To make matters worse, MobiKwik vehemently denies that its infrastructure has been compromised. It had the following to say in a statement, “Some media-crazed so-called security researchers have repeatedly attempted to present concocted files wasting precious time of our organisation as well as members of the media. We thoroughly investigated and did not find any security lapses. Our user and company data is completely safe and secure.” It has been largely silent about the matter after issuing the statement.
This isn’t the first time MobiKwik has witnessed a breach. The company had another infosec-related incident all the way back in 2010 and seems to have learned nothing from it. It still refuses to acknowledge that its servers have been breached, despite overwhelming evidence suggesting otherwise. Whether or not it has found out the vulnerability and fixed it remains unknown. There is no recourse for affected users, given that the entirety of their personal information has been leaked online.