Cybersecurity
AI-Driven Deepfake Fraud Poses Rising Threat to India’s Banking Sector, Experts Warn
India’s banking and financial ecosystem is facing a rapidly evolving cyber threat as criminals increasingly deploy artificial intelligence (AI)-powered deepfake technology to carry out sophisticated fraud operations. Experts warn that synthetic voices, manipulated videos, and AI-generated identities are now being actively used to bypass security systems and deceive both institutions and customers.
Deepfakes Undermining Traditional Banking Verification Systems
Cybersecurity researchers report that deepfake-enabled fraud is becoming capable of defeating conventional authentication methods used by banks and financial service providers. These systems, which often rely on voice verification, facial recognition, or identity-based confirmation, are proving vulnerable to AI-generated replicas.
Criminal groups are now using advanced machine learning tools to create highly realistic imitations of individuals, including bank employees, relationship managers, and customers. These digital impersonations are being used to authorize fraudulent transactions, gain unauthorized account access, and manipulate real-time digital payment systems.
Experts warn that such attacks are not isolated incidents but part of a growing global trend that threatens the core trust infrastructure of digital banking.
Surge in Cyber Threat Volume and Malware Integration
Recent cybersecurity assessments indicate a sharp rise in AI-assisted cyberattacks over the past year. Between late 2024 and 2025, monitoring systems recorded hundreds of millions of threat detections, with alerts triggered every minute across financial networks.
A significant portion of these incidents involved malicious software such as Trojans and file-based infectors, often combined with social engineering tactics. These methods are increasingly being used alongside deepfake technology to enhance the credibility of fraudulent schemes.
Cybersecurity experts highlight that attackers are now combining stolen personal data with AI-generated content, making scams more convincing and harder to detect.
Experts Call for Stronger Behaviour-Based Security Systems
Security professionals are urging financial institutions to move beyond traditional password and OTP-based authentication methods. Instead, they recommend adopting advanced behavioural analytics and AI-driven monitoring systems capable of detecting unusual transaction patterns in real time.
Former Indian Police Service officer and cybercrime expert Prof. Triveni Singh emphasized that deepfake-driven fraud represents a fundamental shift in cybercrime methodology.
According to him, financial systems must evolve from static verification processes to dynamic, behaviour-based security frameworks that continuously assess risk during user activity.
He also stressed that cybercriminals are rapidly improving their techniques, making it essential for institutions to stay ahead through continuous technological upgrades.
Regulatory Pressure Under Data Protection Framework
The rise of AI-enabled fraud is also creating compliance challenges under India’s Digital Personal Data Protection (DPDP) Act, 2023, which mandates strict safeguards for handling personal data and securing digital transactions.
Banks and financial organisations face increased risks of regulatory penalties, reputational damage, and financial losses if they fail to prevent data breaches or fraudulent access attempts.
Experts believe that deepfake-based attacks are pushing regulators and institutions to rethink existing cybersecurity frameworks, as traditional compliance models may not be sufficient against AI-driven threats.
Growing Sophistication of Social Engineering Attacks
Security analysts note that deepfake technology is no longer experimental or limited to isolated cases. It has become a core tool in advanced social engineering campaigns targeting financial institutions.
Attackers typically gather personal information from data leaks, social media platforms, and public databases. This data is then used to create realistic fake identities, including voice clones and video impersonations, which are deployed to deceive victims into authorizing transactions or sharing sensitive information.
These methods are increasingly leading to large-scale financial losses and account takeovers.
India Strengthens Digital Defence Measures
India’s banking sector is currently upgrading its fraud detection and cybersecurity infrastructure in response to these emerging threats. Financial institutions are investing in AI-based monitoring tools, real-time transaction analysis systems, and multi-layer authentication mechanisms.
However, experts caution that technology alone may not be sufficient. They emphasize that cybercriminals are also evolving rapidly, creating a continuous arms race between attackers and defenders.
Global Rise of Deepfake Cybercrime
The issue is not limited to India. Around the world, governments, financial institutions, e-commerce platforms, and even public sector systems are increasingly being targeted by deepfake-enabled cybercrime.
Cybersecurity analysts describe this as a global digital security crisis, where AI is simultaneously enabling innovation and enabling new forms of fraud at an unprecedented scale.
Public Awareness Remains the Strongest Defence
Despite technological advancements, experts agree that user awareness remains a critical line of defence against deepfake scams. Individuals are advised to remain cautious of unsolicited calls, video messages, or banking instructions received through unofficial channels.
Authorities recommend verifying all financial requests directly with official bank communication channels before taking action.
As AI-generated content becomes increasingly indistinguishable from real media, experts warn that vigilance, verification, and digital literacy will play a key role in preventing financial fraud in the coming years.
Cybersecurity
Patna Police Bust Suspected Cyber Fraud Network, Three Arrested
Patna Cyber Police have busted an alleged organised cybercrime racket involved in digital arrest scams, financial fraud and online cheating, arresting three accused. Police said the suspects allegedly targeted victims across several states and were linked to a wider cybercrime network.
During the operation, investigators recovered six mobile phones, two laptops, three cheque books, two passbooks and five ATM cards, along with other electronic devices and banking documents.
