News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

ARAI and DSCI Collaborate to Enhance Cybersecurity in Auto Industry
Cyber Law (India)

ARAI and DSCI Collaborate to Enhance Cybersecurity in Auto Industry

The Automotive Research Association of India (ARAI) in Pune has partnered with the Data Security Council of India (DSCI) to improve cybersecurity measures in the Indian automobile sector. This initiative aims to prepare the industry for upcoming data protection regulations. The collaboration will facilitate discussions among car manufacturers, suppliers, and regulators to address cybersecurity challenges. Further, it will promote the exchange of knowledge and innovation to ensure the safety of connected vehicles and manufacturing processes. The outcome is expected to strengthen the overall security framework of the auto industry against cyber threats.

via Economic Times TechRead source
CERT-In alerts MSMEs to AI-powered cyberattacks
Malware

CERT-In alerts MSMEs to AI-powered cyberattacks

India's Computer Emergency Response Team (CERT-In) has issued a warning to micro, small, and medium enterprises (MSMEs) about escalating cybersecurity threats powered by artificial intelligence. The advisory highlights how attackers are increasingly leveraging AI tools to conduct sophisticated attacks against small businesses, which often lack robust security infrastructure. CERT-In recommends MSMEs implement enhanced security measures, conduct regular employee training on cyber threats, and establish incident response protocols. The warning emphasizes that AI-driven attacks can be more targeted and difficult to detect than traditional methods. Businesses are urged to stay vigilant and report suspicious activities to authorities. Source: The Cyber Express.

via GoogleNews: CERT-In advisoryRead source
WhatsApp blocks 9,400 accounts in digital arrest scam crackdown
Social Engineering

WhatsApp blocks 9,400 accounts in digital arrest scam crackdown

WhatsApp has significantly expanded its enforcement against digital arrest scams in India, converting 17 government flags into 9,400 account bans. The messaging platform leveraged official complaints to identify and remove accounts involved in this prevalent fraud scheme. Digital arrest scams, where fraudsters impersonate law enforcement officials to extort money from victims, have become increasingly common in India. WhatsApp's coordinated action demonstrates how tech platforms can scale enforcement efforts by utilizing government reports and internal detection mechanisms. The move represents a broader effort to combat scam-related content on the platform, protecting Indian users from financial exploitation and fraud. Source: MediaNama.

via GoogleNews: WhatsApp scamRead source
RBI Intensifies Measures Against Digital Fraud in India
Cyber Law (India)

RBI Intensifies Measures Against Digital Fraud in India

The Reserve Bank of India is strengthening its efforts to combat the growing menace of digital fraud across the country. The central bank has announced enhanced security protocols and stricter regulations for financial institutions to protect consumers from cyber threats. RBI's initiative focuses on improving fraud detection mechanisms, promoting digital literacy among users, and ensuring safer online banking experiences. Banks and payment systems are being directed to implement advanced security measures to safeguard customer data and prevent unauthorized transactions. This move comes as digital fraud cases continue rising in India, affecting millions of users. The RBI aims to build public confidence in digital financial services while holding financial institutions accountable for security lapses. Source: BBC.

via GoogleNews: bank fraud IndiaRead source
SIM Swap Fraud: How Attackers Empty Bank Accounts
Identity Theft

SIM Swap Fraud: How Attackers Empty Bank Accounts

SIM swap fraud poses a serious threat to Indian bank account holders. Attackers exploit this technique by convincing telecom providers to transfer a victim's phone number to a new SIM card under their control. Once successful, fraudsters can intercept OTPs and two-factor authentication codes, gaining unauthorized access to banking apps and payment systems. Within minutes, victims can lose significant funds through unauthorized transfers. The attack targets individuals with substantial savings and digital banking activity. To protect yourself, register for fraud alerts with your bank, use strong passwords, enable additional security layers, and maintain regular communication with your service provider about account activities. Source: Moneycontrol.com

via GoogleNews: SIM swap fraudRead source
WhatsApp Removes 9,400 Scam Accounts; SC Examines Digital Arrest Fraud
Social Engineering

WhatsApp Removes 9,400 Scam Accounts; SC Examines Digital Arrest Fraud

WhatsApp has taken action against fraudulent activity in India by banning 9,400 scam-related accounts from its platform. The move comes as India's Supreme Court reviews the growing menace of digital arrest scams, where criminals impersonate law enforcement officials to extort money from unsuspecting victims. These frauds typically involve threats of legal action and arrest warrants to coerce victims into transferring funds. The Supreme Court's intervention highlights the serious nature of such crimes affecting Indian citizens. WhatsApp's account bans represent the platform's effort to combat misuse, though experts suggest users remain vigilant against social engineering tactics employed by scammers. Source: Daily Pioneer.

