Cybersecurity
Delhi HC Flags Fraudulent GST Registrations, Gives Authorities Final Chance
The Delhi High Court has expressed serious concern over cases of fraudulent GST registrations obtained by misusing the PAN and Aadhaar details of unsuspecting citizens, giving the Centre and Delhi Police a final opportunity to devise an effective mechanism to prevent such fraud.The court observed that if the allegations made in the petitions are correct, fraudulent GST registrations are being obtained on a large scale in the names of innocent people, exposing them to substantial tax liabilities and causing revenue losses to the government.
Woman Alleges PAN-Aadhaar Misuse
A Bench of Justice Anil Khetarpal and Justice Shail Jain passed the order while hearing two petitions. One of the petitions was filed by a woman named Neha, who alleged that another person had used her PAN and Aadhaar details to obtain a fraudulent GST registration in her name.
The court noted that this was the second such case before it. The Bench observed that, if the allegations were found to be correct, they indicated that fraudulent GST registrations were being carried out extensively using the identities of innocent citizens. Such registrations can leave individuals facing tax liabilities arising from businesses with which they have no connection.
Court Suggests Facial Recognition And Video Verification
During the hearing, senior advocate Tarun Gulati placed several technological and administrative measures before the court to prevent misuse of PAN and Aadhaar details. One of the key suggestions was mandatory facial recognition of every GST registration applicant against the Aadhaar database.
The proposals also included video-based verification. Under the suggested system, an applicant would have to upload a 20-to-30-second video showing their face and the original PAN and Aadhaar cards. The applicant would also be required to read out a system-generated prompt containing their details and a unique code. The measure is intended to reduce the possibility of third parties using stolen or misused identity documents to obtain GST registrations.
IP Tracking And Physical Verification Proposed
Another proposal was to record and preserve the IP address and device location used while submitting a GST application. The information would remain available with the GST portal and the concerned jurisdictional authority so that it could be examined later if the identity of the person who submitted the application is disputed.
To identify shell or fraudulent businesses, the suggestions included mandatory physical verification of the proposed principal place of business before granting GST registration. Alternatively, a risk-based system could be used to conduct random physical inspections of GST-registered businesses twice a year.
Real-Time Alerts And Additional Safeguards
The proposals further called for real-time data sharing between the GST and Income Tax departments. Under such a system, a PAN holder could receive an immediate alert whenever their PAN is used to obtain GST registration. The system could also flag sudden and significant increases in turnover for further scrutiny.
Other proposed safeguards include alerts through DigiLocker, specific risk parameters for PAN-Aadhaar mismatches and additional checks when a PAN or Aadhaar number is being used for GST registration for the first time. Applicants could also be required to provide details of identifiable persons who can corroborate their identity and confirm the existence of the proposed business.
Centre And Police Given Final Chance
The Bench recorded that the respondents had not disputed that fraudulent GST registrations using the PAN and Aadhaar details of innocent citizens had become a serious problem since the implementation of the Central Goods and Services Tax Act, 2017. The court observed that nearly nine years had passed, yet authorities had failed to effectively curb the malpractice.
The court also expressed concern that an officer deputed by Delhi Police to assist it was unaware of the issue despite its seriousness. The Bench has now given the CGST Commissioner, DGST Commissioner and Delhi Police Commissioner a final opportunity to find an effective solution.
The court warned that if the authorities failed to take effective measures, it would have no option but to pass appropriate and effective orders. The matter has been listed for further hearing on September 8.
What Happens Next?
The Delhi High Court’s intervention puts the spotlight on the need for stronger safeguards against identity misuse in GST registrations. With the Centre and Delhi Police given a final opportunity to address the issue, the next hearing on September 8 is expected to indicate what measures authorities propose to prevent fraudulent registrations and protect innocent PAN-Aadhaar holders from wrongful tax liabilities.
Cybersecurity
Patna Police Bust Suspected Cyber Fraud Network, Three Arrested
Patna Cyber Police have busted an alleged organised cybercrime racket involved in digital arrest scams, financial fraud and online cheating, arresting three accused. Police said the suspects allegedly targeted victims across several states and were linked to a wider cybercrime network.
During the operation, investigators recovered six mobile phones, two laptops, three cheque books, two passbooks and five ATM cards, along with other electronic devices and banking documents.
Three Accused Arrested
The arrested accused have been identified as Gaurav Kumar, a resident of New Colony in Khagaul-Danapur; Adarsh Kumar of Transport Nagar; and Aman Raj of Kumhrar. According to police, the three were allegedly connected to an organised cybercrime network operating across different parts of the country. Preliminary investigation also revealed multiple complaints related to cyber fraud against them.
