Category: Security & Privacy

  • NHRC Investigates Alleged DPDP Act Violations in Tech Platforms

    This article was generated by AI and cites original sources.

    The National Human Rights Commission (NHRC) has initiated an investigation into reported breaches of the Digital Personal Data Protection Act (DPDP Act) within major tech platforms. The inquiry focuses on the inadequate measures for monitoring children’s data transfers and the lack of effective grievance redressal mechanisms.

    This move by the NHRC highlights the growing concerns surrounding data privacy and protection in the digital landscape. The DPDP Act, aimed at safeguarding personal data, faces challenges in its enforcement, particularly in ensuring the secure handling of children’s information.

    With AI, social media, and edtech platforms under scrutiny, the tech industry must enhance data protection measures and compliance with regulatory frameworks. The absence of robust mechanisms for overseeing data flows, especially involving minors, underscores the pressing need for stringent data privacy practices.

    As the NHRC delves into these alleged violations, the tech community is urged to prioritize data security and transparency in their operations. Compliance with data protection laws is essential not only for regulatory adherence but also to uphold user trust and privacy standards in the digital sphere.

    Source: Tech-Economic Times

  • CoinDCX Founders Questioned in Cryptocurrency Fraud Case; Firm Denies Allegations

    This article was generated by AI and cites original sources.

    Police recently questioned the founders of CoinDCX, a prominent cryptocurrency exchange, regarding a fraud case involving impersonation. The investigation, led by Thane Police, centers on fraudsters who allegedly posed as CoinDCX representatives to execute the scam. The case, as detailed in an FIR, revolves around individuals lured into a high-return crypto scheme linked to CoinDCX.pro, leading to losses amounting to Rs 71.6 lakh.

    Despite the accusations, CoinDCX refuted the claims, attributing them to impersonators attempting to tarnish the company’s reputation. The exchange emphasized its cooperation with authorities and highlighted measures taken to combat fraudulent activities, including reporting numerous fake websites to CERT-In.

    This incident follows a previous security breach in 2025 where $44.2 million was stolen from CoinDCX’s treasury. Notably, the exchange clarified that user funds remained unaffected during the breach. Rahul Agarwal, a software engineer at CoinDCX, was later arrested for his alleged involvement in facilitating the breach through a sophisticated attack on an internal wallet.

    Source: Entrackr : Latest Posts

  • Enforcement Directorate Tracks Over Rs 35,000 Crore in Cybercrime Proceeds

    This article was generated by AI and cites original sources.

    The Enforcement Directorate (ED) has identified over Rs 35,000 crore in proceeds linked to 257 cybercrime cases, the agency revealed during a session in the Lok Sabha. This announcement sheds light on the significant financial implications of cyber offenses.

    The ED collaborates with various agencies and leverages platforms like SAHYOG and Samanvaya to gather and analyze data related to cybercrimes. The establishment of a new standard operating procedure underscores the agency’s commitment to enhancing the efficiency of managing complaints and streamlining coordination with different states and union territories.

    This development underscores the growing importance of leveraging technology and data analytics in combating cyber threats. By employing advanced tools and streamlined processes, law enforcement agencies can effectively track illicit financial activities and strengthen their efforts in curbing cybercrime.

    Source: Tech-Economic Times

  • Reddit Explores Biometric Authentication to Curb AI Bots

    This article was generated by AI and cites original sources.

    Reddit, a prominent social media platform, is exploring the use of biometric technologies like Face ID and Touch ID to prevent AI bots from infiltrating the platform. CEO Steve Huffman emphasized the importance of maintaining human interaction and authenticity on Reddit amidst concerns of AI-generated spam content. While acknowledging the legitimate uses of AI for purposes like translation, Huffman stressed the platform’s commitment to fostering genuine human connections.

    Huffman described Reddit as a platform designed for humans, highlighting the significance of human verification to ensure that real individuals are driving conversations. By implementing tools such as Face ID and passkeys, Reddit aims to establish the presence of actual users actively engaging on the platform. Huffman explained that biometric technologies like Face ID require direct physical human actions, such as looking at the screen or using a fingerprint sensor, thus enhancing user authentication.

    This move reflects Reddit’s proactive stance in safeguarding its community against AI-driven manipulation and maintaining the integrity of user interactions. By leveraging biometric authentication methods, Reddit seeks to uphold user anonymity while upholding the platform’s human-centric ethos.

    Source: mint – technology

  • Cybercriminals Target CoinDCX in Impersonation Fraud Scheme

    This article was generated by AI and cites original sources.

    CoinDCX, a prominent player in India’s digital finance sector, recently faced a significant challenge as cybercriminals targeted the company by impersonating its founders. The perpetrators managed to divert funds to unauthorized accounts by posing as CoinDCX co-founders. This incident highlights the cybersecurity vulnerabilities present in the digital finance ecosystem.

    According to CoinDCX, the fraudsters operated through a network of over 1,200 fake websites during a substantial period from April 2024 to January 2026. The company promptly reported these fake websites and is actively collaborating with law enforcement agencies to address the situation.

    The rise in cyber fraud, as exemplified by the CoinDCX case, underscores the critical need for robust security measures within the digital finance realm. As more financial transactions move online, ensuring the integrity of platforms and safeguarding user assets become paramount concerns for both companies and customers.

    This incident serves as a reminder of the constant vigilance required to combat evolving cyber threats in the digital age. Companies in the financial technology sector must continuously enhance their security protocols and educate users about best practices to mitigate risks and protect against fraudulent activities.

