<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CyberShitty.com</title>
  <link>https://cybershitty.com/</link>
  <description>CyberShitty.com tracks the breaches, fraud waves, ransomware crews and exploited vulnerabilities hitting India — and the global threats Indian teams need to know — with every claim linked to its source.</description>
  <language>en-in</language>
  <lastBuildDate>Mon, 28 Sep 2026 18:30:00 GMT</lastBuildDate>
  <atom:link href="https://cybershitty.com/feed.xml" rel="self" type="application/rss+xml"/>
  <item>
    <title>Aadhaar or PAN leaked in a data breach? How to lock it down and check for misuse</title>
    <link>https://cybershitty.com/post/aadhaar-pan-leak-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/aadhaar-pan-leak-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>You cannot change a leaked Aadhaar or PAN, but you can limit how it is used. Check your authentication history, lock your biometrics, share only masked Aadhaar or a VID, and watch your credit reports and AIS for anything you don't recognise.</description>
  </item>
  <item>
    <title>Bank account frozen by cyber police? What to do if you received tainted money without knowing</title>
    <link>https://cybershitty.com/post/bank-account-frozen-by-cyber-police-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/bank-account-frozen-by-cyber-police-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Innocent people get caught when scam money passes through their account, often after a P2P crypto sale or a payment for work. How to find out who froze it, use the free grievance route, and cite High Court rulings against blanket freezes.</description>
  </item>
  <item>
    <title>How to get money back after cyber fraud: the real routes, the odds and 'recovery' scams</title>
    <link>https://cybershitty.com/post/cyber-fraud-money-recovery-guide-and-recovery-scams</link>
    <guid isPermaLink="true">https://cybershitty.com/post/cyber-fraud-money-recovery-guide-and-recovery-scams</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Only police, banks, regulators and courts can return scammed money. The honest odds from official figures, RBI's liability rules and the 2027 compensation scheme, the free Ombudsman route, and how to spot fake recovery agents.</description>
  </item>
  <item>
    <title>Deepfake investment ads in India: what they are, who has been faked, and how to spot one</title>
    <link>https://cybershitty.com/post/deepfake-investment-ads-india-how-to-spot</link>
    <guid isPermaLink="true">https://cybershitty.com/post/deepfake-investment-ads-india-how-to-spot</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>AI-altered videos of ministers and the RBI Governor keep turning up in ads promising daily returns. None of them endorsed anything. Here is how the ads work, what the February 2026 IT Rules change, and what to do.</description>
  </item>
  <item>
    <title>Digital arrest scam: how to recognise the call, what to do on it, and what to do if you paid</title>
    <link>https://cybershitty.com/post/digital-arrest-scam-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/digital-arrest-scam-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>No Indian agency questions or arrests anyone over a video call. Here is how the fake CBI, police and TRAI script works, how to leave the call safely, and where to report it: 1930, cybercrime.gov.in and Sanchar Saathi's Chakshu.</description>
  </item>
  <item>
    <title>Phone suddenly shows no service? What to do about SIM-swap and eSIM fraud in India</title>
    <link>https://cybershitty.com/post/esim-swap-fraud-india-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/esim-swap-fraud-india-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>A caller offers to 'upgrade' you to an eSIM or 'reverify' KYC. Minutes later your number works on someone else's phone and your OTPs go with it. How to spot it, what to do in the first hour, and how to prevent it.</description>
  </item>
  <item>
    <title>Festive sale scams: how to spot fake shopping sites, gift links and delivery tricks</title>
    <link>https://cybershitty.com/post/festive-sale-scams-india-how-to-shop-safely</link>
    <guid isPermaLink="true">https://cybershitty.com/post/festive-sale-scams-india-how-to-shop-safely</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Big sales bring lookalike websites, 'spin the wheel' links, fake courier SMS and refund cons. Shop only inside the official app, never share an OTP or UPI PIN, and know when to call 1930 and when to call 1915.</description>
  </item>
  <item>
    <title>Data breach reporting in India: CERT-In's six-hour rule and the DPDP timeline explained</title>
