India’s central bank to launch a special “.bank.in” domain for banks in April 2025 to fight digital payment fraud and enhance trust in online banking.
The Reserve Bank of India announced that the Institute for Development and Research in Banking Technology (IDRBT) will exclusively manage the new “fin.in” domain for non-bank financial institutions.
By infosecbulletin
/ Monday , September 15 2025
Australian banks are now using bots to combat scammers. These bots mimic potential victims to gather real-time information and drain...
Read More
By infosecbulletin
/ Saturday , September 13 2025
F5 plans to acquire CalypsoAI, which offers adaptive AI security solutions. CalypsoAI's technology will be added to F5's Application Delivery...
Read More
By infosecbulletin
/ Saturday , September 13 2025
The Villager framework, an AI-powered penetration testing tool, integrates Kali Linux tools with DeepSeek AI to automate cyber attack processes....
Read More
By infosecbulletin
/ Saturday , September 13 2025
Samsung released its monthly Android security updates, addressing a vulnerability exploited in zero-day attacks. CVE-2025-21043 (CVSS score: 8.8) is a...
Read More
By infosecbulletin
/ Saturday , September 13 2025
Albania has appointed the first AI-generated government minister to help eliminate corruption. Diella, the digital assistant meaning Sun, has been...
Read More
By infosecbulletin
/ Thursday , September 11 2025
On September 1, 2025, Qrator Lab identified and managed a major attack from the largest L7 DDoS botnet seen so...
Read More
By infosecbulletin
/ Thursday , September 11 2025
A new vulnerability, CVE-2025-4235, in Palo Alto Networks’ User-ID Credential Agent for Windows, could reveal a service account's password in...
Read More
By infosecbulletin
/ Thursday , September 11 2025
CyberVolk ransomware, which appeared in May 2024, has increased attacks on government agencies and critical infrastructures in Japan, France, and...
Read More
By infosecbulletin
/ Wednesday , September 10 2025
Microsoft has issued a new warning about a critical security vulnerability in Active Directory Domain Services, known as CVE-2025-21293. An...
Read More
By infosecbulletin
/ Wednesday , September 10 2025
Sophos fixed an authentication bypass vulnerability in its AP6 Series Wireless Access Points, preventing attackers from obtaining admin privileges. The...
Read More
“Increased instances of fraud in digital payments are a significant concern,” said RBI governor Sanjay Malhotra, adding that the new domain system aims to reduce cybersecurity threats and malicious activities like phishing. The move comes as India grapples with a surge in digital payment frauds and predatory lending apps.
The central bank will provide banks with guidelines for a new initiative aimed at helping users identify legitimate banking websites from fraudulent ones.
How the ‘.bank.in’ & ‘fin.in’ domain will work:
Starting April 2025, all approved Indian banks must use websites ending in ‘.bank.in’ to enhance customer security and help distinguish legitimate banking sites from fraudulent ones.
Indians lost Rs 485 crore to UPI fraud in 632,000 incidents during FY25 (up to September). From 2022-23, total UPI fraud losses reached Rs 2,145 crore in 2.7 million cases, with FY24 alone accounting for Rs 1,087 crore from 1.34 million incidents.
To tackle this fraud, the government has blocked over 669,000 SIM cards and 132,000 IMEIs, as well as 1,700 Skype IDs and 59,000 WhatsApp accounts. The Union Home Ministry reports saving more than Rs 3,431 crore from 994,000 complaints.
The RBI will implement extra verification for international digital transactions to offshore merchants to enhance consumer protection, reduce unauthorized payments, and prevent card fraud.
Using 2.8 millions IPs, massive brute attack ongoing