2023–2024 GTPL Hathway / Hathway — ISP & cable subscriber data exposure (Laravel/CMS narrative; widely reported under Hathway)
Data compromised
Emails, phones, addresses, password hashes, IPs, device metadata, and alleged KYC imagery (Aadhaar/passport) per breach trackers—vendor confirmation limited in open press
Technical writeup
Open-source and aggregator reporting widely attributed a large December 2023 exposure to Hathway (Indian ISP/cable); GTPL Hathway Limited is the merged cable/ISP group branding analysts and dark-web trackers often used interchangeably with “Hathway” in breach roundups. OSINT described exploitation of internet-facing PHP/Laravel-style components, very large dumped tables, and high sensitivity (KYC-class documents cited in specialist press). Have I Been Pwned verified roughly 4.67M accounts in its Hathway entry. This BreachHistory row mirrors the substantively identical incident already indexed under `companyId` `hathway` so that queries on the post-merger slug resolve without implying a second independent exfiltration.
Root cause
Internet-facing application vulnerability (reported as Laravel/CMS class) enabling bulk data extraction per OSINT and trade/specialist summaries