Three Accused Arrested
The arrested accused have been identified as Gaurav Kumar, a resident of New Colony in Khagaul-Danapur; Adarsh Kumar of Transport Nagar; and Aman Raj of Kumhrar. According to police, the three were allegedly connected to an organised cybercrime network operating across different parts of the country. Preliminary investigation also revealed multiple complaints related to cyber fraud against them.
Cybercrime Complaints Helped Trace Suspects
Police said several complaints concerning the accused were found on the National Cybercrime Reporting Portal. Analysis of these complaints, along with digital evidence collected during the investigation, helped investigators trace the suspects and establish their alleged links with the racket.
Technical surveillance and examination of digital evidence played a key role in the investigation. Investigators analysed suspected mobile numbers, electronic devices and other digital activities before identifying and tracing the accused. The seized mobile phones and laptops have now been sent for detailed examination to identify additional suspects, victims and possible financial transactions.
Phones, Laptops And Banking Documents Seized
Police suspect that bank accounts and documents recovered from the accused may have been used to receive and transfer money obtained through cyber fraud. The three cheque books, two passbooks and five ATM cards are being examined to establish the flow of funds and identify accounts allegedly linked to the racket. Investigators are also examining the electronic devices for communication records, transaction details and other digital evidence.
How Digital Arrest Scams Work
The investigation is also focused on determining how the accused allegedly carried out digital arrest scams. In such frauds, cybercriminals typically impersonate police officers, central investigation agencies, bank officials or other government authorities and threaten victims with arrest or legal action. The victims are then kept under constant pressure through phone or video calls and are allegedly persuaded to transfer money on the pretext of verification, investigation or avoiding arrest.
FIR Registered, Investigation Expanded
An FIR has been registered at Patna Cyber Police Station, and the investigation has been expanded to determine the complete structure of the alleged network. The three accused were produced before a court and remanded to judicial custody. Police are now examining the seized electronic devices and banking records to establish the roles played by the accused and identify other members of the network.
Investigators are also trying to determine the total amount allegedly siphoned off by the racket and the number of victims who may have been targeted. Since complaints have surfaced from different parts of the country, authorities are examining whether the suspects were operating independently or as part of a larger network involving multiple handlers, bank accounts and money-transfer channels.
Expert Warns Against Digital Arrest Scams
Cybercrime expert and former IPS officer Prof. Triveni Singh said digital arrest scams combine technology with psychological manipulation. Victims are often kept under intense pressure and made to believe that immediate action is required to avoid arrest or other legal consequences. People should independently verify any such claim through the official contact details of the concerned department and should never transfer money merely because someone threatens them with arrest over a phone or video call.
Patna Cyber Police said the investigation remains underway. Further action will follow after the roles of other suspected members are established. Investigators are also analysing the digital and banking evidence recovered during the operation to determine the actual scale of the alleged fraud, trace the money trail and identify additional victims and associates connected to the network.
Cybersecurity
Delhi HC Flags Fraudulent GST Registrations, Gives Authorities Final Chance
The Delhi High Court has expressed serious concern over cases of fraudulent GST registrations obtained by misusing the PAN and Aadhaar details of unsuspecting citizens, giving the Centre and Delhi Police a final opportunity to devise an effective mechanism to prevent such fraud.The court observed that if the allegations made in the petitions are correct, fraudulent GST registrations are being obtained on a large scale in the names of innocent people, exposing them to substantial tax liabilities and causing revenue losses to the government.
Woman Alleges PAN-Aadhaar Misuse
A Bench of Justice Anil Khetarpal and Justice Shail Jain passed the order while hearing two petitions. One of the petitions was filed by a woman named Neha, who alleged that another person had used her PAN and Aadhaar details to obtain a fraudulent GST registration in her name.
The court noted that this was the second such case before it. The Bench observed that, if the allegations were found to be correct, they indicated that fraudulent GST registrations were being carried out extensively using the identities of innocent citizens. Such registrations can leave individuals facing tax liabilities arising from businesses with which they have no connection.
Court Suggests Facial Recognition And Video Verification
During the hearing, senior advocate Tarun Gulati placed several technological and administrative measures before the court to prevent misuse of PAN and Aadhaar details. One of the key suggestions was mandatory facial recognition of every GST registration applicant against the Aadhaar database.
The proposals also included video-based verification. Under the suggested system, an applicant would have to upload a 20-to-30-second video showing their face and the original PAN and Aadhaar cards. The applicant would also be required to read out a system-generated prompt containing their details and a unique code. The measure is intended to reduce the possibility of third parties using stolen or misused identity documents to obtain GST registrations.
IP Tracking And Physical Verification Proposed
Another proposal was to record and preserve the IP address and device location used while submitting a GST application. The information would remain available with the GST portal and the concerned jurisdictional authority so that it could be examined later if the identity of the person who submitted the application is disputed.
To identify shell or fraudulent businesses, the suggestions included mandatory physical verification of the proposed principal place of business before granting GST registration. Alternatively, a risk-based system could be used to conduct random physical inspections of GST-registered businesses twice a year.
