Hackers Steal Digital Gold Worth ₹1.95 Crore on Aditya Birla’s Finserv App

What Happened to the Users’ Digital Gold?

In a major digital theft, hackers sold digital gold belonging to 436 users of a financial services app. These users were customers of Aditya Birla Capital Digital Limited (ABCD). The stolen gold was worth ₹1.95 crore.

The company lets people buy and sell digital gold, silver, mutual funds, and other financial products through its mobile app. Normally, users can buy digital gold by registering their mobile numbers. When they want to sell the gold, they get a One-Time Password (OTP). This OTP is needed to go to the payment section and get their money safely.

However, something went very wrong earlier this month. The company’s tech team discovered that a hacker had breached the app’s system, known as an API. This allowed the hacker to sneak into the system and sell digital gold without the real users knowing about it.

The hacker didn’t just sell a small amount. They sold digital gold that belonged to hundreds of customers. Once sold, the money was transferred into the hacker’s own bank accounts. This left the actual owners of the gold shocked and confused.

How the Scam Was Discovered

The theft was not noticed immediately. It came to light on June 9, 2025. That morning, many customers started calling ABCD’s call centre. They complained that someone had sold their digital gold without asking them. Even worse, they hadn’t received any money for it.

As soon as these calls began, the company started investigating. They quickly found that something was seriously wrong. They immediately stopped the option to sell digital gold on the app to prevent further damage.

Cyberattack Exposes Melbourne Hospital Patients Data on Dark Web

The technical team of ABCD looked deeper into the problem. They found that someone had tampered with their API — this is the bridge that connects different parts of the app’s services. Through this loophole, the hacker was able to sell gold that didn’t belong to them.

By the time the company caught the scam, the hacker had already sold digital gold from 436 different users. The company suffered a huge loss of nearly ₹2 crore.

What the Police Are Doing Now

After the fraud came to light, the head of fraud risk management at ABCD filed a police complaint. The case is now being handled by the Central cyber police.

The police have registered the case under the Bharatiya Nyaya Sanhita, 2023. They used Section 318 (4) which deals with cheating, and Section 319 (2) which is about cheating by pretending to be someone else. They also added relevant parts of the Information Technology Act, 2000.

The police said the hacker is still unknown. They are trying to find out who was behind this crime and how exactly they managed to break into the system. The bank accounts where the stolen money was sent are also being looked into.

Pro-Iran Hackers Launch Cyber Attacks on U.S. Infrastructure After Military Action

So far, it is clear that the hacker managed to bypass the app’s security by taking control of the API. This gave them access to user accounts and allowed them to sell digital gold. Normally, selling would require an OTP, but the hacker likely found a way to avoid that too.

The case shows how important strong cyber security is, especially when people trust apps with their money and investments. The app remains under review and has paused digital gold selling until the investigation is complete.

This theft has not only affected hundreds of users but also raised serious concerns about digital safety on financial platforms.

Renuka Bangale
Renuka Bangale
Renuka is a distinguished Chartered Accountant and a Certified Digital Threats Analyst from Riskpro, renowned for her expertise in cybersecurity. With a deep understanding of cybercrimes, malware, cyber warfare, and espionage, she has established herself as an authority in the field. Renuka combines her financial acumen with advanced knowledge of digital threats to provide unparalleled insights into the evolving landscape of information security. Her analytical prowess enables her to dissect complex cyber incidents, offering clarity on risks and mitigation strategies. As a key contributor to Newsinterpretation’s information security category, Renuka delivers authoritative articles that educate and inform readers about emerging threats and best practices.

TOP 10 TRENDING ON NEWSINTERPRETATION

💻 AI Turns Rogue—LazyHug Malware Learns Like ChatGPT, Steals Data Silently

A new type of computer virus has been discovered....

Shocking GDPR Complaint Exposes TikTok, WeChat, and AliExpress Over User Data Control

European Privacy Rules Ignored by Chinese Tech Giants A new...

🔒 Kaspersky Uncovers SparkKitty — The Most Sophisticated Mobile Crypto Thief Yet

A new and dangerous malware called SparkKitty has been...

🔓 Australia’s political inboxes hacked — years of classified documents now in hacker hands

A major cyberattack has hit political parties in Australia,...

💻 The new malware highway: hackers bypass firewalls by injecting viruses into DNS queries

Hackers are now using one of the internet’s most...

🌐 Digital Guardian Awakens—Google’s Big Sleep AI Shuts Down Stealth Cyber Invasion

Google has revealed that its new artificial intelligence (AI)...

📡 Ads That Feel Psychic? Real-World Data & AI Target Patients at the Perfect Moment

The way medicine is advertised is changing fast. Thanks...

Class Photos Turned into Deepfakes of 30 Women – AI Scandal Triggers Privacy Crackdown in Hong Kong

Hong Kong’s privacy watchdog has started a criminal investigation...

Shocking Surge in npm Malware Attacks as North Korean Hackers Deploy 67 Dangerous Packages

North Korean hackers have launched a major cyberattack campaign...

FileFix Malware Trick Opens the Door for Smarter Cyber Attacks Through Fake CAPTCHAs

A Dangerous Upgrade in Hacking Tools A dangerous hacking group...

Related Articles

Popular Categories

error: Content is protected !!