via GoogleNews: WhatsApp scamRead source
CERT-In issues security guidelines for Indian firms over AI risks
Cyber Law (India)

CERT-In issues security guidelines for Indian firms over AI risks

India's Computer Emergency Response Team (CERT-In) has released protective measures for organizations and small-to-medium enterprises (MSMEs) following emerging cybersecurity concerns related to Mythos AI. The advisory addresses potential vulnerabilities that could affect Indian businesses relying on artificial intelligence systems. CERT-In recommends implementing robust security protocols, regular system audits, and employee awareness training to mitigate risks. MSMEs are advised to adopt industry-standard safeguards and maintain updated security frameworks. The guidance aims to strengthen India's cyber defense posture amid growing AI-related threats in the digital landscape.

via GoogleNews: CERT-In advisoryRead source
Cert-In alerts MSMEs on AI model risks to cybersecurity
Malware

Cert-In alerts MSMEs on AI model risks to cybersecurity

India's Computer Emergency Response Team (Cert-In) has issued a warning to micro, small, and medium enterprises (MSMEs) regarding potential cybercrime threats posed by advanced AI models, including Anthropic's Mythos. The alert highlights how sophisticated artificial intelligence systems could be misused by cybercriminals to conduct large-scale attacks, social engineering schemes, and automated fraud. Cert-In recommends that MSMEs implement robust security protocols, employee training, and monitoring systems to defend against AI-enabled threats. Organizations are advised to stay updated on emerging AI-based attack vectors and adopt preventive measures. Source: The Times of India.

via GoogleNews: CERT-In advisoryRead source
Cert-In warns of AI-driven cyber threats, shares safety measures
Malware

Cert-In warns of AI-driven cyber threats, shares safety measures

India's Computer Emergency Response Team (Cert-In) has issued a warning about emerging cybersecurity threats powered by artificial intelligence. The advisory highlights how AI technologies are being exploited by cybercriminals to launch more sophisticated attacks. Cert-In has outlined specific protection measures for individuals and organizations to defend against these AI-led threats. The guidance emphasizes the importance of staying updated with security patches, using strong authentication methods, and maintaining vigilance against evolving attack vectors. As AI-powered cyberattacks become increasingly prevalent, following these recommended security practices can help reduce vulnerability to malicious activities and data compromise incidents. Source: Business Standard.

via GoogleNews: CERT-In advisoryRead source
Indian cybercrime unit alerts citizens to cryptocurrency scams
Crypto Scams

Indian cybercrime unit alerts citizens to cryptocurrency scams

India's cybercrime authorities have issued a warning about the rising threat of cryptocurrency-related scams targeting citizens. The unit has released practical prevention strategies to help the public avoid falling victim to these fraudulent schemes. Cryptocurrency scams remain a significant concern, with cybercriminals using various tactics to steal funds and personal information from unsuspecting investors. The advisory emphasizes the importance of verifying investment opportunities, avoiding unsolicited crypto investment offers, and being cautious about sharing sensitive information online. Citizens are urged to report suspicious activities and seek verified investment channels. The guidance aims to raise awareness about common scam patterns and empower individuals to protect their digital assets and financial security. Source: Moneycontrol.com

via GoogleNews: cryptocurrency scamRead source
CERT-In Warns of Frontier AI Security Risks
Malware

CERT-In Warns of Frontier AI Security Risks

India's Computer Emergency Response Team (CERT-In) has identified frontier artificial intelligence systems as an emerging cybersecurity threat. The warning highlights risks associated with advanced AI technologies that could be exploited for malicious purposes. As AI capabilities expand rapidly, security experts caution that these systems may be leveraged for sophisticated cyber attacks, including automated threat generation and adaptive malware creation. Organizations are advised to implement robust security measures and stay updated on AI-related vulnerabilities. CERT-In continues monitoring the evolving threat landscape to protect India's digital infrastructure from potential AI-driven attacks. Source: The420.in.

via GoogleNews: CERT-In advisoryRead source
Mythos threat prompts Indian agencies to review cyber defenses
Malware

Mythos threat prompts Indian agencies to review cyber defenses

Following the emergence of Mythos, India's cybersecurity authority CERT-In has initiated a comprehensive risk assessment across the telecommunications and banking sectors. Financial institutions and telecom operators are evaluating their current security infrastructure and vulnerability management protocols. The development underscores growing concerns about sophisticated cyber threats targeting critical infrastructure in India. Banks and telecom companies are coordinating with regulatory bodies to strengthen defenses against potential attacks. This proactive measure aims to identify and mitigate weaknesses before adversaries can exploit them, ensuring continued protection of sensitive financial and communications systems across the country. Source: MediaNama.

via GoogleNews: CERT-In advisoryRead source