CYBERSECURITY

KiranaPro Hack Wipes Data, Cripples Grocery Startup Ahead of Expansion Push

The Bengaluru-based voice-enabled delivery startup lost access to its app code, servers, and customer data after a breach traced to a former employee’s credentials.

By Donna Joseph
June 5, 2025 3:28 AM Updated June 5, 2025
KiranaPro Hack Wipes Data, Cripples Grocery Startup Ahead of Expansion Push Photo by SBR

BENGALURU, India, June 4, 2025KiranaPro, a voice-enabled Indian grocery delivery startup operating on the country’s Open Network for Digital Commerce, has suffered a severe security breach that wiped its entire database, leaving its app online but nonfunctional.

The cyberattack compromised KiranaPro’s Amazon Web Services and GitHub accounts, erasing customer data, source code, and the company’s ability to process orders. Deepak Ravindran, co-founder and CEO, confirmed the breach to TechCrunch, describing it as a devastating loss just days before the startup was set to expand operations to 100 cities.

“We are not able to get any logs or anything because we don’t have the root account,” said Ravindran. “All our EC2 instances are gone.”

Launched in December 2024, KiranaPro served as a voice-based grocery ordering app supporting regional languages like Hindi, Tamil, Malayalam, and English. With a user base of 55,000 and over 2,000 daily orders across 50 cities, the platform offered customers a way to place local orders from nearby shops through spoken commands.

According to Ravindran and Chief Technology Officer Saurav Kumar, the breach likely occurred between May 24 and 25 via a former employee’s credentials. Screenshots shared with TechCrunch suggest unauthorized access through GitHub, raising concerns about weak offboarding protocols and gaps in multi-factor authentication.

The company used Google Authenticator for added login security, but Kumar reported that even this failed. “The multi-factor code had changed when we tried to log in. Everything was deleted,” he said, adding that they could now only access the system through limited IAM accounts.

Ravindran confirmed the company has contacted GitHub for forensic help and is filing cases against former employees who failed to return credential access. Investigations are ongoing.

The breach reflects growing industry concern over lapses in basic cyber hygiene, particularly around credential theft and employee offboarding. Experts point to recent incidents at LastPass, Change Healthcare, and Snowflake—where similar gaps led to damaging breaches—as cautionary examples.

KiranaPro, headquartered in Bengaluru with a team of 15, is backed by Blume Ventures, Unpopular Ventures, and Turbostart. Olympic medalist PV Sindhu and Boston Consulting Group MD Vikas Taneja are among its angel investors.

As of now, the startup’s platform remains non-operational, and recovery efforts are underway. The company has not confirmed a timeline for when services will resume.

We tried logging in last week. The EC2 services were gone. The root access is lost.


What To Read Next

U.S. Department of Labor Launches ‘Make America AI-Ready’ Initiative

U.S. Department of Labor Launches ‘Make America AI-Ready’ Initiative

The ‘Make America AI-Ready’ initiative is designed to ensure every American worker has the chance to learn foundational skills so they can benefit from the opportunities that the AI economy presents.
SLB Expands Nvidia Tie-Up to Scale AI Infrastructure in Energy Industry
Engineers and geoscientists can run simulations at greater speed, allowing them to test multiple scenarios in less time. This helps refine drilling strategies and improve production planning while reducing inefficiencies linked to slower analysis.
NCLA Asks SCOTUS to Revive Nondelegation Doctrine and Stop BLM from Writing Criminal Laws
It is far past time for the Supreme Court to decide a case that re-establishes its willingness to restrict legislative power to Congress, where We the People vested it.

Business





More on Financial Literacy

Content provided by finlittoday.com
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,
Financial Literacy Post
PMP Certification and AI Upskilling Boost Salaries for Project Management Professionals,