Connect with us

Cyber Crime

Insurance Insider Used Customer Records to Raise Fake Loans, One Held

Published

on

Mumbai Police have arrested a former employee of a private insurance company and his alleged accomplice in connection with a sophisticated fraud scheme that reportedly used customers’ personal information to obtain unauthorized online loans worth ₹24 lakh.

Investigators allege that sensitive policyholder data was misused to manipulate account details, secure loan approvals, and divert funds into mule bank accounts without the knowledge of the affected customers.

Complaint From Customer Triggered Internal Investigation

The alleged fraud came to light after a policyholder from Gurugram alerted the insurance company about unexpected SMS notifications relating to a loan application that he claimed he had never requested.

Following the complaint, the company’s internal fraud detection team launched an investigation and discovered suspicious activities linked to two employees who had recently interacted with the customer.

According to investigators, the employees had visited the policyholder’s residence under the pretext of assisting with insurance-related services and reportedly gained temporary access to his mobile phone during the process. Authorities later found that a loan had been sanctioned in the customer’s name without his authorization.

Multiple Customers Allegedly Targeted

As the inquiry expanded, investigators uncovered evidence suggesting that the fraud was not limited to a single victim.

Police said at least 15 loans were allegedly processed using customer identities and personal information. The accused are suspected of obtaining one-time passwords (OTPs) from policyholders, generating security credentials, and modifying registered mobile numbers, email addresses, and bank account details within the company’s system.

Officials believe these alterations enabled the accused to take control of customer profiles and redirect loan disbursements to accounts under their control.

Investigators further allege that after modifying account information, the accused successfully convinced internal systems that the new details were legitimate, allowing loan amounts to be transferred without raising immediate red flags.

Funds Routed Through Mule Accounts

According to police, the fraud proceeds were funneled through a network of mule accounts designed to conceal the destination of the funds.

Authorities suspect that the operation relied on carefully coordinated financial channels to move and withdraw the money after loan approvals were obtained. The alleged scheme caused financial losses estimated at approximately ₹24 lakh.

Investigators are now examining transaction records to determine whether additional accounts or individuals were involved in the movement of funds.

Arrests Made, One Accused Still Missing

Following a formal complaint, the West Cyber Police Station in Mumbai registered a criminal case and launched a detailed investigation.

Police arrested former employee Imran Khan along with Pulkit Sharma, who is alleged to have arranged bank accounts used for receiving the fraud proceeds. Both were brought to Mumbai after being detained outside the city.

During the operation, officers reportedly seized three mobile phones, six cheque books, and two bank passbooks that are believed to be connected to the case.

Meanwhile, another accused, identified as Anjali Rani, remains absconding. Law enforcement agencies have launched efforts to trace her whereabouts and determine her exact role in the alleged fraud.

Investigation Expands Into Wider Network

Cybercrime investigators are continuing to analyze digital evidence, financial transactions, and customer records to establish the full scale of the operation.

Officials have not ruled out the possibility that additional individuals may have participated in the scheme or facilitated the creation of mule accounts used to transfer the funds.

The case highlights growing concerns over insider threats in financial and insurance institutions, where access to customer information can be exploited to commit sophisticated digital fraud.

Authorities have urged consumers to remain cautious when sharing personal information and to immediately report any suspicious financial activity linked to their accounts.

Cyber Crime

Fake Form 16 and Credit Card Calls Are Turning Into Dangerous APK Scams

Published

on

By

Cybercriminals have once again allegedly used APK files as a tool to carry out online fraud. In two separate incidents in Noida, elderly victims were allegedly lured with offers of assistance in obtaining a credit card and accessing Income Tax Form 16 information before being persuaded to download APK files. Soon after the files were downloaded, a total of ₹17 lakh was transferred from their bank accounts. Both victims approached the Cyber Crime Police Station on Friday and filed complaints. Police are now examining the bank accounts, mobile numbers and transaction trails linked to the alleged fraud.

The first case involves a textile businessman from Sector 61. On May 18, 2025, Rajesh allegedly received a phone call from a person claiming to be a bank employee. The caller offered to help him obtain a credit card from home and told him that the application process could be completed online. During the conversation, the caller allegedly sent Rajesh an APK file, claiming it was required to complete the application.

Rajesh followed the instructions and downloaded the APK file. The caller subsequently told him that his credit card application had been successfully completed and that the card would be delivered shortly. However, the following day, ₹8 lakh was transferred from Rajesh’s bank account. He realised that he had allegedly fallen victim to a cyber fraud after noticing the unauthorised transactions.

