Categories: Breaking News

Ganaa hacked, data of 10 Million registered users leaked

A Pakistani hacker claimed responsibility for a data breach at Gaana music streaming service that exposed data of  more than 10 Million registered users.

Gaana (Gaana.com), one of the most popular music streaming service in India has reportedly been hacked. Gaana service has more than 10 Million registered users and 7.5 Million monthly visitors, according to various sources available on the Internet, the hackers have had access to user information (including username, date of birth, email address, MD5-encrypted password,  and other personal information) stored in the database .

A Pakistani hacker claimed responsibility for the attack and announced that the stolen data were available in a searchable database. Just after the attack the Gaana website was down for maintenance, but the company didn’t issue any official statement.

The hacker, which calls himself Mak Man (this is the nick name he also used on Facebook), has published screen shots of the stolen data, the images demonstrate that the attacker accessed user IDs, passwords and other private details. Mak Man exploiting an SQL injection vulnerability in Gaana website and once stolen the data in the database he also shared the link to a searchable archive of Gaana user.

The Gaana service has been suspended and the administrators have forced a password reset in response to the data breach.

“Site is down due to server maintenance. We will be back shortly. Kindly bear with us till then.” was the message displayed by the website.

Below the sequence of tweets sent by Gaana operators, one ot the messages confirm that hackers haven’t had access to financial or sensitive personal data of the users.

“We have temporarily removed access to our website and app as a vulnerability in one of our Gaana user databases was exposed” 

“No financial or sensitive personal data beyond Gaana login credentials were accessed. No third party credentials were accessed either.”

“Most of our users’ data has not been compromised, but we’ve reset all Gaana user passwords, so all users have to make new ones”

“We would like to assure that security is a major focus for us and we are further strengthening our user security team”

“Please be assured that we are treating this issue with the utmost urgency and will provide more information soon”


  The hacker has reportedly acknowledged that the flaw ha has exploited to access Gaana database has been patched, but he is warning on the existence of many other security flaws.

“The vulnerable parameter I was using here, has been patched by the Admin… Now the question is, Was this the only vulnerable parameter I had.” saids Mak Man.

In a Twitter update provided by the CEO of Gaana.com, Stayen Gajwani, it is reported that the stolen database has been removed from the hacker’s website.


It seems that the Pakistani hacker was not interestes in the sale of data, instead he acted to prove the poor level of security implemented by the service. He tried to contact the company several times to report the issue by the was always ignored, so he decided to hack the website.

Unfortunately, there is the concrete risk that the data are in the hands of cyber criminals in this moment that could try to monetize them in the incoming days.

I suggest Gaana users that share the same credentials on other web services to change their password on the other sites as soos as possible.

Pierluigi Paganini

(Security Affairs –  Gaana, SQL injection)

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

Experts warn of an ongoing malware campaign targeting WP-Automatic plugin

A critical vulnerability in the WordPress Automatic plugin is being exploited to inject backdoors and…

9 hours ago

Cryptocurrencies and cybercrime: A critical intermingling

As cryptocurrencies have grown in popularity, there has also been growing concern about cybercrime involvement…

11 hours ago

Kaiser Permanente data breach may have impacted 13.4 million patients

Healthcare service provider Kaiser Permanente disclosed a security breach that may impact 13.4 million individuals…

12 hours ago

Over 1,400 CrushFTP internet-facing servers vulnerable to CVE-2024-4040 bug

Over 1,400 CrushFTP internet-facing servers are vulnerable to attacks exploiting recently disclosed CVE-2024-4040 vulnerability. Over…

14 hours ago

Sweden’s liquor supply severely impacted by ransomware attack on logistics company

A ransomware attack on a Swedish logistics company Skanlog severely impacted the country's liquor supply. …

16 hours ago

CISA adds Cisco ASA and FTD and CrushFTP VFS flaws to its Known Exploited Vulnerabilities catalog

CISA adds Cisco ASA and FTD and CrushFTP VFS vulnerabilities to its Known Exploited Vulnerabilities…

1 day ago

This website uses cookies.