    <link>https://cybershitty.com/post/india-cert-in-dpdp-breach-reporting-explained</link>
    <guid isPermaLink="true">https://cybershitty.com/post/india-cert-in-dpdp-breach-reporting-explained</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Policy</category>
    <description>India has two breach-reporting regimes: CERT-In's six-hour rule, in force since 2022, and DPDP breach notice to a new Data Protection Board and affected people, which starts in May 2027.</description>
  </item>
  <item>
    <title>Infostealer infection: what to do, in the right order</title>
    <link>https://cybershitty.com/post/infostealer-infection-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/infostealer-infection-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Infostealers take saved passwords, session cookies and crypto wallet data in one sweep. Changing passwords on an infected machine is not enough: clean the device first, then rotate credentials and kill sessions from a clean one.</description>
  </item>
  <item>
    <title>Is this a scam? How to check a phone number, link, app, adviser or UPI ID in India</title>
    <link>https://cybershitty.com/post/is-this-a-scam-how-to-check-number-link-app</link>
    <guid isPermaLink="true">https://cybershitty.com/post/is-this-a-scam-how-to-check-number-link-app</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Official tools can check most of what scammers send you: a caller, a website, an app, an adviser or a payee. Here is which check fits which situation, and what none of them can prove.</description>
  </item>
  <item>
    <title>Harassed by a loan app? How to check a lender first, and where to complain in India</title>
    <link>https://cybershitty.com/post/loan-app-harassment-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/loan-app-harassment-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Check any lending app against RBI's directory before you borrow. If recovery agents are threatening you or your contacts, do not pay unknown UPI IDs. Keep the evidence and report on 1930, cybercrime.gov.in, Sachet and to the police.</description>
  </item>
  <item>
    <title>Money on hold after a 1930 complaint? How frozen funds are released back to victims</title>
    <link>https://cybershitty.com/post/money-on-hold-after-1930-complaint-how-to-get-it-back</link>
    <guid isPermaLink="true">https://cybershitty.com/post/money-on-hold-after-1930-complaint-how-to-get-it-back</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>A hold stops your money moving. It does not return it. How to use the Home Ministry's Money Restoration Module, when you need an FIR or a court order under Section 503 BNSS, how Lok Adalats are used, and what documents to keep ready.</description>
  </item>
  <item>
    <title>Mule accounts: why renting out your bank account can end in arrest</title>
    <link>https://cybershitty.com/post/mule-accounts-india-renting-bank-account-crime</link>
    <guid isPermaLink="true">https://cybershitty.com/post/mule-accounts-india-renting-bank-account-crime</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Recruiters offer students and job seekers a commission to &quot;use&quot; their bank account. The Suspect Registry has flagged 32.08 lakh Layer-1 mule accounts, and police are arresting account holders. How the racket works, and what to do if you are already in it.</description>
  </item>
  <item>
    <title>Cyber crime complaint status 'pending'? How to track an NCRP complaint and what to do next</title>
    <link>https://cybershitty.com/post/ncrp-complaint-status-meaning</link>
    <guid isPermaLink="true">https://cybershitty.com/post/ncrp-complaint-status-meaning</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Your acknowledgement number is the key to your complaint. Here is how to track it on cybercrime.gov.in, what happens behind the status screen, what the labels do and don't tell you, and how to escalate when nothing moves.</description>
  </item>
  <item>
    <title>Ransomware in August 2026: trackers log a record month as Qilin leads</title>
    <link>https://cybershitty.com/post/ransomware-roundup-august-2026</link>
    <guid isPermaLink="true">https://cybershitty.com/post/ransomware-roundup-august-2026</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Trackers counted between 997 and 1,168 claimed victims in August, a 2026 high, with Qilin and The Gentlemen far ahead. Only a small share of those claims had been confirmed by victims.</description>
  </item>
  <item>
    <title>Fake job offers, real compounds: how Indians end up trafficked into Southeast Asian scam hubs</title>