The second case involves Hemant, a retired railway employee living in Sector 107. He had searched online for information related to Income Tax Form 16. On July 3, he allegedly received a call from a person who claimed that he could provide information and assistance regarding the form. The caller allegedly used this pretext to persuade Hemant to download an APK file.

After Hemant downloaded the file, ₹9 lakh was allegedly transferred from his bank account. He discovered the fraud after noticing the unauthorised withdrawal of funds. Following complaints from both victims, cybercrime investigators have begun examining the circumstances surrounding the two incidents.

APK, or Android Package Kit, is the file format used to install applications on Android devices. However, cybercriminals can misuse APK files to distribute malicious applications. Once installed, such applications may potentially allow criminals to access sensitive information, monitor device activity or manipulate victims into carrying out financial transactions.

Renowned cybercrime expert and former IPS officer Prof. Triveni Singh said cybercriminals are increasingly combining technology with social engineering to gain the trust of victims. Fraudsters often pose as bank employees, government officials or representatives of service providers and then persuade people to install APK files or other suspicious applications. He cautioned that downloading an application at the instruction of an unknown caller can expose users to serious financial and privacy risks.

In these two cases, the alleged fraudsters exploited different requirements of the victims. In one case, the lure involved a credit card, while in the other, the fraudsters used the victim’s search for Form 16 information. Such tactics allow criminals to create a sense of urgency and legitimacy before directing victims towards potentially malicious files.

Police are now tracing the mobile numbers used to contact the victims, the bank accounts that received the money and the subsequent movement of the funds. Investigators are also examining whether the ₹17 lakh was transferred to common accounts or moved through a connected network of mule accounts.

The possibility of a common cybercrime network is also being examined. If investigators find similarities between the mobile numbers, bank accounts, digital identifiers or transaction routes used in the two cases, they could help establish links between the incidents and identify additional members of the alleged network.

The investigation will also focus on the digital evidence available on the victims’ devices. Police may examine the APK files, installation records, communication history, mobile numbers and banking transactions to determine how the alleged fraud was executed and where the stolen money was ultimately transferred.

Cybersecurity experts advise people not to download APK files sent by unknown callers, even when the caller claims to represent a bank, the Income Tax Department or another government or financial institution. Information about such services should be obtained through official websites or verified channels. If a suspicious application is installed accidentally, users should immediately contact their bank, secure their accounts and report the incident to the cybercrime authorities.

Continue Reading

Cyber Crime

FutureCrime Summit Panel Explores Planning and Management of Cybersecurity Laboratories

Published

on

By

As cybercrime becomes increasingly sophisticated, the ability to investigate and preserve digital evidence depends heavily on specialised infrastructure. This challenge was a key focus at the FutureCrime Summit 2026, where experts examined how organizations can plan, establish and manage effective cybersecurity and digital-forensics laboratories.

A panel discussion and workshop titled “Planning, Setting Up, and Managing a Cybersecurity Laboratory” explored the practical requirements involved in developing laboratories that can support digital investigations, forensic analysis, incident response and professional training.

The session featured Ajay Sariyal, Technical Product Specialist at MSAB; Abhinav Saurabh of Forensic Care; Sub-Inspector Saurabh Haritesh of Delhi Police; and Priya Choudhary. Their combined perspectives highlighted the importance of aligning technology, investigative requirements, personnel and laboratory management.

Cyber Labs Must Be Designed Around Their Mission

Establishing a modern cybersecurity laboratory involves far more than purchasing computers and forensic software. The facility must be designed according to the type of work it is expected to perform.

Depending on its purpose, a laboratory may support mobile-device examinations, digital evidence analysis, malware investigations, network forensics, cybercrime response or specialist training.

Infrastructure planning can include forensic workstations, specialised tools, secure networks, controlled-access areas and reliable systems for storing digital evidence. Each component must contribute to a workflow that protects the integrity and reliability of investigations.

For law-enforcement agencies, these requirements become particularly important because laboratories may handle evidence connected to criminal cases. Proper documentation, controlled evidence handling and repeatable examination procedures are therefore essential.

Skilled Investigators Remain Critical

The panel also underscored a fundamental point: advanced technology is only as effective as the professionals using it.

Digital-forensics personnel need the expertise to acquire, preserve, examine and interpret evidence while maintaining appropriate investigative procedures. Continuous training is equally important because digital devices, operating systems, applications and cyberattack techniques change rapidly.

Ajay Sariyal’s experience in mobile-device forensics brought a technology-focused perspective to the discussion. The participation of Abhinav Saurabh from Forensic Care added a forensic-services dimension, while Sub-Inspector Saurabh Haritesh represented the operational challenges faced by police investigators.

