India blocks WhatsApp account takeover malware
Analysis based on 6 articles · First reported Aug 07, 2026 · Last updated Aug 07, 2026
The event highlights cybersecurity risks to messaging platforms and financial regulators, potentially affecting user trust in digital communications. It may prompt increased investment in cybersecurity measures by telecom and tech companies, but the direct market impact is limited.
The India — Indian Cybercrime Coordination Centre (I4C), operating under the India — Ministry of External Affairs, has protected more than 10,000 Indians from a Meta Platforms — WhatsApp account takeover campaign. The campaign involved malicious ZIP files disguised as account statements and regulatory notices, which when opened on Windows devices installed a Trojan that hijacked Meta Platforms — WhatsApp Web sessions. I4C coordinated geo-blocking of command-and-control servers through the Sahyog Portal and blocked malware. The India — Ministry of External Affairs reported a sharp rise in complaints on the India — National Cybercrime Reporting Portal. Incidents were reported in Delhi, Gujarat, Maharashtra, and Rajasthan. I4C had issued an advisory on June 22 warning about the threat. The malicious files were named to impersonate regulators such as the State Bank of India, the India — Ministry of Corporate Affairs, and the India — Income Tax Department.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard