Company Details
axis-bank
91,929
2,742,737
52211
axisbank.com
0
AXI_7082009
In-progress

Axis Bank Company CyberSecurity Posture
axisbank.comAxis Bank is the third largest private sector bank in India. The Bank offers the entire spectrum of financial services to customer segments covering Large and Mid-Corporates, MSME, Agriculture and Retail Businesses. The Bank has a large footprint of 5000 domestic branches (including extension counters) with 15,751 ATMs & cash recyclers spread across the country. The Bank has 6 Axis Virtual Centres with over 1,500 Virtual Relationship Managers as on 31st March 2023. The Overseas operations of the Bank are spread over eight international offices with branches in Singapore, Dubai (at DIFC), and Gift City-IBU; representative offices in Dhaka, Dubai, Abu Dhabi, Sharjah and an overseas subsidiary in London, UK. The international offices focus on Corporate Lending, Coverage Business, Trade Finance, Syndication, Investment Banking, Liability Businesses, and Private Banking/Wealth Management offerings. Axis Bank is one of the first new generation private sector banks to have begun operations in 1994. The Bank was promoted in 1993, jointly by Specified Undertaking of Unit Trust of India (SUUTI) (then known as Unit Trust of India), Life Insurance Corporation of India (LIC), General Insurance Corporation of India (GIC), National Insurance Company Ltd. (NIC), The New India Assurance Company Ltd. (NIA), The Oriental Insurance Company Ltd. (OIC), and United India Insurance Company Ltd. (UIIC). The shareholding of Unit Trust of India was subsequently transferred to SUUTI, an entity established in 2003. GIC, NIC, NIA, OIC, UIIC have been reclassified from promoter category to public category. As on March 31, 2023, SUUTI and LIC are the promoters of the Bank. With a balance sheet size of Rs. 13,17,326 crores as on 31st March 2023, Axis Bank has achieved consistent growth and with a 5-year CAGR (2017-18 to 2022-23) of 14% each in Total Assets & Advances and 16% in Deposits.
Company Details
axis-bank
91,929
2,742,737
52211
axisbank.com
0
AXI_7082009
In-progress
Between 800 and 849

Axis Bank Global Score (TPRM)XXXX

Description: Several Indian banks have taken drastic steps in response to a security breach that may have compromised up to 3.25 million debit cards—or 0.5% of the approximately 700 million debit cards that Indian banks have issued. The financial institution is Hitachi Payment Services, a subsidiary of Hitachi Ltd. that oversees ATM network processing for Yes Bank Ltd., according to banking industry insiders. After that, the State Bank of India quickly disabled a few clients' debit cards, and it was currently replacing those cards to stop fraud. The top three private sector lenders, ICICI Bank, HDFC Bank, and Axis Bank, each stated in separate announcements that there may have been card account breaches following usage at non-bank ATMs. Additionally, certain consumers' debit cards are being reissued by Standard Chartered's Indian division.


No incidents recorded for Axis Bank in 2025.
No incidents recorded for Axis Bank in 2025.
No incidents recorded for Axis Bank in 2025.
Axis Bank cyber incidents detection timeline including parent company and subsidiaries

