India’s cyber and technology landscape is evolving across financial crime, quantum-resistant payments, government-linked infrastructure security, AI-enabled border defence and emerging risks from frontier AI.

Cyber Alert: Today’s Biggest Cyber Crime Stories Shaking India – 23rd September

The420.in Staff
7 Min Read

1. Uttarakhand STF Busts Bangladesh-Linked SIM-Box Gateway Used to Disguise Overseas Fraud Calls

Uttarakhand Police STF’s Kumaon cybercrime team has dismantled an illegal telecommunications gateway in Bajpur, Udham Singh Nagar, arresting a 24-year-old suspect after intelligence gathering conducted with the Department of Telecommunications.

Investigators seized two 32-slot SIM boxes, 114 Indian SIM cards, 77 antennas, a router, mobile phone and associated networking equipment.

Police allege the equipment had operated for about seven months and was supplied through cybercriminal contacts in Bangladesh. International/VoIP calls were converted into calls displaying Indian mobile numbers, concealing the caller’s true overseas origin—a technique frequently associated with digital-arrest, impersonation and other cyber-fraud operations.

Why it matters: SIM boxes are part of the technical infrastructure behind transnational cybercrime, not merely a telecom-revenue problem. Their forensic examination can expose SIM identities, IMSI/IMEI relationships, VoIP endpoints, IP logs, overseas controllers and potentially thousands of fraudulent calls. The case reinforces the need for a joint Police + DoT + TSP + I4C SIM-box detection architecture based on abnormal call patterns.

2. UP STF Arrests Key Accused in ₹7.29-Crore Fake Stock-Training Cyberfraud

Uttar Pradesh Special Task Force has arrested a 37-year-old man wanted in connection with an alleged ₹7.29-crore cyber-investment fraud registered at Lucknow’s Cyber Crime Police Station.

Investigators allege victims were attracted through fake stock-market training and investment propositions before being induced to transfer substantial sums. The allegations remain subject to investigation and judicial determination.

The case follows a recurring pattern now visible across multiple Indian cybercrime investigations:

Stock education/training → Messaging group → Apparent trading platform → Fabricated profits → Repeated deposits → Withdrawal obstruction

Why it matters: Investment fraud should increasingly be investigated as an organised digital ecosystem rather than as isolated cheating cases. Police need to correlate advertisements, WhatsApp/Telegram groups, fake domains/apps, beneficiary accounts, mule networks, devices, IPDR and cryptocurrency transfers across NCRP complaints to reach the network controllers.

3. Five Adani-Linked Companies Settle SEBI Disclosure and Audit Proceedings for ₹1.51 Crore

India’s Securities and Exchange Board of India has disposed of adjudication proceedings involving five Adani-linked listed companies after they collectively paid approximately ₹1.51 crore in settlement amounts. The companies settled without admitting or denying SEBI’s findings or conclusions of law.

The proceedings concerned alleged disclosure and governance shortcomings identified during SEBI examinations following issues raised in the Hindenburg matter. They included alleged non-disclosure of a related-party transaction and instances in which audit or limited-review reports were signed by auditors without valid peer-review certification.

Why it matters: The case is relevant beyond one corporate group. It reinforces three important compliance controls for listed companies:

Related-Party Transaction Identification → Timely Disclosure → Auditor Eligibility and Independence Verification

For boards and compliance officers, regulatory risk increasingly extends into the quality and credentials of the assurance ecosystem itself.

Proposal for Conducting Cyber Crisis Drill, Tabletop Exercise (TTEx) & CCMP Readiness Exercise

4. India and Japan Deepen Defence-Technology, AI and Supply-Chain-Security Cooperation

India and Japan held talks in New Delhi on 22 September covering stronger defence-technology cooperation, joint military exercises and Indo-Pacific security.

Defence Secretary Rajesh Kumar Singh met a Japanese parliamentary delegation led by Taro Kono, with the Ministry of Defence describing the discussions on bilateral defence-technology collaboration as productive.

The Japanese delegation also discussed economic security, supply-chain resilience, technology and innovation with Foreign Secretary Vikram Misri and visited IISc, ISRO and Bharat Electronics Limited in Bengaluru. The broader engagement includes growing cooperation in AI, space and defence technology.

Why it matters: National security increasingly depends on trusted technology supply chains as much as conventional military capability. India–Japan cooperation has potential relevance to secure electronics, semiconductors, AI, autonomous systems, cyber defence, space systems and resilient component sourcing—all areas where dependence on potentially hostile supply chains creates strategic vulnerability.

5. AI Cybercrime Reaches a New Level: Microsoft Disrupts EvilTokens After 12,000+ Inbox Compromises

Microsoft and partners have disrupted EvilTokens, an AI-enabled cybercrime-as-a-service operation linked to more than 12,000 compromised email inboxes across over 10,000 organisations worldwide since launching in February 2026. India was among the countries with significant victim activity.

EvilTokens used device-code phishing to obtain persistent email access. Its AI then analysed compromised inboxes to map organisational roles, identify payment authorities, locate invoices and financial conversations, identify trusted relationships and recommend whom criminals should impersonate.

Microsoft says 50 websites were seized and more than 150 supporting domains disabled. UK police earlier arrested two men; the investigation continues and no guilt has been established.

Why it matters: This represents an important transition from AI-written phishing → AI-directed financial fraud.

Once an inbox is compromised, criminals no longer need days to understand an organisation; AI can potentially reconstruct its hierarchy and payment processes in minutes. BFSI and corporates should therefore treat unusual payment instructions as a Business Email Compromise + AI risk, requiring independent second-channel verification, token/session revocation—not merely password resets—and continuous identity monitoring.

Today’s Strategic Signal

Cybercrime is moving steadily upstream. The most effective intervention point is increasingly before the victim loses money: dismantle SIM-box infrastructure, detect fraudulent investment platforms, strengthen corporate disclosure controls, secure strategic technology supply chains, and disrupt AI-enabled criminal platforms.

The operational doctrine is becoming:

Identify Infrastructure → Disrupt Access → Preserve Digital Evidence → Trace Money and Controllers → Coordinate Across Borders

Follow for daily updates on cybercrime, corporate fraud, DFIR, hacking, investigations, and digital forensics

Stay Connected