188,828 Job Seeker Records From TalentMovers Consulting Surfaced in a 2025 Data Breach
HEROIC analysts identified a database breach affecting TalentMovers Consulting, an Indian recruitment and staffing firm operating the job portal changenaukri.com. The incident, dated March 23, 2025, exposed 188,828 records belonging to job seekers and registered users of the platform. The dataset is particularly sensitive because it goes beyond basic contact details, including birthdates and gender information that together form a detailed personal profile usable for identity fraud and targeted social engineering.
Why Recruitment Portal Breaches Are a Serious Threat
Job seekers share some of their most personal information when registering on a recruitment platform. Names, phone numbers, birthdates, and email addresses handed over in a job search can be weaponized long after the original submission. Attackers with this combination can impersonate credible employers, send convincing phishing messages referencing a victim's career history, or use the birthdate and full name to verify identity when attempting to access finantial accounts or reset passwords. The fact that this breach involved an Indian platform means attackers may specifically target victims through SMS and WhatsApp, common vectors for fraud in the region.
What Was Exposed in the TalentMovers Consulting Breach
The following personal data fields were confirmed in the leaked dataset:
- Email Address
- First Name
- Last Name
- Phone Number
- Birthday
- Gender
Why This Matters for Affected Job Seekers
Birthdates and full names are commonly used as identity verification answers across banking, government portals, and telecom services. When combined with an email address and phone number, this data set gives criminals multiple pathways to impersonate a victim or gain unauthorised access to their accounts. Credential stuffing is less of a risk here since no passwords were included, but identity theft, phone-based account takeovers, and targeted phishing remain very real concerns. Individuals who used this platform for their job search should be alert to unexpected calls, emails, or messages asking for additional personal details.
How Online Portal Breaches Happen
An online portal breach typically occurs when attackers find and exploit a weakness in the web application or the underlying database server. Common methods include SQL injection attacks, where specially crafted input tricks the database into returning private records, and misconfigured database settings that accidentally expose data to anyone on the internet without requiring a login. Recruitment platforms are attractive targets because they aggregate large volumes of personal data from individuals who are actively sharing information and may not expect a job site to be a risk vector. Once the data is extracted, it is packaged and sold or shared on dark web forums within days of the breach.
Check If You Are Affected by the TalentMovers Consulting Breach
If you registered on changenaukri.com or applied for any position through TalentMovers Consulting, your personal information may appear in this dataset. HEROIC's free breach scanner checks your email address against more than 400 billion compromised records, covering job portals, database breaches, and stealer logs from around the world. A quick search takes seconds and gives you a clear view of your exposure across all known breaches, not just this one.
Breach Breakdown
188,828 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds