spot_img

Research Report on the Scams in Names of Indian Railway and Big Brands in India released

Date:

Trending

WhatsApp messages masquerading as the offers from various giant entities with links luring unsuspecting users with the promise of transport subsidy, medical subsidy, recharge offer, free travel tickets etc., have been making the rounds on the app recently. If you receive such messages try to stay away from these, as these can be a scam.

- Advertisement -

Images above show Fake WhatsApp Messages (Screenshots)

The Research Wing of CyberPeace Foundation, Autobot Infosec Private Limited along with CyberPeace Center of Excellence (CCoE) have conducted six different studies based on these WhatsApp messages that contained links pretending to be a free subsidy, recharge offer and travel tickets from Indian Railways, Apollo Hospitals, Haldiram, Emirates Airlines, Various Telecom giants and Tata Group which ask users to participate in various offers and survey in order to get a chance to win the prizes.

- Advertisement -

Warning Signs

CyberPeace Advisory

- Advertisement -

The campaigns are pretended to be the offer from various big brands but hosted on the third party domain instead of the official website of the respective brands which make it more suspicious

The domain names associated with the campaigns have been registered in very recent times.

Multiple redirections have been noticed between the links.

No reputed site would ask its users to share the campaign on WhatsApp.

The prizes are kept really attractive to lure the laymen.

Grammatical mistakes have been noticed.

CyberPeace Foundation recommends that people should avoid opening such messages sent via social platforms.

Falling for this trap could lead to whole system compromise such as access to microphone, Camera, Text Messages, Contacts, Pictures, Videos, Banking Applications etc as well as financial loss for the users.

Do not share confidential details like login credentials, banking information with such a type of scam.

Never share or forward fake messages containing links to any social platform without proper verification.

Never install an application from a third party source instead of the official app store.

There is a need for International Cyber Cooperation between countries to bust the criminal gangs running the fraud campaigns affecting individuals and organizations to make the Cyberspace resilient and peaceful.

On the landing page a Congratulations message appears with the attractive photo of the offers and ask users to participate in a quick survey or questionnaires in order to avail the said offers. All the links showcase the respective logos of the said entities and ask users to take the survey to win recharges and subsidies.

Also at the bottom of the page a section comes up which seems to be a comment section where many users have commented about how the offers are beneficial.

All the surveys start with some basic questions like Do you know the above mentioned companies How old are you What do you think of Emirates Airlines or Haldiram’s Are you male or female etc.

Once the user answers the questions a “congratulatory message” is displayed. After Clicking the OK button users are given three attempts to win the prizes.

After completing all the attempts it says that the user has won the respective offers.

Image 2: Fake congratulatory messages

Clicking on the ‘OK’ button, it instructs users to share the campaign on WhatsApp. Strangely enough the user has to keep clicking the Whatsapp button until the progress bar completes. After clicking on the green ‘WhatsApp’ button it shows a section where a “Congratulations” appears once again.

During the analysis the research team found a JavaScript code called hm.js was being executed in the background from the host hm[.]baidu[.]com which is a subdomain of Baidu and is used for Baidu Analytics, also known as Baidu Tongji. The important part is that Baidu is a Chinese multinational technology company specializing in Internet-related services, products and artificial intelligence, headquartered in China.

The campaign, pretending an offer from TATA, insists users to download an application from a third party app store.

To read the detailed reports, visit www.cyberpeace.org/publications

The detailed study helped CyberPeace and AutoBot Infosec Pvt Ltd to come to the following conclusions:

The whole research activity was performed in a secured sandbox environment where the WhatsApp application was not installed. If any user opens the link from a device like smartphones where WhatsApp application is installed, the sharing features on the site will open the WhatsApp application on the device to share the link.

The campaign collects browser and system information from the users.

Most of the domain names associated with the campaign have the registrant country as China whereas the campaign that offers free 30GB of internet data has the registrant country as Pakistan.

Cybercriminals used Cloudflare technologies to mask the real IP addresses of the front end domain names used in the campaigns. But during the phases of investigation, the research team has identified a domain name that was requested in the background and has been traced as belonging to China.

THE SNAPSHOTS

Sign up to get quick snaps of everyday happening, directly in your inbox.

We don’t spam! Read our privacy policy for more info.

- Advertisement -

More Latest Stories

More Articles

Roombr Founder Satisha Naraharimurthy On Scalable Digital Learning Beyond Metro Schools

Speaking with TechGraph, Satisha Naraharimurthy, Founder and CEO of Roombr, discussed how schools have spent years adding smart boards, LMS platforms, and different video...

Techugo Appoints Akshay Gupta as Vice President of IT for Global Markets

In a move to expand into new markets, Techugo, a global mobile application and digital transformation company, has appointed Akshay Gupta as Vice President of IT for Global Markets. In his new role, Gupta will lead Techugo’s global IT strategy and oversee the development of...

Foreign Secretary Cooper Denies UK’s Role in U.S. Operation Against Venezuela’s Maduro

The British Foreign Secretary, Yvette Cooper, said the UK was not involved in the...

6 Realities Every Independent Professional Eventually Faces

Choosing to work independently is a dream for many. The freedom to set your...

India Extends Textile PLI Application Deadline to March 31

India has extended the deadline for submission of fresh applications under the Production Linked...

