Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Elon Musk suggests spate of xAI exits have been push, not pull

    February 14, 2026

    Here's Why I'd Buy the Last Samsung Soundbar First

    February 14, 2026

    Indian pharmacy chain giant exposed customer data and internal systems

    February 14, 2026
    Facebook Twitter Instagram
    • Tech
    • Gadgets
    • Spotlight
    • Gaming
    Facebook Twitter Instagram
    iGadgets TechiGadgets Tech
    Subscribe
    • Home
    • Gadgets
    • Insights
    • Apps

      Google Uses AI Searches To Detect If Someone Is In Crisis

      April 2, 2022

      Gboard Magic Wand Button Will Covert Your Text To Emojis

      April 2, 2022

      Android 10 & Older Devices Now Getting Automatic App Permissions Reset

      April 2, 2022

      Spotify Blend Update Increases Group Sizes, Adds Celebrity Blends

      April 2, 2022

      Samsung May Improve Battery Significantly With Galaxy Watch 5

      April 2, 2022
    • Gear
    • Mobiles
      1. Tech
      2. Gadgets
      3. Insights
      4. View All

      Quantum Internet Takes Shape With 100 km Secure Transmission Milestone

      February 14, 2026

      A New Way To Cool Quantum Computers Could Change How They’re Built

      February 14, 2026

      Blindness Breakthrough? This Snail Regrows Eyes in 30 Days

      February 13, 2026

      20-Year Mystery Solved: Scientists Discover an Entirely New Way Cells Transport Bile Acids

      February 13, 2026

      March Update May Have Weakened The Haptics For Pixel 6 Users

      April 2, 2022

      Project 'Diamond' Is The Galaxy S23, Not A Rollable Smartphone

      April 2, 2022

      The At A Glance Widget Is More Useful After March Update

      April 2, 2022

      Pre-Order The OnePlus 10 Pro For Just $1 In The US

      April 2, 2022

      Here's Why I'd Buy the Last Samsung Soundbar First

      February 14, 2026

      Inside the New York City Date Night for AI Lovers

      February 14, 2026

      These Open Earbuds Are Just Over $20

      February 14, 2026

      The ‘Heated Rivalry’ Fandom Is Tearing Itself Apart

      February 14, 2026

      Latest Huawei Mobiles P50 and P50 Pro Feature Kirin Chips

      January 15, 2021

      Samsung Galaxy M62 Benchmarked with Galaxy Note10’s Chipset

      January 15, 2021
      9.1

      Review: T-Mobile Winning 5G Race Around the World

      January 15, 2021
      8.9

      Samsung Galaxy S21 Ultra Review: the New King of Android Phones

      January 15, 2021
    • Computing
    iGadgets TechiGadgets Tech
    Home»Spotlight»Indian pharmacy chain giant exposed customer data and internal systems
    Spotlight

    Indian pharmacy chain giant exposed customer data and internal systems

    adminBy adminFebruary 14, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Blister packs of medications at a pharmacy in Mumbai, India, on Saturday, Sept. 27, 2025. Often dubbed the "pharmacy of the world," India is the biggest supplier globally of cheap, non-patented medicines. Photographer: Kanishka Sonthalia/Bloomberg via Getty Images
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A security lapse by one of India’s largest pharmacy chains allowed outsiders to gain full administrative control of its platform, exposing customer order data and sensitive drug-control functions, TechCrunch has exclusively learned.

    The issue affected DavaIndia Pharmacy, the pharmacy arm of Zota Healthcare, which operates a large network of retail outlets across India. Security researcher Eaton Zveare told TechCrunch that he discovered the flaw after identifying insecure “super admin” application programming interfaces on DavaIndia’s website and privately shared details with Indian cybersecurity authorities.

    The bug is now fixed, and Zveare disclosed his findings.

    The exposure comes as Zota Healthcare rapidly scales DavaIndia Pharmacy’s retail business. The Gujarat-headquartered company operates more than 2,300 DavaIndia stores across India, including 276 new outlets announced in January, and plans to add another 1,200 to 1,500 over the next two years.

    Zveare told TechCrunch that the flaw stemmed from insecure admin interfaces, which allowed unauthenticated users to create “super admin” accounts with high privileges.

    With that level of access, an attacker could view thousands of online orders containing customer information, modify product listings and prices, create discount coupons, and change settings governing whether certain medicines required a prescription, the researcher said.

    Based on system timestamps, Zveare said the vulnerable administrative interfaces appeared to have been live since late 2024. The access exposed nearly 17,000 online orders and administrative controls spanning 883 stores, he said, allowing changes to product pricing, prescription requirements, and promotional discounts. Zveare said the access allowed edits to website content that could have been used for defacement or disruption.

    Pharmacy order data can be particularly sensitive, as it may reveal information about a person’s health conditions, medications or other private purchases. Exposure of such data, even without evidence of misuse, carries heightened privacy and patient-safety risks compared with other consumer information.

    “Customer information was linked to their orders,” said Zveare. “This includes name, phone numbers, email IDs, mailing addresses, total amount paid, and the products purchased. Since this is a pharmacy, the products being purchased could be considered private and even embarrassing for some people.”

    Zveare said he reported the issue to CERT-In, India’s national cyber emergency response agency, in August 2025. The vulnerability was fixed within weeks, though confirmation from the company took longer and was provided to the cyber authorities in late November, he said.

    Sujit Paul, chief executive of Zota Healthcare, did not respond to emails sent by TechCrunch last month. The researcher said there was no indication the flaw had been exploited before it was patched.

    Security,Exclusive,cybersecurity,data exposure,DavaIndia,Zota HealthcareExclusive,cybersecurity,data exposure,DavaIndia,Zota Healthcare#Indian #pharmacy #chain #giant #exposed #customer #data #internal #systems1771041233

    chain customer cybersecurity Data data exposure DavaIndia Exclusive exposed Giant Indian internal pharmacy Systems Zota Healthcare
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website
    • Tumblr

    Related Posts

    Elon Musk suggests spate of xAI exits have been push, not pull

    February 14, 2026

    Airbnb plans to bake in AI features for search, discovery and support

    February 14, 2026

    A Stanford grad student created an algorithm to help his classmates find love; now, Date Drop is the basis of his new startup

    February 14, 2026
    Add A Comment

    Leave A Reply Cancel Reply

    Editors Picks

    FedEx tests how far AI can go in tracking and returns management

    February 3, 2026

    McKinsey tests AI chatbot in early stages of graduate recruitment

    January 15, 2026

    Bosch’s €2.9 billion AI investment and shifting manufacturing priorities

    January 8, 2026
    8.5

    Apple Planning Big Mac Redesign and Half-Sized Old Mac

    January 5, 2021
    Top Reviews
    9.1

    Review: T-Mobile Winning 5G Race Around the World

    By admin
    8.9

    Samsung Galaxy S21 Ultra Review: the New King of Android Phones

    By admin
    8.9

    Xiaomi Mi 10: New Variant with Snapdragon 870 Review

    By admin
    Advertisement
    Demo
    iGadgets Tech
    Facebook Twitter Instagram Pinterest Vimeo YouTube
    • Home
    • Tech
    • Gadgets
    • Mobiles
    • Our Authors
    © 2026 ThemeSphere. Designed by WPfastworld.

    Type above and press Enter to search. Press Esc to cancel.