CSIDB logo
Incident

Bruhat Bengaluru Mahanagara Palike Commissioner

Incident posture

Attack window
Jun 2021
Location
India
Status
Historical
CIA posture
Available to members
Updated
2025-10-24 00:00

Linked entities

Victim
Bruhat Bengaluru Mahanagara Palike Commissioner
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jun 2021
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

The official Twitter account of Bruhat Bengaluru Mahanagara Palike's chief commissioner was compromised by hackers who renamed the profile and posted fraudulent bitcoin giveaway messages, including a link to an external site and comments on a Tesla CEO's tweet, later deleted. The account, followed by 120,000 users and used for civic and Covid-related public communication, was restored within hours, with officials reporting the incident to cybercrime police and implementing measures to prevent recurrence. The breach disrupted official communications, echoing previous security incidents involving local government accounts compromised through weak passwords.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On June 4, 2021, Bruhat Bengaluru Mahanagara Palike (BBMP) Chief Commissioner Gaurav Gupta’s official Twitter account was compromised by hackers who posted cryptocurrency-related messages. The attackers first renamed the account from ‘Gaurav Gupta’ to ‘TSLA’ before altering the display name to a single hyphen (‘-’). They published tweets promoting a fraudulent bitcoin giveaway, instructing users to retweet the message and visit a suspicious link (www.TESLABIG.com) to participate in a purported distribution of 5,000 BTC. The hackers also commented on a tweet by Tesla CEO Elon Musk from the compromised account, though these interactions were later deleted. BBMP officials confirmed the breach and collaborated with cybercrime police to restore access, successfully recovering the account by 7pm the same day. Following account restoration, Gupta publicly stated that steps had been implemented to prevent future incidents while reaffirming his commitment to citizen engagement on civic matters.

The compromised account, followed by 120,000 users, served as a critical communication channel between Bengaluru’s administration and residents, particularly for civic grievances and COVID-19 updates. This breach exposed followers to financial scams through the fraudulent cryptocurrency scheme. Historical context revealed vulnerabilities in Bengaluru’s official accounts, including a September 2019 incident where six traffic police Twitter accounts were hacked due to weak passwords. In August 2019, the state government’s e-procurement portal was breached, resulting in the diversion of over ₹1 crore to unauthorized accounts. The BBMP incident highlighted recurring cybersecurity challenges facing Bengaluru’s administrative infrastructure, though no financial losses or data breaches were explicitly linked to this specific Twitter compromise. Authorities did not disclose technical details about the attack vector or identity of the perpetrators.

Sources

Sources available to members: 1 source.

CSIDB