BENGALURU: TCS informed the stock exchanges on Monday that it received threat-intelligence alerts alleging possible exposure to certain employee information but said its investigation found no credible evidence of a breach of its systems or customer environments.The disclosure follows a post by data security firm S2W on X, which said a threat actor using the name “TheHatman” had allegedly offered more than 800,000 TCS employee records for sale on an underground cybercrime forum. The listing, claims the data was extracted from TCS’ Azure environment using compromised credentials. However, the claim raises questions because TCS has about 5.9 lakh employees, making the alleged database larger than the company’s current workforce.The alleged dataset includes employee names, IDs, email addresses, job titles, phone numbers, and addresses. The threat actor attached a sample of about 6,000 records and is offering the database at a price to be negotiated, S2W said.It also said the claims of accessing an Azure tenant using compromised credentials, could point to access brokering and resale of stolen data. The claims have not been independently verified.TCS, in its stock exchange disclosure, said the information referenced in the threat alerts appears to be more than four years old and limited to basic employee information.It also said it continues to closely monitor its environment and will assess any new information and take appropriate action, if required. The disclosure comes as TCS has faced scrutiny around cybersecurity incidents involving some of its clients, including Jaguar Land Rover (JLR) and Marks & Spencer (M&S).