    Source: Tech-Economic Times

  • Gujarat-Based Firm Unveils ‘AI Action Firewall’ to Enhance AI Security

    This article was generated by AI and cites original sources.

    A Gujarat-based company, NeuroPause Lab Limited, has introduced the ‘AI Action Firewall,’ a cutting-edge network security system designed to bolster the safety of artificial intelligence (AI) systems. As described by the company’s founder and CEO, Saurabh Patel, this innovative firewall serves as a crucial policy-based protective layer between AI applications and real-world operations.

    By meticulously monitoring and controlling incoming and outgoing network traffic according to predefined security protocols, the AI Action Firewall ensures that AI actions are authorized, closely supervised, and meticulously documented. This development underscores the growing need for robust security measures to safeguard AI systems from potential threats as the technology becomes more prevalent across various industries.

    The introduction of the AI Action Firewall marks a significant step towards enhancing the safety and reliability of AI operations, offering organizations a proactive approach to mitigating security risks and ensuring the responsible deployment of AI solutions.

    Source: Tech-Economic Times

  • WhatsApp Directed to Enhance Security Measures Against Digital Arrest Scams

    This article was generated by AI and cites original sources.

    The Indian government has directed WhatsApp, owned by Meta, to bolster its security measures in response to the surge in digital arrest scams. According to a report by The Indian Express, the Supreme Court highlighted that over ₹54,000 Cr has been lost to digital frauds, equating them to serious crimes like robbery.

    The Inter-Departmental Committee (IDC) has given WhatsApp a 30-day deadline to propose technical and safety enhancements. These upgrades include blocking fraudulent device IDs, retaining data of deleted accounts for 180 days, and introducing new features to identify scams and AI-generated content.

    The committee has specifically mandated WhatsApp to fortify its systems to detect and block harmful APKs, prevent the dissemination of malicious files, and enhance its AI capabilities to identify deep fakes and synthetic content. Additionally, the messaging platform will implement features akin to Skype for video calls, offering more caller information and flagging suspicious accounts.

    WhatsApp has committed to complying with these directives, aiming to curb the spread of digital extortion attempts and mitigate prolonged scam calls. By deploying logo detection and media matching systems, the platform seeks to enhance its defenses against fraudulent activities.

    Source: Inc42 Media

  • Europol Dismantles Dark Web Fraud Sites Selling Illicit Cybercrime Services

    This article was generated by AI and cites original sources.

    Europol has successfully disrupted a dark web platform named ‘Alice with Violence CP’ that was involved in selling child abuse images and offering cybercrime ‘services’ like credit card data and access to computer systems. The suspect behind this illicit operation had accumulated approximately 345,000 euros ($400,000) from around 10,000 individuals seeking to purchase the illegal content.

    This development underscores the ongoing battle against online criminal activities and the challenges faced by law enforcement in monitoring and combating illicit operations in hidden corners of the internet. The dark web continues to be a space where illegal transactions thrive, posing significant security risks to unsuspecting users.

    Europol’s efforts in dismantling such fraudulent schemes demonstrate the importance of international cooperation and advanced technological tools in combating cybercrime. By disrupting these dark web platforms, authorities aim to enhance online safety and protect individuals from falling victim to illegal activities.

    Source: Tech-Economic Times

  • US Authorities Dismantle Massive ‘Cybercrime-as-a-Service’ Botnets Targeting IoT Devices

    This article was generated by AI and cites original sources.

    The US Justice Department has successfully dismantled four major botnets responsible for launching significant distributed denial-of-service (DDoS) attacks that infected millions of Internet of Things (IoT) devices globally. These botnets, known as Aisuru, KimWolf, JackSkid, and Mossad, were operated on a ‘cybercrime-as-a-service’ model, allowing cybercriminals to exploit vulnerabilities in IoT devices and extort victims for payments.

    The operation targeted botnets that infected various IoT devices like digital video recorders, web cameras, and Wi-Fi routers, with attacks reaching up to 30 terabits per second, setting record-breaking levels of disruption. These botnets leveraged a ‘cybercrime-as-a-service’ approach, offering access to compromised devices to other malicious actors for launching DDoS attacks.

    Victims of these attacks suffered significant financial losses, with some reporting damages in the tens of thousands of dollars due to remediation expenses. The botnet operators issued hundreds of thousands of attack commands, highlighting the scale and impact of these DDoS operations.

    Source: mint – technology

  • Italian Court Overturns 15-Million-Euro Fine on OpenAI for Privacy Violations

    This article was generated by AI and cites original sources.

    An Italian court has reversed a significant fine imposed on OpenAI, the company behind ChatGPT, a popular AI language model. The fine, amounting to 15 million euros, was initially issued by the Italian data protection authority over concerns related to the handling of personal data. OpenAI has expressed satisfaction with the court’s decision, highlighting its ongoing commitment to safeguarding user privacy. The ruling marks a pivotal moment in the legal scrutiny faced by tech companies regarding data protection practices.

    This development underscores the growing importance of privacy regulations in the tech industry. With the increasing reliance on AI technologies like ChatGPT, ensuring compliance with data protection laws is essential for companies operating in the digital sphere. OpenAI’s successful appeal sets a precedent for companies navigating complex privacy frameworks and emphasizes the significance of robust data governance protocols.

    Source: Tech-Economic Times