Cybercrime Complaints Helped Trace Suspects
Police said several complaints concerning the accused were found on the National Cybercrime Reporting Portal. Analysis of these complaints, along with digital evidence collected during the investigation, helped investigators trace the suspects and establish their alleged links with the racket.
Technical surveillance and examination of digital evidence played a key role in the investigation. Investigators analysed suspected mobile numbers, electronic devices and other digital activities before identifying and tracing the accused. The seized mobile phones and laptops have now been sent for detailed examination to identify additional suspects, victims and possible financial transactions.
Phones, Laptops And Banking Documents Seized
Police suspect that bank accounts and documents recovered from the accused may have been used to receive and transfer money obtained through cyber fraud. The three cheque books, two passbooks and five ATM cards are being examined to establish the flow of funds and identify accounts allegedly linked to the racket. Investigators are also examining the electronic devices for communication records, transaction details and other digital evidence.
How Digital Arrest Scams Work
The investigation is also focused on determining how the accused allegedly carried out digital arrest scams. In such frauds, cybercriminals typically impersonate police officers, central investigation agencies, bank officials or other government authorities and threaten victims with arrest or legal action. The victims are then kept under constant pressure through phone or video calls and are allegedly persuaded to transfer money on the pretext of verification, investigation or avoiding arrest.
FIR Registered, Investigation Expanded
An FIR has been registered at Patna Cyber Police Station, and the investigation has been expanded to determine the complete structure of the alleged network. The three accused were produced before a court and remanded to judicial custody. Police are now examining the seized electronic devices and banking records to establish the roles played by the accused and identify other members of the network.
Investigators are also trying to determine the total amount allegedly siphoned off by the racket and the number of victims who may have been targeted. Since complaints have surfaced from different parts of the country, authorities are examining whether the suspects were operating independently or as part of a larger network involving multiple handlers, bank accounts and money-transfer channels.
Expert Warns Against Digital Arrest Scams
Cybercrime expert and former IPS officer Prof. Triveni Singh said digital arrest scams combine technology with psychological manipulation. Victims are often kept under intense pressure and made to believe that immediate action is required to avoid arrest or other legal consequences. People should independently verify any such claim through the official contact details of the concerned department and should never transfer money merely because someone threatens them with arrest over a phone or video call.
Patna Cyber Police said the investigation remains underway. Further action will follow after the roles of other suspected members are established. Investigators are also analysing the digital and banking evidence recovered during the operation to determine the actual scale of the alleged fraud, trace the money trail and identify additional victims and associates connected to the network.
Cybersecurity
Think It’s A Traffic E-Memo? This Ahmedabad Case Shows How The Scam Works
Two Ahmedabad businessmen lost a combined ₹6.79 lakh after allegedly falling victim to a cyber fraud involving fake traffic e-memo messages. In separate incidents reported from Isanpur and Baherampura, fraudsters used vehicle numbers in messages to make the alerts appear genuine and allegedly gained access to the victims’ mobile phones after they opened the links.
How Did The Isanpur Businessman Lose ₹4.58 Lakh?
Kunal Batukbhai Prajapati, 38, who runs Kunal Infotech in Isanpur, received a message from an unknown number regarding a ₹1,000 traffic memo linked to vehicle number GJ27AP6801.
Prajapati clicked on the link included in the message but did not make any payment. Soon afterwards, his phone began receiving repeated OTP messages from different numbers.
Later that night, he received alerts about several transactions from his bank account. He discovered that ₹4.58 lakh had been withdrawn through six transactions.
What Happened After The Fraud Was Detected?
After realising what had happened, Prajapati switched off his mobile phone and contacted the 1930 cybercrime helpline. He subsequently filed a complaint at the Isanpur police station.
How Was A Baherampura Resident Duped Of ₹2.21 Lakh?
In the second incident, a 48-year-old Baherampura resident received a WhatsApp message from an unknown sender claiming that an e-challan was pending against his two-wheeler.
The message contained his vehicle number and a link related to the alleged challan. When he opened the link, an application was downloaded onto his phone.
How Did The Fraudsters Gain Access To The Bank Account?
The man realised something was wrong only after receiving bank transaction alerts the following day. On checking his account, he found that ₹2.21 lakh had been taken out through multiple transactions.
The complaint alleges that the application gave the fraudsters access to the mobile phone, after which they carried out unauthorised transactions.
How Does The Fake E-Memo Scam Work?
The fraud begins with a message designed to look like an official traffic notice. Fraudsters use a vehicle owner’s registration number and claim that a fine, often for ₹500 or ₹1,000, remains unpaid.
The message contains a link directing the recipient to supposedly clear the fine. Instead of making a legitimate payment, victims may be prompted to download an APK application.