    <link>https://cybershitty.com/post/scam-compounds-fake-job-offers-indians-trafficked</link>
    <guid isPermaLink="true">https://cybershitty.com/post/scam-compounds-fake-job-offers-indians-trafficked</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Recruiters promise IT, sales or support jobs in Thailand, then move people across the border into scam compounds in Myanmar, Cambodia and Laos. What the numbers show, and how families can check offers and get help.</description>
  </item>
  <item>
    <title>Blackmailed after a video call? What to do about sextortion, and how to get the clip taken down</title>
    <link>https://cybershitty.com/post/sextortion-video-call-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/sextortion-video-call-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Sextortion is a crime and you are its victim. Don't pay, stop replying, save the evidence, report on cybercrime.gov.in or 1930, and use the two-hour takedown rule to get intimate content removed.</description>
  </item>
  <item>
    <title>ShinyHunters emailed me: what to do about an extortion or sextortion threat</title>
    <link>https://cybershitty.com/post/shinyhunters-extortion-email-what-to-do</link>
    <guid isPermaLink="true">https://cybershitty.com/post/shinyhunters-extortion-email-what-to-do</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Emails signed &quot;ShinyHunters&quot; range from real corporate data-theft extortion to copycat sextortion scams built on leaked addresses. Here is how to tell them apart, why you should not pay, and where to report.</description>
  </item>
  <item>
    <title>Invited to a stock tips WhatsApp group? How to check it before you send a rupee</title>
    <link>https://cybershitty.com/post/stock-market-whatsapp-group-scam-how-to-check</link>
    <guid isPermaLink="true">https://cybershitty.com/post/stock-market-whatsapp-group-scam-how-to-check</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Fake 'VIP' and 'institutional account' groups are behind most of the money Indians lose to cyber fraud. Check SEBI registration, the broker's app and the payee's UPI ID before you invest anything.</description>
  </item>
  <item>
    <title>Lost money in a UPI fraud? What to do in the first hour, and how to complain on 1930</title>
    <link>https://cybershitty.com/post/upi-fraud-what-to-do-1930</link>
    <guid isPermaLink="true">https://cybershitty.com/post/upi-fraud-what-to-do-1930</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Speed decides whether scammed money can be frozen. Call 1930, report on cybercrime.gov.in, alert your bank within RBI's reporting windows, block your UPI and cards, and get an FIR on record.</description>
  </item>
  <item>
    <title>What to do after a data breach notice, and how to check if your data was exposed</title>
    <link>https://cybershitty.com/post/what-to-do-after-a-data-breach-notice</link>
    <guid isPermaLink="true">https://cybershitty.com/post/what-to-do-after-a-data-breach-notice</guid>
    <pubDate>Mon, 28 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>A breach letter or email is a prompt to act, not panic. Confirm it is genuine, work out what was exposed, and take the matching steps, from password changes to a credit freeze, while watching for the scams that follow.</description>
  </item>
  <item>
    <title>CBI's Operation Chakra-VI targets the money trail behind India's digital arrest scams</title>
    <link>https://cybershitty.com/post/cbi-operation-chakra-vi-digital-arrest-mule-networks</link>
    <guid isPermaLink="true">https://cybershitty.com/post/cbi-operation-chakra-vi-digital-arrest-mule-networks</guid>
    <pubDate>Sat, 26 Sep 2026 18:30:00 GMT</pubDate>
    <category>Law enforcement</category>
    <description>Since June 2026 the CBI has raided scores of locations in more than 20 states, going after the account holders, shell firms and APK operators who launder digital arrest money. On 27 September it said 17 people were arrested in 30 days.</description>
  </item>
  <item>
    <title>Citrix patches two NetScaler zero-days already exploited; CISA sets 30 September deadline</title>
    <link>https://cybershitty.com/post/citrix-netscaler-zero-days-exploited</link>
    <guid isPermaLink="true">https://cybershitty.com/post/citrix-netscaler-zero-days-exploited</guid>
    <pubDate>Sat, 26 Sep 2026 18:30:00 GMT</pubDate>
    <category>Advisory</category>
    <description>Citrix has fixed eight NetScaler ADC and Gateway flaws, two of them critical remote code execution bugs exploited for weeks before patches existed. CISA and CERT-In say they are under active attack; check for compromise before you patch.</description>
