The federal government has directed Google to close down a whole lot of accounts on its Firebase net growth platform. A report by the information company Reuters cited authorities notices and a supply accustomed to the matter, saying the order got here after officers discovered a sample of criminals utilizing the service to impersonate main banks and defraud folks. The Indian Cyber Crime Coordination Centre (I4C) directed Google to take away at the very least 57 web sites and databases hosted on Firebase in August alone, saying they had been getting used to distribute malware and steal delicate monetary info.The notices, reviewed by the information company, mentioned the web sites had been being utilized in scams focusing on Android customers, together with schemes that mimicked banking companies and picked up monetary info from victims’ telephones. Google mentioned it has “strict insurance policies prohibiting using our companies for phishing, malware, or monetary fraud“ and works with legislation enforcement, together with I4C, to judge and act on notices.
Google Firebase accounts focused in India
The I4C issued at the very least three notices to Google in August directing the removing of the 57 web sites and databases. The notices mentioned the hyperlinks had been concerned in malware distribution and the theft of delicate info. Google might be held accountable for the named hyperlinks if they aren’t eliminated inside three hours of a discover being issued.The notices didn’t counsel that Google or Firebase was accountable for the scams. The supply, who has direct data of the matter, mentioned Indian officers had recognized a sample in current months involving scammers utilizing Firebase, Google’s app and web site growth platform.The supply mentioned the variety of notices despatched to Google over Firebase had reached dozens in current months, though a precise determine was not offered.Seven of the web sites and databases recognized within the August notices had been phishing pages created utilizing Firebase that mimicked Indian banks, together with State Financial institution of India, ICICI Financial institution and Axis Financial institution. The federal government company described the remaining web sites as getting used to gather knowledge stolen from victims’ telephones, together with bank card particulars and one-time passwords.
Android malware utilized in banking scams
In an August 17 discover, I4C mentioned scammers had been utilizing Android-based malware applications that masqueraded as reliable banking companies and focused Android customers with bank cards.“Android-based malware applications are masquerading as reliable banking companies, particularly focusing on Android customers with bank cards. Scammers lure victims by selling provides resembling new bank cards, reward redemptions, or credit score restrict upgrades,” I4C mentioned within the discover seen by Reuters.The scams concerned convincing victims to put in purposes that seemed to be reliable banking companies. As soon as put in, the purposes might ship info from the person’s telephone to a Firebase database managed by the scammers.One scheme recognized by officers concerned PM-KISAN, a federal authorities programme that gives funds to small farmers. In line with a authorities discover and the supply, rip-off web sites promised recipients help in claiming their funds and requested them to obtain an software to redeem the cash.The applying then despatched person knowledge to the scammers’ Firebase database, permitting them to entry info from different purposes on the telephone and probably use it to defraud victims.
India steps up motion in opposition to on-line scams
The motion in opposition to Firebase-based scams comes as Indian authorities improve efforts to deal with on-line monetary fraud. Authorities knowledge exhibits that Indians misplaced almost $2.4 billion in alleged cyber fraud in 2025.Indian officers have historically focused rip-off web sites by ordering their removing. The notices reviewed by Reuters point out that authorities are additionally analyzing the infrastructure used to distribute malicious purposes and accumulate info from victims.The federal government issued a public advisory in March warning a couple of type of malware that cybersecurity researchers extensively confer with as “Android God Mode”. The time period describes malicious software program that can provide scammers in depth management over victims’ Android telephones.“These malicious apps usually impersonate trusted companies resembling banking, authorities and utility platforms, and trick customers into putting in them by hyperlinks,” the advisory mentioned.Google mentioned it really works with legislation enforcement companies, together with I4C, when evaluating notices involving potential coverage violations.