Axis Bank is the third largest private sector bank in India. The Bank offers the entire spectrum of financial services to customer segments covering Large and Mid-Corporates, MSME, Agriculture and Retail Businesses. The Bank has a large footprint of 5000 domestic branches (including extension counters) with 15,751 ATMs & cash recyclers spread across the country. The Bank has 6 Axis Virtual Centres with over 1,500 Virtual Relationship Managers as on 31st March 2023. The Overseas operations of the Bank are spread over eight international offices with branches in Singapore, Dubai (at DIFC), and Gift City-IBU; representative offices in Dhaka, Dubai, Abu Dhabi, Sharjah and an overseas subsidiary in London, UK. The international offices focus on Corporate Lending, Coverage Business, Trade Finance, Syndication, Investment Banking, Liability Businesses, and Private Banking/Wealth Management offerings. Axis Bank is one of the first new generation private sector banks to have begun operations in 1994. The Bank was promoted in 1993, jointly by Specified Undertaking of Unit Trust of India (SUUTI) (then known as Unit Trust of India), Life Insurance Corporation of India (LIC), General Insurance Corporation of India (GIC), National Insurance Company Ltd. (NIC), The New India Assurance Company Ltd. (NIA), The Oriental Insurance Company Ltd. (OIC), and United India Insurance Company Ltd. (UIIC). The shareholding of Unit Trust of India was subsequently transferred to SUUTI, an entity established in 2003. GIC, NIC, NIA, OIC, UIIC have been reclassified from promoter category to public category. As on March 31, 2023, SUUTI and LIC are the promoters of the Bank. With a balance sheet size of Rs. 13,17,326 crores as on 31st March 2023, Axis Bank has achieved consistent growth and with a 5-year CAGR (2017-18 to 2022-23) of 14% each in Total Assets & Advances and 16% in Deposits.


CIC is the fourth largest banking group in France, consisting of seven regional banks which operate across France through a network of 1,844 branches employing 24,000 staff. CIC's customer base includes 2.7 million retail clients. One in eleven self-employed professionals is a CIC group client and n

Established in 1987 in Shenzhen, the forefront of China’s reform and opening-up drive, China Merchants Bank ("CMB") has developed into the most influential commercial bank brand in China thanks to continuous financial innovation, quality customer service, prudent management and strong business perfo
Credit Suisse Group AG has been acquired by UBS Group AG. UBS is the world’s largest and only truly global wealth manager. We operate through four business divisions: Global Wealth Management, Personal & Corporate Banking, Asset Management, and the Investment Bank. Our global reach and the breadth

Perjalanan Bank Mega berawal pada tahun 1969, dengan nama PT Bank Karman di Surabaya. Kemudian bertransformasi menjadi Mega Bank pada tahun 1992, dan berpindah lokasi ke Jakarta. Pada tahun 1996, Chairul Tanjung dengan PARA GROUP, yang kini dikenal dengan CT Corpora, mengambil alih dan membuat gebra

Utkarsh Small Finance Bank Limited (USFBL), incorporated on April 30, 2016, is engaged in providing banking and financial services with a focus on the underserved and unserved sections of the country. The Bank’s lending activities are primarily focussed in rural and semi-urban locations of the count
**Never share your password, OTP, UPI Pin, CVV etc with anyone.** Formed in December 2018 through the merger of infrastructure finance giant IDFC Bank and retail finance specialist Capital First, we commenced commercial banking operations in 2016. Our core principles: Vision: Building a world-clas

About Emirates NBD Emirates NBD (DFM: Emirates NBD) is a leading banking group in the MENAT (Middle East, North Africa and Türkiye) region with a presence in 13 countries, serving over 20 million customers. As at 30th September 2023, total assets were AED 836 billion, (equivalent to approx. USD 2

