Skip to main content
Loading page, please wait…
HomeCurrent AffairsEditorialsGovt SchemesLearning ResourcesUPSC SyllabusPricingAboutUPSC AI ToolsUPSC AI ToolAI for UPSCUPSC ChatGPT

© 2026 Vaidra. All rights reserved.

PrivacyTerms
Vaidra Logo
Vaidra

Top 7 items + smart groups

UPSC GPT
New
Mains Evaluator
Test Generator
Geography Lab
New
Current Affairs
Daily Solutions
Daily Puzzle

Version 2.0.0 • Built with ❤️ for UPSC aspirants

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...

I4C Warns of ‘Boss Scam’ – WhatsApp Account Takeover Targeting Finance Executives

The Indian Cyber Crime Coordination Centre (I4C) has warned of a large‑scale “Boss Scam” that hijacks WhatsApp accounts of senior finance officials through malicious zip files masquerading as RBI or MCA statements. Over 58,000 potential victims have been alerted and more than 10,000 users protected, highlighting the need for strict verification of fund‑transfer requests and robust cyber‑hygiene.
Overview The I4C has issued a fresh advisory on a large‑scale fraud that hijacks WhatsApp accounts of senior corporate officials. The scheme, popularly called the “ Boss Scam ”, spreads through malicious zip files that appear as RBI, MCA or account‑statement documents. Once a victim opens the file on a Windows PC, a Trojan installs, takes over the victim’s WhatsApp Web session and uses it to request fund transfers from finance teams. Key Developments (Bullet Points) Since 22 June 2026, I4C has recorded a sharp rise in complaints on the NCRP from Delhi, Gujarat, Maharashtra and Rajasthan. Malicious zip files are named “Statement of Account.zip”, “RBI.zip” or “MCA.zip” and contain a Windows .exe together with a .dll employing DLL Sideloading . Compromised accounts automatically forward the same malicious file to all contacts, urging them to send it to their “company finance manager”. In the final stage, attackers, posing as the CEO or senior executive, instruct finance staff to transfer money to mule accounts. Over 58,000 potential victims have been alerted via SMS header ‘I4CMHA‑G’ in the last 30 days, and more than 10,000 Indians have been protected through geo‑blocking of command‑and‑control servers via the Sahyog Portal . Important Facts The malware activates only on Windows computers, making Chartered Accountants, Company Directors, CFOs and finance teams the prime targets. I4C has shared technical indicators with CERT‑In , Microsoft Defender and leading Indian anti‑virus firms (Quick Heal, K7 Computing, Net Protector) for rapid detection and removal. UPSC Relevance This incident touches multiple GS papers. GS 2 (Polity) because it involves a central ministry ( MHA ) and inter‑agency coordination. GS 3 (Economy) as the fraud targets high‑value financial transactions and can affect corporate liquidity. GS 4 (Ethics & Integrity) because it raises questions about cyber‑ethics, digital hygiene and the responsibility of corporate governance in safeguarding information. Way Forward for Organisations and Citizens Do not open zip or executable files from unknown sources; regulators never send software updates via WhatsApp. Finance staff must verify any urgent fund‑transfer request through a direct voice call or in‑person confirmation before acting. Regularly review WhatsApp linked devices (Settings → Linked Devices) and log out of inactive sessions. System administrators should enforce software‑restriction policies to block unknown .exe/.dll files and keep anti‑malware solutions up‑to‑date. If an account is compromised, log out of all linked devices, inform contacts not to open any received file, and scan the computer with updated antivirus. Report any suspicious communication immediately on the National Cyber Crime Helpline 1930 or at www.cybercrime.gov.in . Staying vigilant and following these steps can curb the spread of the “Boss Scam” and protect India’s corporate financial ecosystem.
Loading article...

Quick Reference

Key Insight

I4C alerts on WhatsApp ‘Boss Scam’ targeting corporate finance officers – a cyber‑security threat for governance.

Key Facts

  1. I4C issued an advisory on 22 June 2026 about a WhatsApp Web takeover scam called ‘Boss Scam’.
  2. The malware spreads via zip files named “Statement of Account.zip”, “RBI.zip” or “MCA.zip”.
  3. The zip contains a Windows .exe and a malicious .dll that use DLL sideloading to install.
  4. Over 58,000 potential victims were warned via SMS in the last 30 days; 10,000+ users protected through geo‑blocking.
  5. The scam targets senior finance staff – CFOs, finance managers, chartered accountants – on Windows PCs.
  6. I4C shared indicators with CERT‑In, Microsoft Defender and Indian anti‑virus firms for rapid detection.
  7. Victims are advised to verify fund‑transfer requests by voice call and to log out of all WhatsApp linked devices.

Background

Cyber‑security is now a key part of internal security and corporate governance in India. The I4C, under the Ministry of Home Affairs, coordinates cyber‑crime response across ministries, linking technology with policy. The scam threatens corporate liquidity and tests the effectiveness of existing cyber‑law frameworks.

UPSC Syllabus

  • GS3 — Cyber security and communication networks in internal security
  • GS3 — Indian Economy - Planning, mobilization of resources, growth, development and employment
  • Prelims_GS — National Current Affairs
  • GS2 — Government policies and interventions for development

Mains Angle

This issue can be discussed in GS 2 (Polity) on inter‑agency coordination and in GS 3 (Economy) on financial fraud impact. A possible Mains question may ask about strengthening cyber‑security governance to protect the corporate sector.

