
Surat, July 20 (SocialNews.XYZ) The Surat City Cyber Crime Cell on Monday arrested an 18-year-old Android application developer from Uttar Pradesh in connection with a cyber fraud case in which investigators claim malicious APK files masquerading as legitimate banking and service applications were used to compromise victims' mobile phones and facilitate financial fraud across India.
The accused, identified as Rohit Sakai, studied up to Class 11 and allegedly worked as an APK file developer. He is a resident of Patiali tehsil in Kasganj district of Uttar Pradesh.
Police said he was traced to a hotel in Kanpur through technical surveillance and was arrested following a coordinated operation by the Cyber Crime Cell.
The arrest stems from a complaint filed after a victim received a file named "PNB One.apk" on WhatsApp on May 15.
Police alleged that the accused, acting in conspiracy with bank account holders and others to obtain unlawful financial gain, created a forged APK file designed to resemble the genuine Punjab National Bank application.
When the complainant downloaded the file, investigators said it enabled unauthorised access to the victim's mobile phone, allowing the attackers to hack the device.
Police alleged that, without the complainant's knowledge, the accused and his associates accessed the victim's Prime Co-operative Bank account and transferred Rs five lakh to a Union Bank of India account.
The complainant subsequently contacted the National Cyber Crime Helpline, after which the Cyber Crime Cell investigated the matter.
A case was registered under Sections 318(4), 336(2), 338, 336(3), 340(2), 61(2) and 3(5) of the Bharatiya Nyaya Sanhita, 2023, along with Sections 66(C) and 66(D) of the Information Technology (Amendment) Act, 2008.
Investigators said technical analysis led them to identify the developer of the PNB One.apk file and trace his location to Kanpur, where he was arrested through due legal procedure.
According to the police investigation, the accused allegedly developed APK files for cybercrime syndicates operating from Jamtara district in Jharkhand, and sold the applications to members of different gangs.
Investigators alleged that he charged Rs 10,000 to Rs 15,000 per application for one month's use, after which renewal fees were collected for continued use.
Police said sustained interrogation revealed that the accused had allegedly developed 121 different APK files that were sold to multiple Jamtara-based cybercrime groups.
Investigators claimed these applications were circulated across India primarily via WhatsApp and were installed on 21,672 mobile devices, of which 2,928 were allegedly compromised after attackers gained access.
Police estimated that the operation resulted in 54,094 fraudulent debit transactions amounting to Rs 64,38,48,837.60 (about Rs 64.38 crore). Investigators released a breakdown of the applications allegedly developed by the accused.
They said 27 RTO Challan APKs were installed on 5,308 devices, resulting in access to 1,202 devices, 34,486 debit transactions and alleged fraud amounting to Rs 27.82 crore.
Thirteen SBI APKs were installed on 2,465 devices, with 323 devices compromised, 3,560 transactions and alleged losses of Rs 14.34 crore. Fourteen PNB APKs were installed on 3,362 devices, compromising 441 devices, leading to 4,531 transactions worth Rs 7.16 crore.
Police further alleged that the accused developed three Axis Bank APKs, three American Express APKs, six BigBasket APKs, 16 Customer Support APKs, 10 UCO Bank APKs, two HSBC APKs, two Hospital APKs, seven PM Kisan APKs, three DMart APKs, two Bandhan Bank APKs, two Pension APKs, four Union Bank APKs, one IndusInd Bank APK, one ICICI Bank APK, one Zepto APK, two City Union Bank APKs, and one APK each in the names of CAMPA and Federal Bank, with police attributing varying numbers of installations, compromised devices, debit transactions and financial losses to each category.
Explaining the alleged modus operandi, police said: "Two Android applications were developed according to the requirements of the Jamtara-based gangs. One application was circulated among potential victims to compromise their mobile phones, while the second enabled gang members to remotely access the hacked devices."
Gang leaders allegedly trained members to distribute the applications through Telegram and WhatsApp. Investigators said victims were persuaded to install APK files received through WhatsApp.
Once installed, the applications allegedly granted attackers access to the mobile phone. The fake applications used the names, logos and icons of banks and other organisations, leading victims to believe they were genuine.
Victims were then prompted to submit banking and Know Your Customer (KYC) details, while the applications allegedly captured SMS messages, contacts, call logs and photographs stored on the devices.
Police alleged that once access to a victim's banking details was obtained, funds were transferred from bank accounts or payment applications to mule bank accounts or credit cards.
The proceeds were then allegedly converted into cash to conceal the identities of gang members before being deposited through Cash Deposit Machines (CDMs) into bank accounts controlled by the principal accused.
Police seized two mobile phones and one laptop allegedly used by the accused for APK development.
Source: IANS
Gopi Adusumilli is a Programmer. He is the editor of SocialNews.XYZ and President of AGK Fire Inc.
He enjoys designing websites, developing mobile applications and publishing news articles on current events from various authenticated news sources.
When it comes to writing he likes to write about current world politics and Indian Movies. His future plans include developing SocialNews.XYZ into a News website that has no bias or judgment towards any.
He can be reached at gopi@socialnews.xyz
This website uses cookies.