Bajaj Auto Faces Ransomware Attack, Operations Reported Safeguarded
Article Content
- •Bajaj Auto experienced a ransomware attack on June 23, 2026, impacting its systems.
- •Immediate containment measures were activated, and the incident was reported to CERT-In.
- •Details on data compromise or operational disruptions have not been disclosed.
On June 23, 2026, Bajaj Auto reported a ransomware attack affecting its systems and those of its subsidiary, Bajaj Auto Technology Ltd (BATL). The attack was detected around 8 AM IST, prompting immediate containment measures by the company's technical teams and external cybersecurity experts. While the company confirmed that its systems were impacted, it did not disclose specific details regarding data compromise or operational disruptions. The incident has been reported to the Indian Computer Emergency Response Team (CERT-In) as per regulatory requirements. Bajaj Auto stated that its response measures have so far been successful in controlling the situation. The attack highlights the growing trend of ransomware targeting the automotive and manufacturing sectors, where operational disruptions can lead to significant financial losses. Further updates are anticipated as the investigation continues.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (22)
Following this threat?
Track Bajaj Auto in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…