News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

Mid-Sized Indian Banks Face Higher Cyber Threats Due to Low Security Investment
Data Breaches

Mid-Sized Indian Banks Face Higher Cyber Threats Due to Low Security Investment

Medium-sized banking and financial services institutions in India are increasingly vulnerable to cyber attacks because they spend significantly less on security infrastructure compared to larger counterparts. A recent report highlights that these mid-sized BFSI players lack adequate cybersecurity investments, making them attractive targets for cybercriminals. The research suggests that limited budgets for security personnel, advanced threat detection tools, and incident response systems create critical gaps. Experts warn that these vulnerabilities could lead to data breaches, customer fraud, and financial losses. The report recommends that mid-sized financial institutions prioritize cybersecurity spending and implement robust protection measures to safeguard customer data and maintain regulatory compliance. Source: Outlook Money.

via GoogleNews: data breach IndiaRead source
India to spend $3.4 billion on cybersecurity by 2026
Cyber Law (India)

India to spend $3.4 billion on cybersecurity by 2026

India's information security spending is projected to reach $3.4 billion by 2026, reflecting growing concerns about emerging cyber threats, particularly those powered by artificial intelligence. This significant investment surge indicates recognition of the evolving threat landscape facing Indian organizations and critical infrastructure. The increased expenditure targets protection against AI-enabled attacks, data breaches, and sophisticated cyber threats. Government and private sector initiatives are driving this growth as organizations prioritize cybersecurity infrastructure, employee training, and advanced threat detection systems. The investment demonstrates India's commitment to strengthening its digital defense mechanisms in an increasingly interconnected digital economy. Source: DD News.

via GoogleNews: cyber attack IndiaRead source
PM Modi warns citizens against digital fraud, KYC scams
Identity Theft

PM Modi warns citizens against digital fraud, KYC scams

Prime Minister Narendra Modi has cautioned Indian citizens against falling victim to digital fraud schemes, particularly those targeting Know Your Customer (KYC) updates. He emphasized that KYC information should only be updated through official banking and government channels. Fraudsters often impersonate legitimate institutions to collect sensitive personal and financial data through fake websites, calls, and messages. Citizens are advised to verify official contact details independently before sharing any information. Using only authorized platforms and avoiding unsolicited requests for KYC details can help prevent identity theft and unauthorized account access. Source: DD News.

via GoogleNews: digital arrest scamRead source
Indian BFSI sector faces 1.6x higher cyber-attack rate globally
Data Breaches

Indian BFSI sector faces 1.6x higher cyber-attack rate globally

A joint study by Boston Consulting Group (BCG) and Data Security Council of India (DSCI) reveals that India's Banking, Financial Services, and Insurance (BFSI) organisations experience cyber-attacks at a rate significantly higher than the global average. The research indicates these institutions face attacks 1.6 times more frequently than their international counterparts. This alarming finding underscores the growing cybersecurity challenges confronting India's financial sector, which handles sensitive customer data and transactions. The study highlights the need for enhanced security measures, employee training, and investment in advanced threat detection systems across Indian BFSI organisations to mitigate escalating cyber risks. Source: Express Computer.

via GoogleNews: data breach IndiaRead source
California sues 23andMe successor over 2023 data breach
Data Breaches

California sues 23andMe successor over 2023 data breach

California's Attorney General has filed a lawsuit against 23andMe's successor company following a significant data breach in 2023. The breach exposed sensitive personal and genetic information of users stored on the genetic testing platform. The legal action represents enforcement of consumer protection laws and accountability for inadequate security measures. This case highlights risks associated with genetic data storage and the importance of robust cybersecurity practices by companies handling sensitive biological information. Users of such services face potential identity theft and privacy violations when their data is compromised. Source: California Attorney General Press Release.

via HN: data breachRead source
Five WhatsApp Security Features to Stop Online Scams
Social Engineering

Five WhatsApp Security Features to Stop Online Scams

WhatsApp offers multiple built-in security features that can help Indian users protect themselves from online scams and fraud. These protective measures include end-to-end encryption for all messages, two-step verification to secure accounts, privacy settings for profile information, message filtering options, and tools to identify suspicious contacts. Users are encouraged to enable these features and stay vigilant against common scam tactics. Understanding and utilizing these security tools can significantly reduce the risk of falling victim to fraud on the platform. Source: The South India Times.