NCB Advises Indian Travellers to Seek Clearance for Carrying Medicines to Saudi Arabia

The Narcotics Control Bureau has advised Indian travellers to obtain the required approvals before...

Bulgaria Becomes 21st Member of the Eurozone

Bulgaria became the 21st nation to adopt the euro as its official currency on...

India, Pakistan Share Details of Prisoners and Fishermen Held in Custody

India and Pakistan today exchanged the lists of civilian prisoners and fishermen in each...

US President Trump Says PM Modi “Knew I Was Not Happy,” Links India’s Russian Oil Import Cuts to Tariff Threats

US President Donald Trump praised Indian Prime Minister Narendra Modi for what he described as a reduction in India’s purchases of Russian oil, linking...

India, Pakistan Exchange List of Nuclear Facilities Under Bilateral Agreement

India and Pakistan today exchanged the list of Nuclear Installations and facilities covered under...

Scaling Conversations: Superbot AI’s Sarvagya Mishra on Building Regional Voice AI for India’s Linguistic Markets

Speaking with TechGraph, Sarvagya Mishra, Founder and Director of Superbot, discussed how India’s shift...

Vimal Singh on ReadyAssist’s Role in Modernising Roadside Assistance in India

Speaking with TechGraph, Vimal Singh, Founder of ReadyAssist, discussed how traditional roadside assistance models...

When Cybersecurity Tools Break the System: The Hidden Risk Behind Digital Defenses

Cybersecurity solutions are designed to protect businesses from threats, but increasingly, these very tools...

Rewiring Academic Research: MBU’s Dr. T.V.V. Satyanarayana on How IECom Is Shaping India’s Intelligent Electronics Agenda

Speaking with TechGraph, Dr. T.V.V. Satyanarayana, Professor at Mohan Babu University (MBU), discussed how IECom-2025 was curated not as a traditional academic conference but...

Building a Future-Ready Portfolio in a Digitally Driven Economy

The rapidly changing investment landscape in India has the nation's fast-growing digital economy at its center. Technology is affecting how companies operate, how consumers behave, and how investors, especially retail ones, should think about the future of their portfolios. This isn't about making life easy...

Why BFSI Needs Generative AI, Not Rule Engines

The Banking, Financial Services, and Insurance (BFSI) sector has been using rule engines for...

How Unified Intelligence Is Transforming the Future of Device Security

Device security has always been a balancing act; protecting sensitive data without slowing the...

Serhiy Tokarev on the Four Hidden Advantages of the CEE Startup Ecosystem

Central and Eastern Europe (CEE) has changed a lot in the last ten years....

How Self-Service Analytics Is Reshaping Everyday Business Decisions

For years, analytics ran on a predictable cycle. Business teams raised requests and waited...

How can mid-career professionals transition into AI-assisted roles without going back to college?

Artificial intelligence is reshaping industries worldwide, from healthcare to finance, marketing, logistics, and education....

Adda247’s Bimaljeet Singh Bhasin on Career247 and the Push for Job-Ready Education

In an interview with TechGraph, Bimaljeet Singh Bhasin, CEO of Skilling and Higher Education...

Dr Kamal Chhabra on KC GlobEd’s Approach to Global Finance and Accounting Education

Speaking with TechGraph, Dr Kamal Chhabra, Founder and CEO of KC GlobEd, discussed how...

Rethinking Medical Training: MedLern Co-founder Deepak Sharma on Digital Resuscitation Learning and Patient Safety

Speaking with TechGraph, Deepak Sharma, Co-founder and CEO of MedLern, discussed how traditional instructor-led...

India’s AIF Shift: Steptrade Capital’s Kresha Gupta on the Evolution of Alternative Investments in India

Speaking with TechGraph, Kresha Gupta, Director and Fund Manager at Steptrade Capital, discussed how...

Vimal Singh on ReadyAssist’s Role in Modernising Roadside Assistance in India

Speaking with TechGraph, Vimal Singh, Founder of ReadyAssist, discussed how traditional roadside assistance models...

Enterprise Blind Spots: 3 Cubed’s Shammik Gupta on Building a Digital Twin for Real Operational Clarity

Speaking with TechGraph, Shammik Gupta, Founder of 3 Cubed, discussed how enterprises invested in...

Why Solar Panels Are a Worthwhile Investment

With the increasing urgency to transition to sustainable energy sources, investing in solar panels...

Democratising Tech: The AI Revolution Across India’s Healthcare and Finance Sectors

A historic shift is sweeping through India: technology is no longer confined to metro...

Ensuring Your Building is Technologically Modern and Eco-Friendly

In the contemporary world, where the balance between innovation and sustainability is paramount, modernizing...

When Cybersecurity Tools Break the System: The Hidden Risk Behind Digital Defenses

Cybersecurity solutions are designed to protect businesses from threats, but increasingly, these very tools...

Rethinking Medical Training: MedLern Co-founder Deepak Sharma on Digital Resuscitation Learning and Patient Safety

Speaking with TechGraph, Deepak Sharma, Co-founder and CEO of MedLern, discussed how traditional instructor-led...

Home Improvements That Benefit You Today and Boost Value Tomorrow

When it comes to home improvements, the best upgrades are those that provide immediate...

India’s AIF Shift: Steptrade Capital’s Kresha Gupta on the Evolution of Alternative Investments in India

Speaking with TechGraph, Kresha Gupta, Director and Fund Manager at Steptrade Capital, discussed how...