ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

TCS says no evidence of system breach after employee data alert

Tata Consultancy Services said it is looking into a potential data security issue after receiving alerts that employee information may have been exposed.

 

Headquartered in Mumbai, India, Tata Consultancy Services (TCS), a Tata Group leader, is a global IT and consulting powerhouse operating in more than 55 countries. Supported by nearly 200 delivery centers and 600,000 associates, it provides enterprise software, cloud, AI, and cybersecurity services to multinational clients across North America, Europe, Latin America, Asia-Pacific, and the Middle East.

 

In a filing with the Bombay Stock Exchange, TCS said that it received threat intelligence alerts indicating a possible exposure of internal employee information. The company promptly initiated an investigation, supported by external cybersecurity specialists, to assess the nature and extent of the breach.

 

“The Company has investigated the matter and has not found any credible evidence of a breach of TCS systems or customer environments. The information referenced appears to be more than four years old and limited to basic employee information. There is no indication that customer data, customer systems, or TCS operational systems have been impacted,” TCS said.

 

The IT giant added that the attacker claimed to have used password spraying and Multi-Factor Authentication (MFA) fatigue as the attack vectors. Password spraying and Multi-Factor Authentication (MFA) fatigue are coordinated tactics used to breach enterprise accounts. An attacker first tests a single common password across many user accounts to bypass lockout thresholds. Once a password matches, they flood the user’s phone with relentless login approval requests—exploiting user fatigue or confusion until the victim approves the prompt and grants unauthorized access.

 

TCS noted that its defensive controls against these specific tactics have been active for over two years. An ongoing review confirms these measures remain fully effective, and the company continues to closely monitor its environment.

 

“The Company will continue to assess any new information that becomes available and take appropriate action, if required. The Company remains committed to maintaining the security and resilience of its systems and to protecting the information entrusted to us,” the IT giant added.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winston House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543