Skip to content
Search

Latest Stories

Submit Guest Post

Data breach exposes files linked to India's Kudankulam nuclear plant

Reliance Group confirms a partial breach as investigators examine nearly 19,000 leaked files linked to the Kudankulam nuclear power project

kudankulam-nuclear-plant

FILE PHOTO: Police patrol on a beach near Kudankulam nuclear power project in the southern Indian state of Tamil Nadu September 12, 2012.

REUTERS/Adnan Abidi

Highlights

  • Reliance Group confirms a partial data breach involving a third-party server.
  • Nearly 19,000 files linked to the Kudankulam project appeared on the dark web.
  • Experts warn the documents could help attackers understand the plant's support infrastructure.

THOUSANDS of documents linked to India's largest nuclear power plant have been published on the dark web following a cyber breach affecting one of the project's contractors, raising concerns over the security of sensitive infrastructure information.


The files, claimed by the ransomware group World Leaks, relate to the Kudankulam Nuclear Power Plant in Tamil Nadu, a key part of India's plans to expand nuclear energy generation.

Reliance Group, led by businessman Anil Ambani and one of the project's contractors, confirmed that a "partial breach" had affected data stored on a server hosted by Indian data centre provider Yotta. The company said the incident had been reported to the government but did not disclose what information had been compromised.

Independent cybersecurity researcher Rakesh Krishnan said almost 19,000 files, amounting to 14.3GB of data, have been available online since June 11. Reuters reviewed the documents but said it could not independently verify their authenticity.

The files, dated between 2016 and mid-2025, appear to include blueprints for parts of the facility, supplier information, inspection records, meeting minutes, equipment reviews and insurance documents. They represent what appears to be the most sensitive portion of about 858,000 Reliance files published by the ransomware group.

Reliance Infrastructure secured the contract in 2018 to design and build infrastructure for Units 3 and 4 of the Kudankulam plant. Both reactors remain under construction and are expected to begin operations in 2027, adding a combined 2,000 megawatts of electricity generation capacity.

World Leaks has previously claimed responsibility for cyberattacks targeting major companies, including Tata Group and Nike. The group typically publishes stolen data after organisations refuse to pay ransom demands. It did not respond to Reuters' requests for comment.

'Information related only to common service facilities'

The Nuclear Power Corporation of India (NPCIL), which operates the country's nuclear power stations, said after publication of the Reuters report that the information available online related only to common service facilities and did not concern nuclear safety or nuclear security systems.

A source familiar with the matter said NPCIL has been in contact with Reliance over the breach and that the Indian Computer Emergency Response Team (CERT-In) is investigating the incident. India's Department of Atomic Energy declined to comment, while CERT-In and the Prime Minister's Office did not respond to Reuters.

Yotta said it detected suspicious activity on a Reliance Infrastructure server on May 29 and immediately stopped the suspected ransomware attempt. It added that Reliance informed it at the end of June that external threat actors had claimed a data breach. Yotta said it has been unable to verify those claims but has shared the findings of its technical investigation with Reliance and is supporting the ongoing inquiry.

Although the leaked documents do not appear to involve the nuclear reactors' core systems, which are supplied by Russia's state-owned Rosatom, they reportedly include ventilation and cooling system drawings for Units 3 and 4, the layout of a common control room, supplier proposals, approved vendor lists, inspection records and photographs of equipment.

One document also appears to show an insurance policy worth $112 million covering Units 3 and 4 against acts of terrorism.

Cybersecurity experts said such information could still be valuable to attackers by revealing details about support infrastructure, contractors and supply chains.

Nickolas Roth, senior director at the Nuclear Threat Initiative, said the documents could help adversaries identify who has access to the project and which systems they can reach.

The incident follows a malware attack linked to a North Korean hacking group on Kudankulam's administrative network in 2019. NPCIL said at the time that the plant's operational systems had not been affected.

(with inputs from Reuters)

Add EasternEye As Your Trusted Source
preferred source on google news

More For You

Meta

A landmark ruling places child safety at the centre of the debate over social media accountability

Getty Images

US court hits Meta with another £421m over child safety failures, labels firm a ‘public nuisance’

  • Meta's total penalty in the New Mexico case has reached £700 million ($942 million).
  • A US judge likened the company's platforms to a factory creating public harm through its recommendation systems.
  • The ruling also orders sweeping changes to how Instagram and Facebook operate for users under 18.

Meta has been hit with another major legal setback after a judge in the US state of New Mexico ordered the company to pay £421 million ($567 million) over claims that its platforms failed to protect children from online harm. The latest order takes the company's total penalty in the case to £700 million ($942 million), making it the biggest financial punishment Meta has faced over child safety.

The case is drawing attention well beyond New Mexico because the court went a step further than simply imposing a fine. Judge Bryan Biedscheid ruled that Meta's platforms amounted to a "public nuisance", comparing the company to a factory whose main product is advertising while the "pollution" is the psychological harm and sexual exploitation suffered by children, as quoted in a news report.

Keep ReadingShow less