Varanasi police have busted a large cyber fraud network allegedly operating across the country, arresting four people including the suspected kingpin. Preliminary investigation has revealed suspicious transactions worth around ₹116.86 crore across 41 bank accounts linked to the accused. According to police, the gang allegedly used an application called 'Expe App' to gain access to account holders' mobile messages and obtain one-time passwords (OTPs) sent by banks, before rapidly transferring the fraud proceeds through multiple bank accounts.
A Coordinated Operation
The operation was carried out jointly by the Cyber Crime Cell and Chetganj police. One of those arrested has been identified as Nitish Kumar Pandey, a resident of Sasaram in Bihar's Rohtas district. Police are now questioning the accused to identify other members of the network, trace the bank accounts involved, and establish the complete flow of the allegedly defrauded money.
₹116.86 Crore in Suspicious Transactions
According to police, members of the gang allegedly lured people with promises of high returns or commissions within a short period, then allegedly opened fake firms and bank accounts in their names, using these accounts to receive and transfer proceeds linked to cybercrime.
Investigators have found that money allegedly generated through investment fraud, betting applications, and other forms of online cybercrime was routed through these accounts. Police are examining bookkeeping services in India-style bank statements and transaction records to determine the sources of this ₹116.86 crore in suspicious transactions and identify exactly which accounts the money was subsequently transferred to.
How the 'Expe App' Allegedly Worked
Police claim the accused used the 'Expe App' to activate message-forwarding functionality on the mobile phones of account holders. This allegedly enabled bank messages, including OTPs, to reach the accused directly.
Once the OTPs were obtained, the accused allegedly transferred money from the affected bank accounts into other accounts. Investigators suspect the rapid movement of funds through multiple accounts was deliberately intended to make it difficult to trace the original source of the money and identify its ultimate beneficiaries. Police are also examining how many mobile numbers, bank accounts, and digital devices were used across the alleged operation.
143 Complaints Reveal the Scale of the Network
During verification through the National Cyber Crime Reporting Portal, police found 143 complaints registered across the country against the 41 bank accounts linked to the accused. These complaints indicate that the alleged network wasn't confined to Varanasi or even Uttar Pradesh, but extended much further.
Investigators are now matching these complaints with specific bank accounts and transaction records, focusing on determining where money from individual cyber fraud cases was deposited, who withdrew or transferred it, and what role each accused allegedly played within the broader network.
What Police Recovered
Police have recovered seven smartphones, one laptop, 19 cheque books, 40 debit cards, 48 QR scanners, and two vehicles from the accused. The seized electronic devices and banking materials are being subjected to technical examination, with investigators also checking which bank accounts are connected to the recovered debit cards and documents, and whether they were allegedly used to withdraw or transfer cyber fraud proceeds.
Why OTP Protection Alone Isn't Enough
Cybercrime expert and former IPS officer Prof. Triveni Singh said cases like this show why banking security cannot be viewed only through the lens of OTP protection. According to him, if criminals gain unauthorised access to mobile messages or other digital channels linked to a bank account, they may be able to misuse critical parts of the banking process entirely. A comprehensive investigation, he noted, should therefore examine the device, banking logs, SIM-related activity, and the complete financial trail together.
Efforts to Freeze the Suspected Funds
Police said efforts have been initiated to freeze suspected funds lying in accounts linked to the accused. Investigators are also searching for other members of the alleged network and examining banking records, digital devices, and complaints registered on the National Cyber Crime Reporting Portal.
Following the arrest of four accused, the next stage of the investigation is focused on identifying those who allegedly arranged the bank accounts, facilitated fund transfers, or operated the wider network. Analysis of the seized digital and banking material is expected to help investigators establish the complete picture behind this ₹116.86 crore in suspicious transactions, and determine the actual scale of the alleged cyber fraud.
FAQs
Q1. How did the 'Expe App' allegedly help fraudsters access OTPs?
The app reportedly activated message-forwarding functionality on victims' mobile phones, allowing bank messages, including OTPs, to be redirected directly to the accused.
Q2. How much money was involved in this alleged fraud network?
Preliminary investigation revealed suspicious transactions worth around ₹116.86 crore across 41 bank accounts linked to the accused.
Q3. How widespread was this alleged cyber fraud network?
Police found 143 complaints registered across the country through the National Cyber Crime Reporting Portal, indicating the network extended well beyond Varanasi and Uttar Pradesh.