Together, these perspectives highlighted the need for cybersecurity laboratories to combine specialised technology with practical investigative expertise.

Laboratory Management Does Not End After Setup

Another important issue raised by the session was the need for sustained management once a laboratory becomes operational.

Cybersecurity and forensic facilities require ongoing maintenance, software upgrades, licence management, equipment replacement, secure storage and access-control reviews. Documented procedures must also be updated as investigative techniques and technologies evolve.

Growing caseloads can create another challenge. Laboratories must develop efficient workflows for prioritising examinations and managing evidence backlogs without compromising forensic standards or the reliability of findings.

This makes laboratory development a continuing institutional responsibility rather than a one-time investment in technology.

A Foundation for Modern Cybercrime Investigations

The FutureCrime Summit session highlighted that an effective cybersecurity laboratory depends on the interaction of technology, trained personnel, secure processes and long-term management.

As digital evidence becomes increasingly important in criminal investigations, organizations need facilities capable of handling complex and diverse forms of electronic information. A well-planned laboratory can provide investigators with the controlled environment and specialist capabilities required to examine digital evidence effectively.

The broader takeaway from the discussion was that the success of a cyber-forensics facility should not be measured simply by the number of tools it contains. Its real value lies in how efficiently its technology, personnel and procedures work together to support reliable investigations.

Continue Reading

Bengaluru News

New Bengaluru Dating Scam: Pay Cab Fare First, Get Blocked Next

Published

on

By

Bengaluru: A suspected dating-app scam has sparked concern among users in Bengaluru, with a social media post warning about a scheme in which fake profiles allegedly persuade matches to pay cab fares before abruptly cutting off contact.

The warning, shared on X on August 12, claimed that some men using dating platforms such as Tinder and Bumble were allegedly approached by people posing as potential romantic partners. After establishing a conversation and agreeing to meet, the alleged scammers reportedly introduced a request for advance payment for transportation.

However, the social media claim does not currently establish the number of victims, confirmed police cases or an official investigation. It should therefore be treated as an online warning rather than a confirmed police finding.

How the Alleged Dating Scam Works

According to the viral warning, the interaction initially appears to be a normal conversation between two people who have matched on a dating platform.

After discussing a possible meeting, the person behind the profile allegedly claims that a cab is required to travel to the meeting location. The match may then ask the other person to pay the fare in advance.

In some cases, the alleged scammer reportedly asks the victim to transfer the money directly to a supposed cab driver. This can make the request appear more credible because the payment is presented as part of an ordinary travel arrangement.

Fake Booking Details May Add Credibility

The alleged fraud may involve fabricated travel information designed to make the payment request look genuine.

Such information could include a claimed fare, driver details, vehicle information or other booking-related data. Once the payment is made, the person allegedly stops responding and may block the victim on the dating platform or messaging service.

While individual payments may be relatively small, similar scams can generate money when repeated across a large number of targets.

Why Dating-App Users Should Stay Alert

The alleged scheme highlights a broader risk associated with online dating: scammers can exploit trust built during conversations and use the prospect of a face-to-face meeting to make unexpected financial requests seem reasonable.

Users should be particularly cautious when a newly established online contact asks for money for a cab, hotel, emergency expense, deposit, gift card or another service before the first meeting.

A request accompanied by urgency or pressure should be treated as a warning sign.

Verify Travel Arrangements Independently

If a match claims to have booked a cab, users should independently verify the booking through the official app or website of the relevant transportation provider.

Screenshots, forwarded messages, payment links or booking information supplied directly by an online match should not automatically be treated as proof that a genuine reservation exists.

Users should also avoid sharing OTP codes, passwords, card information, banking credentials or other sensitive financial details with someone they have recently met online.

For a first meeting, choosing a public location and informing a trusted person about the plans can provide additional safety.

Viral Claim Still Needs Official Verification

The Bengaluru warning originated from a social media post rather than a confirmed police statement. As a result, the specific allegations, number of victims and scale of the suspected scam have not been independently established from the information available.

Nevertheless, the alleged pattern is consistent with a common fraud tactic: establish trust, create urgency and then request a relatively small payment that may appear harmless.

Anyone who encounters such behaviour should avoid sending money solely because a meeting has been arranged. If money has already been transferred in a suspected fraud, the victim should immediately contact the relevant bank or payment provider and report the transaction through India’s official cybercrime reporting channels.

Continue Reading

Trending

Copyright © 2022 420 Reports Marijuana News & Information Website | Reefer News | Cannabis News