What Happened
In late March 2022, the Sri Lankan payment gateway PayHere suffered a data breach that exposed more than 65GB of payment records affecting over 1.5 million unique email addresses. The compromised data included names, phone numbers, physical addresses, IP addresses, purchase histories, and partially obfuscated credit card data (card type, first 6 and last 4 digits plus expiry date). The breach involved unauthorized access to PayHere’s systems, though the specific method was not fully disclosed. PayHere acknowledged the incident approximately a month later and published a blog post titled “Ensuring Integrity on PayHere Cybersecurity Incident,” while implementing enhanced security measures and working with cybersecurity experts to prevent future incidents.