  </item>
  <item>
    <title>Digital arrest scams in India: complaints fall, but the Supreme Court and CBI keep up pressure</title>
    <link>https://cybershitty.com/post/digital-arrest-scams-india-2026-figures-supreme-court-cbi</link>
    <guid isPermaLink="true">https://cybershitty.com/post/digital-arrest-scams-india-2026-figures-supreme-court-cbi</guid>
    <pubDate>Sat, 26 Sep 2026 18:30:00 GMT</pubDate>
    <category>Threats</category>
    <description>Official data put to the Supreme Court show digital arrest complaints on the national portal falling since 2024. The court has ordered new safeguards on mule accounts, the CBI is raiding networks and the Centre is pressing WhatsApp.</description>
  </item>
  <item>
    <title>SIM binding, IMEI crackdown and Sanchar Saathi: where India's telecom anti-fraud rules stand</title>
    <link>https://cybershitty.com/post/india-sim-binding-imei-sanchar-saathi-telecom-fraud-rules-2026</link>
    <guid isPermaLink="true">https://cybershitty.com/post/india-sim-binding-imei-sanchar-saathi-telecom-fraud-rules-2026</guid>
    <pubDate>Tue, 22 Sep 2026 18:30:00 GMT</pubDate>
    <category>Policy</category>
    <description>Messaging apps have until 31 December 2026 to tie accounts to an active SIM. The fixed six-hour web logout has been dropped. DoT is warning that tampering with IMEIs or renting out SIMs can mean three years in jail.</description>
  </item>
  <item>
    <title>AdaptHealth reports 4.1 million patients affected by June data theft</title>
    <link>https://cybershitty.com/post/adapthealth-breach-4-1-million-patients</link>
    <guid isPermaLink="true">https://cybershitty.com/post/adapthealth-breach-4-1-million-patients</guid>
    <pubDate>Tue, 08 Sep 2026 18:30:00 GMT</pubDate>
    <category>Data theft</category>
    <description>The US home medical equipment provider told federal health regulators that 4,115,802 people had data exfiltrated after an attacker socially engineered access through a third-party contractor.</description>
  </item>
  <item>
    <title>Boston Scientific says cyberattack will hit 2026 results as systems are restored</title>
    <link>https://cybershitty.com/post/boston-scientific-cyberattack-guidance</link>
    <guid isPermaLink="true">https://cybershitty.com/post/boston-scientific-cyberattack-guidance</guid>
    <pubDate>Mon, 07 Sep 2026 18:30:00 GMT</pubDate>
    <category>Incident</category>
    <description>The medical device maker says CrowdStrike's final investigation found the attacker entered through an external-facing network device, with no evidence that customer or patient data was accessed or taken. It has already warned the attack will hit 2026 results.</description>
  </item>
  <item>
    <title>ATF confirms breach of standalone CALEA system after Qilin claim; leaked files unverified</title>
    <link>https://cybershitty.com/post/atf-major-incident-qilin-calea</link>
    <guid isPermaLink="true">https://cybershitty.com/post/atf-major-incident-qilin-calea</guid>
    <pubDate>Mon, 31 Aug 2026 18:30:00 GMT</pubDate>
    <category>Data theft</category>
    <description>The Justice Department designated the incident a 'major incident'. Qilin briefly published about 6.3GB of alleged ATF files, which the agency says it cannot authenticate.</description>
  </item>
  <item>
    <title>CEVA Logistics intrusion halts eight European warehouses and exposes client customer data</title>
    <link>https://cybershitty.com/post/ceva-logistics-cyberattack-european-warehouses</link>
    <guid isPermaLink="true">https://cybershitty.com/post/ceva-logistics-cyberattack-european-warehouses</guid>
    <pubDate>Tue, 11 Aug 2026 18:30:00 GMT</pubDate>
    <category>Incident</category>
    <description>A cyberattack on the logistics firm's European contract logistics operations delayed deliveries and exposed shipping details held for clients including Bol, De Bijenkorf, ING and Valve; twelve organisations have reported to the Dutch regulator.</description>
  </item>
  <item>
    <title>Indian cybercrime by the numbers: what NCRP, 1930 and the RBI's 2025-26 report actually show</title>
    <link>https://cybershitty.com/post/india-cybercrime-numbers-2025-2026-ncrp-cfcfrms-rbi</link>
    <guid isPermaLink="true">https://cybershitty.com/post/india-cybercrime-numbers-2025-2026-ncrp-cfcfrms-rbi</guid>
    <pubDate>Tue, 04 Aug 2026 18:30:00 GMT</pubDate>
    <category>Policy</category>
    <description>Complaints to the national cybercrime portal keep rising, reported losses were about ₹22,500 crore in 2025, and the 1930 system has saved more than ₹11,000 crore. The RBI's bank-fraud tables tell a different, narrower story.</description>
