The India nuclear plant data leak has sparked serious cybersecurity concerns after a ransomware group claimed to have published sensitive files linked to the Kudankulam Nuclear Power Plant on the dark web. The alleged breach has renewed debate over the protection of critical infrastructure and the growing threat of cyberattacks targeting strategic facilities.
According to Reuters, the ransomware group World Leaks said it released a large collection of documents related to India’s largest nuclear power plant. The leaked material reportedly includes facility layouts, supplier information, inspection records, meeting documents, equipment assessments, and insurance-related files. The group claimed the information was obtained through systems linked to Reliance Group.
Kudankulam Nuclear Power Plant, located in the southern state of Tamil Nadu, is India’s largest nuclear facility and plays a key role in the country’s efforts to expand nuclear energy production. The project is considered an important part of Prime Minister Narendra Modi’s long-term energy strategy.
Reliance Group acknowledged that there had been a partial intrusion involving data stored on servers operated by data center provider Yotta. The company said authorities had been informed about the incident but did not specify which files or systems had been affected. Officials have not publicly confirmed the authenticity of the leaked documents.
Cybersecurity experts warned that even if the documents do not reveal the nuclear reactors’ core operating systems, the information could still create security risks. Some of the leaked files reportedly contain ventilation and cooling system diagrams, control room layouts, supplier lists, and records of inspections conducted during 2024.
Reuters reported that approximately 858,000 files were allegedly stolen, with nearly 19,000 described as potentially sensitive. Construction of Units 3 and 4, awarded to Reliance Infrastructure in 2018, remains underway and the reactors are expected to become operational by 2027, adding around 2,000 megawatts of electricity to India’s grid.
Experts say the India nuclear plant data leak could help attackers understand facility support systems, identify suppliers, and assess possible security weaknesses. World Leaks has previously claimed responsibility for cyberattacks targeting major corporations, highlighting the increasing importance of strengthening cybersecurity protections for critical infrastructure worldwide.