Quick brief: India has ordered action against Firebase-hosted scam pages accused of impersonating banks and stealing financial data.
India’s cybercrime authorities have moved against a cluster of Google Firebase-hosted pages and databases that officials say were being used to imitate major banks and harvest sensitive information from Android users.
The action points to a wider change in online fraud enforcement. Instead of only targeting stand-alone scam websites, investigators are now looking at how criminals use mainstream developer platforms to create convincing app pages, collect stolen data and move quickly when earlier links are removed.
According to notices reported by Reuters, the Indian Cyber Crime Coordination Centre asked Google to remove at least 57 Firebase-hosted websites and databases in August. The notices described phishing pages and malware infrastructure that allegedly targeted customers of large Indian banks, including State Bank of India, ICICI Bank and Axis Bank.
Why Firebase Became Part of the Scam Trail
Firebase is a legitimate web and app development platform used by developers around the world. That scale is also what makes abuse difficult to police. Fraud operators can use free or low-cost cloud tools to publish pages rapidly, store form submissions and shift campaigns from one link to another.
Officials said some schemes lured users with offers around credit cards, reward redemption or credit-limit upgrades. Other campaigns allegedly used government-linked bait, including messages around PM-KISAN payments, to convince users to install apps that then captured banking data or one-time passwords.
The enforcement pressure comes as India handles one of the world’s largest digital payments markets. Government data cited in the reports said Indians lost nearly $2.4 billion to alleged cyber fraud in 2025, while real-time payment traffic reached enormous scale in the year to March 2026.
What Google Said
Google said it prohibits phishing, malware and financial fraud on its services and works with law-enforcement agencies to review and act on valid notices. The notices did not accuse Google of running the scams, but they show how platform owners are being pushed to respond faster when official takedown orders arrive.
For users, the warning is straightforward: banking apps and government benefit portals should be accessed only through official app stores or verified websites. Links promising instant upgrades, subsidies or rewards should be treated as suspicious, especially when they ask for app installation outside normal channels.
The Bigger Picture
The Firebase notices underline a new reality in cyber policing. Fraud is no longer limited to badly designed fake pages on obscure domains. It can sit behind modern cloud infrastructure, use polished interfaces and target users in local languages with familiar bank names.
India’s next challenge will be speed. Scam campaigns can be rebuilt quickly, so takedowns need to be paired with public warnings, bank-level fraud detection and faster reporting channels for victims. The latest action shows the state is following the infrastructure, not just the final scam page.
Sources
ZyvenPress has rewritten this report in original wording for copyright safety, using verified public reporting and clean stock imagery.