Welcome to the official LinkedIn page of Central Bank of India. Central Bank of India offers a wide range of products and services for every segment. Please join us to know more about our best products & services, attractive offers and the latest updates. We invite & value your active participatio
HDFC Bank is India's largest private sector bank, offering a comprehensive range of financial products and services to our customer base of over 92 million. Our extensive distribution network of 8,919 branches and 21,031 ATMs across 3,836 cities and towns as of August 2024, reaches every corner of t
.png)
ROCon 2025 Mumbai unites global cybersecurity leaders to discuss cyber risk, AI, and resilience strategies.
ROCon Mumbai 2025 unites cybersecurity leaders to enhance risk management and digital resilience strategies.
AI has evolved beyond automation, and is fast emerging as a noticeable component in decision-making, creative intelligence,...
RBI New Rule: The Reserve Bank of India has directed Indian banks to migrate their net banking websites to the '.bank.in' domain.
Now, if you're going to open your bank's website, pay close attention, because the addresses of banking websites are no longer the same.
Under the new rule, only RBI-regulated banks can register and use the '.bank.in' domain.
The Reserve Bank of India (RBI) has directed all banks to shift their official websites to the '.bank.in' domain, aiming to enhance...
The digital landscape of Indian banking is undergoing a huge security-focused shift right now, as Reserve Bank of India's (RBI) directive...
CSB Bank Limited has announced the appointment of Vaibhav Sonavane as its new Chief Information Security Officer (CISO), reinforcing the...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Axis Bank is http://www.axisbank.com.
According to Rankiteo, Axis Bank’s AI-generated cybersecurity score is 803, reflecting their Good security posture.
According to Rankiteo, Axis Bank currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Axis Bank is not certified under SOC 2 Type 1.
According to Rankiteo, Axis Bank does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Axis Bank is not listed as GDPR compliant.
According to Rankiteo, Axis Bank does not currently maintain PCI DSS compliance.
According to Rankiteo, Axis Bank is not compliant with HIPAA regulations.
According to Rankiteo,Axis Bank is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Axis Bank operates primarily in the Banking industry.
Axis Bank employs approximately 91,929 people worldwide.
Axis Bank presently has no subsidiaries across any sectors.
Axis Bank’s official LinkedIn profile has approximately 2,742,737 followers.
Axis Bank is classified under the NAICS code 52211, which corresponds to Commercial Banking.
Yes, Axis Bank has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/axis-bank.
Yes, Axis Bank maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/axis-bank.
As of December 11, 2025, Rankiteo reports that Axis Bank has experienced 1 cybersecurity incidents.
Axis Bank has an estimated 6,989 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Detection and Response: The company detects and responds to cybersecurity incidents through an incident response plan activated with yes, and containment measures with disabling affected debit cards, and remediation measures with reissuing debit cards, and communication strategy with public announcements by affected banks..
Title: Security Breach Compromises 3.25 Million Debit Cards in India
Description: Several Indian banks have taken drastic steps in response to a security breach that may have compromised up to 3.25 million debit cards—or 0.5% of the approximately 700 million debit cards that Indian banks have issued.
Type: Data Breach
Attack Vector: Compromised ATM network processing
Vulnerability Exploited: ATM network processing
Motivation: Financial Gain
Common Attack Types: The most common types of attacks the company has faced is Breach.
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through ATM network processing.

Data Compromised: Debit card information
Systems Affected: ATM network processing systems
Operational Impact: Reissuing of debit cards
Brand Reputation Impact: Negative impact on customer trust
Identity Theft Risk: High
Payment Information Risk: High
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Debit card information.

Entity Name: Hitachi Payment Services
Entity Type: Financial Institution
Industry: Financial Services
Location: India
Customers Affected: 3250000

Entity Name: Yes Bank Ltd.
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Entity Name: State Bank of India
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Entity Name: ICICI Bank
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Entity Name: HDFC Bank
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Entity Name: Axis Bank
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Entity Name: Standard Chartered
Entity Type: Financial Institution
Industry: Financial Services
Location: India

Incident Response Plan Activated: Yes
Containment Measures: Disabling affected debit cards
Remediation Measures: Reissuing debit cards
Communication Strategy: Public announcements by affected banks
Incident Response Plan: The company's incident response plan is described as Yes.

Type of Data Compromised: Debit card information
Number of Records Exposed: 3250000
Sensitivity of Data: High
Personally Identifiable Information: Yes
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Reissuing debit cards.
Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through by disabling affected debit cards.
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Public announcements by affected banks.

Customer Advisories: Reissuing of debit cards
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: was Reissuing of debit cards.

Entry Point: ATM network processing

Corrective Actions: Reissuing debit cards
Corrective Actions Taken: The company has taken the following corrective actions based on post-incident analysis: Reissuing debit cards.
Most Significant Data Compromised: The most significant data compromised in an incident was Debit card information.
Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident was Disabling affected debit cards.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was Debit card information.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 325.0.
Most Recent Customer Advisory: The most recent customer advisory issued was an Reissuing of debit cards.
Most Recent Entry Point: The most recent entry point used by an initial access broker was an ATM network processing.
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.