via GoogleNews: SIM swap fraudRead source
Varanasi Police Arrest SIM Swap Gang After ₹12 Lakh Theft
Identity Theft

Varanasi Police Arrest SIM Swap Gang After ₹12 Lakh Theft

Law enforcement in Varanasi has apprehended a criminal gang specializing in SIM swap frauds. The gang reportedly targeted a police officer, illegally obtaining a duplicate SIM card and gaining unauthorized access to the victim's bank account. Through this method, they successfully withdrew ₹12 lakh from the officer's account. SIM swap scams involve fraudsters contacting telecom providers to transfer a victim's phone number to a new SIM card under their control, enabling access to banking apps and sensitive accounts. This arrest highlights the growing threat of SIM swap fraud targeting even law enforcement personnel in India. Authorities are investigating the gang's involvement in other similar crimes. Source: The420.in.

via GoogleNews: SIM swap fraudRead source
SBI Alerts Users to Fake YONO App Deactivation Messages
Phishing

SBI Alerts Users to Fake YONO App Deactivation Messages

State Bank of India has issued a warning against scammers sending fraudulent SMS and messages to customers, falsely claiming their YONO mobile banking application will be deactivated. These phishing messages typically direct users to click malicious links or provide sensitive banking credentials. Cybercriminals use urgency tactics to trick users into compromising their accounts. SBI advises customers never to click links in unsolicited messages, never share OTPs or passwords, and to verify communications directly through official SBI channels. Users should report suspicious messages to SBI's customer support immediately. Source: CyberSecurityNews.

via GoogleNews: WhatsApp scamRead source
Digital Arrest Scams: Recognizing Tactics and Protecting Yourself
Social Engineering

Digital Arrest Scams: Recognizing Tactics and Protecting Yourself

Digital arrest scams continue to plague Indian citizens in 2026, with fraudsters impersonating law enforcement officials to extort money. Scammers use threatening calls, fake warrant claims, and intimidation tactics to coerce victims into immediate payments. Warning signs include unsolicited contact from unknown numbers, threats of legal action, and demands for verification through digital payments. Citizens should verify caller identity through official channels, never share personal or financial information with unverified callers, and report suspicious activity to local authorities. Understanding these manipulation techniques helps protect against financial loss and emotional distress. Source: Legal Service India.

via GoogleNews: OTP scamRead source
Fake Planning Commission Emails Target Grand Island Officials
Phishing

Fake Planning Commission Emails Target Grand Island Officials

Grand Island authorities have alerted residents to a fraudulent email scam impersonating the local planning commission. Cybercriminals are sending deceptive emails to trick recipients into clicking malicious links or revealing sensitive information. Officials urge the public to verify email authenticity by contacting the planning commission directly through official channels before responding to unexpected messages. Residents should avoid clicking suspicious attachments or links and report suspected phishing attempts to authorities. This type of social engineering attack commonly targets government agencies and citizens. Source: KSBN Local 4.

via GDELT: phishing scamRead source
FBI Alerts Users to Microsoft 365 Phishing Campaign
Phishing

FBI Alerts Users to Microsoft 365 Phishing Campaign

The FBI has issued a warning about an active phishing scam targeting Microsoft 365 account users. Cybercriminals are using fraudulent emails designed to appear legitimate, attempting to trick users into revealing their login credentials and sensitive information. Once compromised, attackers can gain unauthorized access to personal and corporate data. The FBI advises users to verify sender email addresses carefully, avoid clicking suspicious links, and enable multi-factor authentication on their accounts. Organizations should educate employees about recognizing phishing attempts and implement robust email security measures. Reporting suspected phishing attempts to the FBI's Internet Crime Complaint Center (IC3) is recommended. Source: Fox 10 Phoenix.

via GDELT: phishing scamRead source
Banks and Telcos Test Cybersecurity Defenses with AI Tools
Data Breaches

Banks and Telcos Test Cybersecurity Defenses with AI Tools

Indian banks and telecommunications companies are evaluating their cybersecurity readiness by testing public-facing systems using advanced AI models like Opus 4.7 and GPT 5.5. Organizations are also requiring suppliers to conduct security assessments and identify vulnerabilities. The Data Security Council of India (DSCI), operating under Nasscom, is assisting companies in preparing for these cybersecurity evaluations. This proactive approach aims to strengthen defenses against evolving digital threats and ensure robust protection of customer data and financial systems. Source: Economic Times.

via Economic Times TechRead source