Son Dakika
INTLTrump Threatens Iran with Severe Retaliation After Surprise Attack on US TargetsTRFransa ve İspanya'da Orman Yangınları Kontrol Dışı, Binlerce Kişi Tahliye EdildiITLufthansa stringe la presa sulla Tap: offerta vincolante per il 44,9%RUChristian Corps Paramilitary Group Plans Punitive Operations in UkraineAUUkraine's Caspian Sea Strikes Bridge Two Wars, Raising Global TensionsAUJapan Earthquake Rescue Efforts Continue Amidst Ongoing TremorsITQuarta ondata di caldo africano 2026: quando finirà e perché è così estremaESEl Rayo Vallecano en crisis: Denuncia por negar acceso a obras y dudas sobre el destino de 20 millones de eurosRUФинский политик обвинил Зеленского в попытке спровоцировать третью мировую войнуTRBeşiktaş, UEFA Avrupa Ligi Rövanşında Midtjylland ile KarşılaşacakINTLTrump Threatens Iran with Severe Retaliation After Surprise Attack on US TargetsTRFransa ve İspanya'da Orman Yangınları Kontrol Dışı, Binlerce Kişi Tahliye EdildiITLufthansa stringe la presa sulla Tap: offerta vincolante per il 44,9%RUChristian Corps Paramilitary Group Plans Punitive Operations in UkraineAUUkraine's Caspian Sea Strikes Bridge Two Wars, Raising Global TensionsAUJapan Earthquake Rescue Efforts Continue Amidst Ongoing TremorsITQuarta ondata di caldo africano 2026: quando finirà e perché è così estremaESEl Rayo Vallecano en crisis: Denuncia por negar acceso a obras y dudas sobre el destino de 20 millones de eurosRUФинский политик обвинил Зеленского в попытке спровоцировать третью мировую войнуTRBeşiktaş, UEFA Avrupa Ligi Rövanşında Midtjylland ile Karşılaşacak
Newsgather
GeriCybercriminals Use 'Boss Scam' to Defraud Companies via Malware
Cybercriminals Use 'Boss Scam' to Defraud Companies via Malware
Gelişiyor
Economic Times22.06.2026Crime2 dk okumaIndia

Cybercriminals Use 'Boss Scam' to Defraud Companies via Malware

Hızlı Bakış

  • Cybercriminals are using a 'Boss Scam' to defraud companies by impersonating regulators and sending malicious files that hijack WhatsApp sessions, tricking employees into fraudulent financial transfers.
  • The Indian Cyber Crime Coordination Centre (I4C) advises verifying urgent financial requests through multiple channels.

Yapay zekâ özeti

Yazı boyutu

Cybercriminals are employing a new 'Boss Scam' to defraud companies. Impersonating regulators, they send malicious files via email or WhatsApp to executives, claiming urgent compliance needs. Once opened on Windows devices, the malware hijacks WhatsApp sessions, allowing fraudsters to trick employees into making fraudulent financial transfers. Companies are urged to verify urgent financial requests through multiple channels, not just text or email.

New Delhi: The Indian Cyber Crime Coordination Centre (I4C), under the union home ministry, on Monday said it has observed an emerging trend in cybercrime referred to as the 'Boss Scam' or CEO impersonation fraud.

Cybercriminals are targeting high-ranking officials and executives by delivering malicious archives via email or WhatsApp under the guise of urgent regulatory compliance. Once executed, the malware compromises the executive's Windows device and active Web WhatsApp sessions, enabling fraudsters to message subordinate employees and orchestrate fraudulent financial transfers, according to I4C.

Also Read: What is ‘WhatsApp Screen Mirroring Fraud’ that can drain your bank account and lead to identity theft?

While sharing the modus operandi, I4C noted that sophisticated cybercriminals contact CEO or high-ranking officials via email or WhatsApp, impersonating regulators such as the Reserve Bank of India. The communication falsely claims regulatory violation or mandates an urgent security improvement, demanding a response within a very short timeframe.

The message purportedly contains a compressed . zip archive. Inside this archive is a malicious executable (. exe) accompanied by a Dynamic Link Library (. dll) file. As seen in multiple cases, the CEO forwards the message to the finance officer. Upon receiving the message, the executive extracts and executes the file on a Windows desktop or laptop, a Trojan dropper is initiated. The malware establishes a persistent foothold, compromises the system, and hijacks the active Web WhatsApp session tokens, the I4C said in an advisory.

Live Events

Also Read: PSBs told to tighten scrutiny of government accounts amid fraud concerns

It said finance departments of the companies should verify the request of any urgent financial transactions or account changes based solely on a WhatsApp text or email.

İlgili Konular

Bu haber ilk olarak şurada yayınlandı: Economic Times.

İlgili Haberler

बिहार सरकार ने नीट प्रदर्शनकारियों पर मुक़दमे वापस लेने की घोषणा की, लेकिन गिरफ़्तार छात्रों की रिहाई पर अभी भी संदेह
Gelişiyor·10 saat önce

बिहार सरकार ने नीट प्रदर्शनकारियों पर मुक़दमे वापस लेने की घोषणा की, लेकिन गिरफ़्तार छात्रों की रिहाई पर अभी भी संदेह

बिहार सरकार ने 27 जुलाई को नीट प्रदर्शनकारियों पर दर्ज मुक़दमे वापस लेने की घोषणा की, लेकिन गिरफ़्तार छात्रों की रिहाई पर अभी भी संदेह है। पटना हाई कोर्ट में महाधिवक्ता कार्यालय ने ज़िलाधिकारियों और पब्लिक प्रॉसिक्यूटर्स को निर्देश दिया है।

BBC हिंदी
23 dk okuma
बिहार: पूर्व मंत्री तेज प्रताप यादव को 14 दिन की न्यायिक हिरासत में भेजा गया
Crime·3 gün önce

बिहार: पूर्व मंत्री तेज प्रताप यादव को 14 दिन की न्यायिक हिरासत में भेजा गया

बिहार के पूर्व मंत्री तेज प्रताप यादव को नीट पेपर लीक के ख़िलाफ़ बिहार बंद में भाग लेने के बाद गिरफ़्तार किया गया और 14 दिन की न्यायिक हिरासत में भेज दिया गया है. राजद नेता तेजस्वी यादव ने सरकार की आलोचना की.

BBC हिंदी
3 dk okuma
Bu konuda daha fazlacybercrime