Back to Blog
2026-06-24· 4 min read

Bajaj Auto Ransomware Attack: Indian Auto Giant Hit by Cyberattack

Bajaj Auto confirmed a ransomware attack impacting systems at the automaker and its subsidiary BATL. The company notified CERT-In and activated incident response protocols.

Ransomware India Automotive Manufacturing CERT-In

The Attack


On June 23, 2026, Bajaj Auto — India's leading two- and three-wheeler manufacturer — disclosed a ransomware attack that impacted systems at both the parent company and its wholly owned subsidiary, **Bajaj Auto Technology Ltd (BATL)**.


The incident was detected at approximately **8:00 AM IST**.


What We Know


  • |Detail | Information
  • |--------|-------------|

  • |Date Detected | June 23, 2026, 8:00 AM IST
  • |Affected Systems | Bajaj Auto IT + BATL
  • |Threat Actor | Unknown
  • |Ransomware Strain | Not disclosed
  • |Data Exfiltration | Unknown
  • |Operations | Reportedly normal

  • Response Actions


    Bajaj Auto activated standard incident response protocols:


    1. **Isolated affected systems** from the network

    2. **Engaged external cybersecurity experts**

    3. **Notified CERT-In** under the Information Technology Act, 2000

    4. **Reported to SEBI** under Regulation 30 of Listing Obligations


    The company stated that containment measures were successful and manufacturing, sales, customer services, and key business operations continued normally.


    Impact on Shareholders


    Following the disclosure, Bajaj Auto shares fell **over 2%** to ₹9,790 apiece. The stock decline reflects investor concerns about:


  • Potential operational disruption
  • Risk of data exfiltration
  • Regulatory compliance costs
  • Reputational damage

  • What's Unknown


    Several critical questions remain unanswered:


  • Which ransomware strain was used?
  • What was the initial access vector?
  • Was any data exfiltrated?
  • Was a ransom demand made?
  • Were manufacturing/OT systems affected?
  • How were attackers contained?

  • Lessons for Manufacturing


    Why Manufacturing Is Targeted

  • High downtime costs increase pressure to pay ransoms
  • OT/IT convergence creates new attack vectors
  • Supply chain dependencies amplify impact
  • Legacy systems may lack security controls

  • Protection Strategies

    1. **Segment IT and OT networks** completely

    2. **Implement backup and recovery** for critical systems

    3. **Deploy endpoint detection and response** (EDR)

    4. **Regular penetration testing** of manufacturing networks

    5. **Incident response planning** specific to OT environments


    Check Your Domain


    Scan your domain for vulnerabilities that could expose you to ransomware.


    [Free security scan at Vaarta.space](https://vaarta.space)


    Ready to check your domain security?

    Run a free scan to identify potential vulnerabilities.

    Start Free Scan