A new method of cyber fraud involving gas connections and bill updates has emerged in Ghaziabad, where around 30 consumers with piped natural gas (PNG) connections have allegedly fallen victim to cybercriminals over the past six months. The victims have reportedly lost nearly ₹2 crore in total. Fraudsters are contacting consumers through phone calls and messages, claiming that their gas bills have not been updated, payments are pending or connections are about to be disconnected, and then using the situation to carry out financial fraud.
The fraudsters allegedly introduce themselves as employees or representatives of gas companies and begin conversations by pointing out a supposed problem with the consumer’s connection or bill. They then ask victims to complete a verification or payment process. In several cases, consumers were allegedly persuaded to download APK files or install suspicious applications. Fraudsters have also used screen-sharing to gain access to victims’ mobile devices and facilitate unauthorised transactions from their bank accounts.
In one case, Pramod Kumar, a resident of Vijay Nagar, received a message on August 6 purportedly from Indraprastha Gas Limited (IGL). The message warned that his gas connection could be disconnected because his bill had not been updated. When Pramod contacted the number provided in the message, the alleged fraudster explained a supposed bill-update procedure and instructed him to download an application. After the application was installed, the accused allegedly gained access to the mobile device and transferred money from the victim’s bank account through five separate transactions.
Another consumer, Sanjay Kumar, a resident of the Ora Chimera Society in Raj Nagar Extension, reportedly faced a similar fraud. According to his complaint, he received a message on May 24 warning that his IGL connection would be disconnected. When he contacted the number mentioned in the message, the alleged caller told him that he needed to deposit an outstanding amount to restore the connection. The fraudsters subsequently sent an APK file through WhatsApp from another number and allegedly instructed him to install it on his mobile phone.
Sanjay installed the APK file, but the fraudsters were initially unable to transfer money from his account. They then allegedly asked him to share his mobile screen. Once screen sharing was enabled, the process of withdrawing money from his bank account reportedly began. When Sanjay received a message showing that ₹2 lakh had been withdrawn, he became suspicious and immediately blocked his debit card. However, by then, a total of ₹8 lakh had reportedly been withdrawn from his account.
The cases indicate that cybercriminals are increasingly relying on social engineering rather than simply attempting to obtain OTPs or banking passwords. Everyday concerns such as gas bills, connection updates and the possibility of service disconnection are being used to create urgency and pressure victims into taking immediate action. APK files, fake applications and screen-sharing tools can then be used to facilitate unauthorised access and financial transactions.
Cybersecurity experts have repeatedly warned that such fraud becomes more effective when victims act immediately on instructions received from unknown callers. Any message claiming to be from a gas company should be independently verified through the company’s official website, application or customer service channel. Consumers should never download an APK file sent by an unknown person or allow an unfamiliar caller to control or view their mobile screen.
Ghaziabad police have advised consumers to remain particularly cautious about messages related to gas bill updates. APK files received in the name of bill verification or connection restoration should not be installed. Consumers should never share OTPs, UPI PINs, ATM details, passwords or other banking information with unknown callers. Any issue concerning a gas connection should be addressed only through the company’s authorised communication channels.
If a person becomes a victim of cyber fraud, the incident should be reported immediately by calling the national cybercrime helpline 1930. Prompt reporting can improve the chances of placing a hold on fraudulent transactions or freezing the recipient accounts. Police are examining mobile numbers, bank accounts and digital transaction records associated with the reported cases to trace the flow of the money and determine whether a larger cybercrime network is operating behind the fraud.