  </item>
  <item>
    <title>Tata Electronics confirms cyber incident after group leaks alleged Apple and Tesla files</title>
    <link>https://cybershitty.com/post/tata-electronics-cyber-incident-world-leaks-claims</link>
    <guid isPermaLink="true">https://cybershitty.com/post/tata-electronics-cyber-incident-world-leaks-claims</guid>
    <pubDate>Mon, 03 Aug 2026 18:30:00 GMT</pubDate>
    <category>Data theft</category>
    <description>The Apple supplier confirmed a cyber incident after the World Leaks extortion group posted what it says is 630GB of company data. The government says nothing critical was lost; Tata has not said whether data was stolen.</description>
  </item>
  <item>
    <title>Bank of Baroda discloses cyber incident as data-leak claims circulate</title>
    <link>https://cybershitty.com/post/bank-of-baroda-cyber-incident-data-leak-claims</link>
    <guid isPermaLink="true">https://cybershitty.com/post/bank-of-baroda-cyber-incident-data-leak-claims</guid>
    <pubDate>Mon, 27 Jul 2026 18:30:00 GMT</pubDate>
    <category>Incident</category>
    <description>The state-owned lender told stock exchanges it is investigating a possible business email compromise after an anonymous claim of data access. Claims that about 1TB of bank files were taken remain unverified.</description>
  </item>
  <item>
    <title>Bajaj Auto says ransomware attack led it to pause operations for a few days</title>
    <link>https://cybershitty.com/post/bajaj-auto-ransomware-attack</link>
    <guid isPermaLink="true">https://cybershitty.com/post/bajaj-auto-ransomware-attack</guid>
    <pubDate>Mon, 20 Jul 2026 18:30:00 GMT</pubDate>
    <category>Incident</category>
    <description>The two- and three-wheeler maker reported a ransomware attack on itself and a tech subsidiary on the day it happened. It later told analysts it suspended operations for a few days as a precaution, denting quarterly output.</description>
  </item>
  <item>
    <title>German police dismantle Kratos phishing kit used to hijack Microsoft 365 sessions</title>
    <link>https://cybershitty.com/post/kratos-sneakylog-phishing-kit-dismantled-bka</link>
    <guid isPermaLink="true">https://cybershitty.com/post/kratos-sneakylog-phishing-kit-dismantled-bka</guid>
    <pubDate>Sun, 19 Jul 2026 18:30:00 GMT</pubDate>
    <category>Law enforcement</category>
    <description>The BKA and Frankfurt's ZIT cybercrime prosecutors, working with US partners, took more than 200 Kratos servers offline. Indonesian authorities arrested the kit's alleged developer and administrator.</description>
  </item>
  <item>
    <title>Reliance confirms partial breach as Kudankulam project files leak; NPCIL says no safety data</title>
    <link>https://cybershitty.com/post/reliance-infrastructure-kudankulam-data-breach</link>
    <guid isPermaLink="true">https://cybershitty.com/post/reliance-infrastructure-kudankulam-data-breach</guid>
    <pubDate>Sun, 19 Jul 2026 18:30:00 GMT</pubDate>
    <category>Data theft</category>
    <description>Files tied to the Kudankulam nuclear project surfaced on the World Leaks extortion site after a breach of a Reliance Infrastructure server hosted by Yotta. NPCIL says they cover only conventional plant facilities, not nuclear safety or security.</description>
  </item>
  <item>
    <title>Nineteen agencies warn FSB Center 16 is exploiting poorly configured routers worldwide</title>
    <link>https://cybershitty.com/post/aa26-194a-fsb-center-16-router-snmp-advisory</link>
    <guid isPermaLink="true">https://cybershitty.com/post/aa26-194a-fsb-center-16-router-snmp-advisory</guid>
    <pubDate>Sun, 12 Jul 2026 18:30:00 GMT</pubDate>
    <category>Advisory</category>
    <description>Joint advisory AA26-194A says Russia's FSB Center 16 abuses default SNMP settings and known Cisco flaws to copy router configurations, and urges operators to harden, patch or replace network devices.</description>
  </item>
  <item>
    <title>Operation Endgame takes down 326 servers behind SocGholish, StealC and Amadey</title>
    <link>https://cybershitty.com/post/operation-endgame-june-2026-socgholish-stealc-amadey</link>
    <guid isPermaLink="true">https://cybershitty.com/post/operation-endgame-june-2026-socgholish-stealc-amadey</guid>
    <pubDate>Tue, 23 Jun 2026 18:30:00 GMT</pubDate>
    <category>Law enforcement</category>
    <description>A 15-19 June 2026 action week coordinated by Europol and Eurojust disrupted three malware families that feed ransomware and fraud, recovering about 27 million stolen credentials and securing over EUR 41 million in crypto.</description>
  </item>
</channel>
</rss>