Explore:Current Affairs·Editorial Analysis·Govt Schemes·Study Materials·Previous Year Questions·UPSC GPT
  1. Home
  2. Prepare
  3. Current Affairs
  4. Science
  5. Sci-Tech Developments & Innovation
  6. I4C Warns of ‘Boss Scam’ – WhatsApp Account Takeover Targeting Finance Executives
GS273% Exam RelevanceSci-Tech Developments & Innovation
Login to bookmark articles
Login to mark articles as complete

Overview

Full Article

Overview

The I4C has issued a fresh advisory on a large‑scale fraud that hijacks WhatsApp accounts of senior corporate officials. The scheme, popularly called the “Boss Scam”, spreads through malicious zip files that appear as RBI, MCA or account‑statement documents. Once a victim opens the file on a Windows PC, a Trojan installs, takes over the victim’s WhatsApp Web session and uses it to request fund transfers from finance teams.

Key Developments (Bullet Points)

  • Since 22 June 2026, I4C has recorded a sharp rise in complaints on the NCRP from Delhi, Gujarat, Maharashtra and Rajasthan.
  • Malicious zip files are named “Statement of Account.zip”, “RBI.zip” or “MCA.zip” and contain a Windows .exe together with a .dll employing DLL Sideloading.
  • Compromised accounts automatically forward the same malicious file to all contacts, urging them to send it to their “company finance manager”.
  • In the final stage, attackers, posing as the CEO or senior executive, instruct finance staff to transfer money to mule accounts.
  • Over 58,000 potential victims have been alerted via SMS header ‘I4CMHA‑G’ in the last 30 days, and more than 10,000 Indians have been protected through geo‑blocking of command‑and‑control servers via the Sahyog Portal.

Important Facts

The malware activates only on Windows computers, making Chartered Accountants, Company Directors, CFOs and finance teams the prime targets. I4C has shared technical indicators with CERT‑In, Microsoft Defender and leading Indian anti‑virus firms (Quick Heal, K7 Computing, Net Protector) for rapid detection and removal.

Exam Relevance

This incident touches multiple GS papers. GS 2 (Polity) because it involves a central ministry (MHA) and inter‑agency coordination. GS 3 (Economy) as the fraud targets high‑value financial transactions and can affect corporate liquidity. GS 4 (Ethics & Integrity) because it raises questions about cyber‑ethics, digital hygiene and the responsibility of corporate governance in safeguarding information.

Way Forward for Organisations and Citizens

  • Do not open zip or executable files from unknown sources; regulators never send software updates via WhatsApp.
  • Finance staff must verify any urgent fund‑transfer request through a direct voice call or in‑person confirmation before acting.
  • Regularly review WhatsApp linked devices (Settings → Linked Devices) and log out of inactive sessions.
  • System administrators should enforce software‑restriction policies to block unknown .exe/.dll files and keep anti‑malware solutions up‑to‑date.
  • If an account is compromised, log out of all linked devices, inform contacts not to open any received file, and scan the computer with updated antivirus.
  • Report any suspicious communication immediately on the National Cyber Crime Helpline 1930 or at www.cybercrime.gov.in.

Staying vigilant and following these steps can curb the spread of the “Boss Scam” and protect India’s corporate financial ecosystem.

Read Original on pib

I4C alerts on WhatsApp ‘Boss Scam’ targeting corporate finance officers – a cyber‑security threat for governance.

Key Facts

  1. I4C issued an advisory on 22 June 2026 about a WhatsApp Web takeover scam called ‘Boss Scam’.
  2. The malware spreads via zip files named “Statement of Account.zip”, “RBI.zip” or “MCA.zip”.
  3. The zip contains a Windows .exe and a malicious .dll that use DLL sideloading to install.
  4. Over 58,000 potential victims were warned via SMS in the last 30 days; 10,000+ users protected through geo‑blocking.
  5. The scam targets senior finance staff – CFOs, finance managers, chartered accountants – on Windows PCs.
  6. I4C shared indicators with CERT‑In, Microsoft Defender and Indian anti‑virus firms for rapid detection.
  7. Victims are advised to verify fund‑transfer requests by voice call and to log out of all WhatsApp linked devices.

Background & Context

Cyber‑security is now a key part of internal security and corporate governance in India. The I4C, under the Ministry of Home Affairs, coordinates cyber‑crime response across ministries, linking technology with policy. The scam threatens corporate liquidity and tests the effectiveness of existing cyber‑law frameworks.

UPSC Syllabus Connections

GS3•Cyber security and communication networks in internal securityGS3•Indian Economy - Planning, mobilization of resources, growth, development and employmentPrelims_GS•National Current AffairsGS2•Government policies and interventions for development

Mains Answer Angle

This issue can be discussed in GS 2 (Polity) on inter‑agency coordination and in GS 3 (Economy) on financial fraud impact. A possible Mains question may ask about strengthening cyber‑security governance to protect the corporate sector.

Analysis

Related PYQs

No related PYQs linked to this article yet.

Practice Questions

GS2
Medium
Prelims MCQ

Cyber‑security and internal security

1 marks
4 keywords
GS2
Easy
Mains Short Answer

Corporate cyber‑security measures

5 marks
4 keywords
GS2
Hard
Mains Essay

Governance, Polity and Cyber‑security

25 marks
6 keywords
Related:Daily•Weekly

Loading related articles...

Loading related articles...

Tip: Click articles above to read more from the same date, or use the back button to see all articles.

I4C Warns of ‘Boss Scam’ – WhatsApp Accoun... | UPSC Current Affairs