The fraud came to light, during an audit the company carried on transactions. A Razorpay spokesperson said: “During a routine payment process, an unauthorised actor(s) with malicious intent used the browser to tamper with authorisation data on a few merchant sites which were using an older version of Razorpay’s integration, due to gaps in their payment verification process. No end-consumer and no merchant data or merchant funds were affected by this incident.”
According to media reports, the hacker manipulated the authorisation process of the gateway to authenticate 831 transactions. “Razorpay has proactively taken steps to mitigate