the company claims to have mitigated years ago.

Corroborating source: thehindu.com

Leave a Reply

Your email address will not be published. Required fields are marked *