Real-Time Alerts And Additional Safeguards
The proposals further called for real-time data sharing between the GST and Income Tax departments. Under such a system, a PAN holder could receive an immediate alert whenever their PAN is used to obtain GST registration. The system could also flag sudden and significant increases in turnover for further scrutiny.
Other proposed safeguards include alerts through DigiLocker, specific risk parameters for PAN-Aadhaar mismatches and additional checks when a PAN or Aadhaar number is being used for GST registration for the first time. Applicants could also be required to provide details of identifiable persons who can corroborate their identity and confirm the existence of the proposed business.
Centre And Police Given Final Chance
The Bench recorded that the respondents had not disputed that fraudulent GST registrations using the PAN and Aadhaar details of innocent citizens had become a serious problem since the implementation of the Central Goods and Services Tax Act, 2017. The court observed that nearly nine years had passed, yet authorities had failed to effectively curb the malpractice.
The court also expressed concern that an officer deputed by Delhi Police to assist it was unaware of the issue despite its seriousness. The Bench has now given the CGST Commissioner, DGST Commissioner and Delhi Police Commissioner a final opportunity to find an effective solution.
The court warned that if the authorities failed to take effective measures, it would have no option but to pass appropriate and effective orders. The matter has been listed for further hearing on September 8.
What Happens Next?
The Delhi High Court’s intervention puts the spotlight on the need for stronger safeguards against identity misuse in GST registrations. With the Centre and Delhi Police given a final opportunity to address the issue, the next hearing on September 8 is expected to indicate what measures authorities propose to prevent fraudulent registrations and protect innocent PAN-Aadhaar holders from wrongful tax liabilities.
Cybersecurity
Think It’s A Traffic E-Memo? This Ahmedabad Case Shows How The Scam Works
Two Ahmedabad businessmen lost a combined ₹6.79 lakh after allegedly falling victim to a cyber fraud involving fake traffic e-memo messages. In separate incidents reported from Isanpur and Baherampura, fraudsters used vehicle numbers in messages to make the alerts appear genuine and allegedly gained access to the victims’ mobile phones after they opened the links.
How Did The Isanpur Businessman Lose ₹4.58 Lakh?
Kunal Batukbhai Prajapati, 38, who runs Kunal Infotech in Isanpur, received a message from an unknown number regarding a ₹1,000 traffic memo linked to vehicle number GJ27AP6801.
Prajapati clicked on the link included in the message but did not make any payment. Soon afterwards, his phone began receiving repeated OTP messages from different numbers.
Later that night, he received alerts about several transactions from his bank account. He discovered that ₹4.58 lakh had been withdrawn through six transactions.
What Happened After The Fraud Was Detected?
After realising what had happened, Prajapati switched off his mobile phone and contacted the 1930 cybercrime helpline. He subsequently filed a complaint at the Isanpur police station.
How Was A Baherampura Resident Duped Of ₹2.21 Lakh?
In the second incident, a 48-year-old Baherampura resident received a WhatsApp message from an unknown sender claiming that an e-challan was pending against his two-wheeler.
The message contained his vehicle number and a link related to the alleged challan. When he opened the link, an application was downloaded onto his phone.
How Did The Fraudsters Gain Access To The Bank Account?
The man realised something was wrong only after receiving bank transaction alerts the following day. On checking his account, he found that ₹2.21 lakh had been taken out through multiple transactions.
The complaint alleges that the application gave the fraudsters access to the mobile phone, after which they carried out unauthorised transactions.
How Does The Fake E-Memo Scam Work?
The fraud begins with a message designed to look like an official traffic notice. Fraudsters use a vehicle owner’s registration number and claim that a fine, often for ₹500 or ₹1,000, remains unpaid.
The message contains a link directing the recipient to supposedly clear the fine. Instead of making a legitimate payment, victims may be prompted to download an APK application.
Once installed, such an application can potentially gain access to SMS messages and other information on the device. This can allow criminals to obtain sensitive banking information, including OTPs, and carry out transactions without the victim immediately noticing.
Both Ahmedabad cases were reported after the victims noticed unauthorised withdrawals. They contacted 1930, the cybercrime helpline, and approached the respective police stations.
What Should Vehicle Owners Do After Receiving Such Messages?
Cyber crime experts have urged citizens to be cautious about traffic fine messages received from unknown numbers and to avoid opening suspicious links or installing applications sent through such messages.
-
Business3 years agoPot Odor Does Not Justify Probable Cause for Vehicle Searches, Minnesota Court Affirms
-
Business3 years agoNew Mexico cannabis operator fined, loses license for alleged BioTrack fraud
-
Business3 years agoAlabama to make another attempt Dec. 1 to award medical cannabis licenses
-
Business3 years agoWashington State Pays Out $9.4 Million in Refunds Relating to Drug Convictions
-
Business3 years agoMarijuana companies suing US attorney general in federal prohibition challenge
-
Business3 years agoLegal Marijuana Handed A Nothing Burger From NY State
-
Business3 years agoCan Cannabis Help Seasonal Depression
-
Blogs3 years agoCannabis Art Is Flourishing On Etsy
