IndianBreaches
BLS International is an India-based multinational company that provides:
The company works closely with embassies, consulates, and government agencies across multiple countries, handling highly sensitive identity and travel-related information.
That context alone makes any alleged exposure involving BLS particularly serious.
A threat actor identified as โscatt3rโ posted a listing claiming to have breached BLS International systems.
According to the post, the leak allegedly contains:
The actor claims the dataset contains up to 29 million rows and roughly 28 GB of compressed data.
At the time of writing, there is no official confirmation from BLS International.
The screenshots shared with the listing suggest this is more than a simple database dump.
Visible files and folders include:
app-config.phpmail.phpuserStatusUpdate.phpindex.phprobots.txtAs well as directories like:
applicationvendorsystemuploadscaptchaThis strongly suggests exposure of server-side application files and backend infrastructure.
The threat actor also claims the dataset contains:
If authentic, this could potentially allow:
The most concerning part of the leak is the alleged presence of:
The screenshots show directories filled with what appear to be:
This significantly raises the severity of the incident.
This is not just about names or email addresses.
If the claims are accurate, the exposed material could include:
That combination creates both:
If the data is authentic, the implications are significant:
If youโve interacted with BLS services:
Incidents involving identity-processing companies are different from ordinary breaches.
These platforms often sit at the intersection of:
Which means the data they hold is incredibly sensitive โ and difficult to replace once exposed.
At this stage, these remain claims posted on a breach forum.
But if even part of the material is genuine, this would represent far more than a standard data leak.
Because once identity documents, backend systems, and infrastructure secrets are exposed together, the impact is no longer limited to accounts โ it affects trust in the entire ecosystem surrounding identity verification.
โ ๏ธ If your data was affected by this breach โ change your passwords immediately, enable 2FA, and monitor your bank accounts. Read our full guide โ