An Amazon S3 bucket named xyz-abc.s3.amazonaws.com was found to be misconfigured and accessible.
The misconfigured bucket contained sensitive data such as student phone numbers, certificates, signatures, and photos from various central universities and state government public service commission candidates.
The data breach also included a banking employee offer letter with employee ID, Oracle EIN, and official email.
The incident was reported to CERT-In (Computer Emergency Response Team-India) for investigation and action.