What really powers the cloud? Behind every Google search, A...
A lot of what defines a home isn’t visible at handover. I...
Private equity has played a significant role in shaping Indi...
Luxury real estate is one of the most talked-about segments ...
Airports play a much bigger role than just enabling travel -...
Thousands of documents reportedly linked to the Kudankulam Nuclear Power Plant (KKNPP) have been exposed following an alleged ransomware attack, prompting an investigation by Indian authorities into the cybersecurity incident. The leaked material is said to include technical drawings, contractor records and project-related documents associated with the plant's expansion works. While officials have confirmed that the incident is being examined, the Nuclear Power Corporation of India Limited (NPCIL) has stated that no nuclear safety or security systems have been affected. The breach has renewed attention on the cybersecurity of India's critical infrastructure as the country continues to expand its nuclear power capacity.
A large cache of documents reportedly associated with the Kudankulam Nuclear Power Plant (KKNPP) has surfaced online after an alleged cyberattack, raising concerns over the protection of sensitive project information linked to one of India's most significant nuclear energy facilities.
The exposed files are believed to relate primarily to the ongoing construction of Units 3 and 4 at the Tamil Nadu-based plant. Reports indicate that the leaked material includes engineering documents, contractor correspondence, inspection records, equipment details and other project-related information accumulated over several years. Although the authenticity of every document has not been independently verified, the disclosure has prompted a coordinated response from the authorities.
The alleged breach has been attributed to the ransomware group World Leaks, which claims to have accessed and published thousands of files from systems connected to a contractor involved in the project. The group has reportedly made the data available through dark web channels, bringing renewed focus to the cybersecurity risks faced by organisations supporting critical infrastructure projects.
Reliance Infrastructure, one of the companies associated with the construction of the Kudankulam expansion project, acknowledged that it had experienced a limited cybersecurity incident involving data stored on infrastructure managed by an external data centre service provider. The company stated that it had informed the relevant government agencies and was cooperating with the ongoing investigation to determine the extent of the breach.
The data centre operator involved has said it detected suspicious activity on the affected systems and initiated measures to contain the incident. However, subsequent claims by the ransomware group suggested that some project-related information had already been extracted before the attack was interrupted. Investigators are now examining these claims and assessing the nature of the exposed material.
The Nuclear Power Corporation of India Limited (NPCIL), which owns and operates the Kudankulam Nuclear Power Plant, sought to reassure stakeholders that the reported leak does not involve systems responsible for reactor operations or nuclear safety. According to the corporation, the information in question relates to conventional infrastructure supporting the project rather than the plant's protected operational or security architecture.
India's national cybersecurity agency, CERT-In, is working alongside NPCIL and other stakeholders to establish how the breach occurred, identify the affected systems and recommend measures to prevent similar incidents. The investigation is expected to examine both the contractor's digital infrastructure and the role of third-party service providers handling project data.
The incident has once again highlighted the growing cybersecurity challenges associated with large infrastructure developments. As engineering, procurement and construction projects become increasingly digital, project information is often shared across multiple organisations, expanding the potential attack surface for cybercriminals.
While officials maintain that the country's nuclear operations remain secure, cybersecurity experts note that the exposure of technical and project documentation can still present risks by revealing valuable information about critical infrastructure. The latest incident is likely to reinforce calls for stronger cybersecurity standards, tighter third-party risk management and continuous monitoring across India's strategic infrastructure ecosystem as the nation advances its long-term nuclear energy ambitions.
Source- Reuters