Once installed, such an application can potentially gain access to SMS messages and other information on the device. This can allow criminals to obtain sensitive banking information, including OTPs, and carry out transactions without the victim immediately noticing.
Both Ahmedabad cases were reported after the victims noticed unauthorised withdrawals. They contacted 1930, the cybercrime helpline, and approached the respective police stations.
What Should Vehicle Owners Do After Receiving Such Messages?
Cyber crime experts have urged citizens to be cautious about traffic fine messages received from unknown numbers and to avoid opening suspicious links or installing applications sent through such messages.
AI & Technology
Google Unveils Fairwind: Next-Gen AI Defense to Shield Critical Infrastructure from Cyber Threats
Google has introduced its Fairwind Cybersecurity Program to provide advanced cybersecurity support to government entities, Google Cloud customers and partner organizations, with a focus on identifying, addressing and mitigating cyber threats.
What Is Google’s Fairwind Cybersecurity Program?
The program is designed to help organizations respond to evolving cyber threats, including automated attacks, software vulnerabilities and increasingly sophisticated threat actors. Google said the initiative will provide access to advanced artificial intelligence capabilities to assist security teams in detecting and responding to threats more efficiently.
The focus extends across both public and private organizations, with the aim of strengthening their ability to protect digital infrastructure from cyberattacks.
How Will Fairwind Help Organizations Tackle Cyber Threats?
A key component of Fairwind is access to Google’s Gemini AI models. The models are intended to support cybersecurity operations and help organizations proactively defend their information technology infrastructure.
Security teams can use AI capabilities to analyze large volumes of data, identify potential weaknesses and respond to emerging threats more quickly. The program could be particularly relevant for government agencies and critical infrastructure operators, where cyberattacks could disrupt essential services and expose sensitive information.
How Will Gemini AI Support Cybersecurity Operations?
Fairwind is also expected to focus on identifying and fixing vulnerabilities across public and private organizations. Instead of relying only on traditional, reactive cybersecurity measures, the initiative emphasizes prevention and continuous protection.
The approach is intended to help participating organizations identify vulnerabilities before they can be exploited by malicious actors, strengthening their overall security posture.
What Technologies Will Google Use Under Fairwind?
According to the program’s planned capabilities, Fairwind will incorporate Gemini 3.8 Flash Cyber along with CodeMender Harness to support vulnerability remediation at what Google describes as an agentic scale.
These capabilities are intended to automate parts of the vulnerability-patching process, potentially allowing organizations to address security weaknesses more quickly and efficiently.
Google Announces Wider Cybersecurity Investment
Alongside the Fairwind announcement, Google has released its U.S. Cybersecurity Impact Report, outlining the company’s broader investments in cybersecurity. The report details a $100 million global cybersecurity initiative aimed at improving cyber resilience among organizations and communities.
As part of this investment, approximately $36 million has been allocated to 35 cyber clinics. These clinics are intended to provide cybersecurity assistance to organizations that may have limited resources while facing significant cyber risks.
Which Organizations Will Benefit From Google’s Cybersecurity Support?
The cyber clinics are expected to support organizations in responding to cyber risks, including helping healthcare organizations recover from cyberattacks and assisting municipal utilities in strengthening their defenses against sophisticated threats, including state-sponsored threats.
Google’s broader cybersecurity efforts reflect the growing importance of cooperation between technology companies, governments and other organizations as digital systems become increasingly important to healthcare, utilities, public administration and other essential services.
With the Fairwind Cybersecurity Program and its wider cybersecurity investments, Google is combining artificial intelligence, automated vulnerability remediation and direct support for organizations as part of a more proactive approach to cyber defense.
The Road Ahead
As cyber threats become faster and more automated, manual security responses simply can’t keep up. Google’s fusion of agentic AI patching and direct community support offers a glimpse into the future of digital defense—where threats are stopped before they ever cause damage.
-
Business3 years agoPot Odor Does Not Justify Probable Cause for Vehicle Searches, Minnesota Court Affirms
-
Business3 years agoNew Mexico cannabis operator fined, loses license for alleged BioTrack fraud
-
Business3 years agoAlabama to make another attempt Dec. 1 to award medical cannabis licenses
-
Business3 years agoWashington State Pays Out $9.4 Million in Refunds Relating to Drug Convictions
-
Business3 years agoMarijuana companies suing US attorney general in federal prohibition challenge
-
Business3 years agoLegal Marijuana Handed A Nothing Burger From NY State
-
Business3 years agoCan Cannabis Help Seasonal Depression
-
Blogs3 years agoCannabis Art Is Flourishing On Etsy
