BMC Commissioner Ashwini Bhide fell victim to a sophisticated 'courier scam' where fraudsters used call forwarding to hijack her WhatsApp and solicit money from her contacts.
- Fraudsters used call forwarding codes to intercept verification calls.
- The hack bypassed OTP security by opting for a voice call activation.
- High-profile victims include Supriya Sule and Sambit Patra.
- The scam likely originates from the Jharkhand-Bihar border.
Ashwini Bhide, the Commissioner of the Brihanmumbai Municipal Corporation (BMC), became the latest high-profile victim of a sophisticated 'courier scam' over the weekend. The fraudsters managed to seize control of her WhatsApp account, subsequently using her identity to demand money from her contact list.
The Modus Operandi Exposed
According to senior officials from the Mumbai Police, the breach began with a deceptive phone call. A fraudster contacted Bhide, claiming to be a delivery agent with a parcel. When Bhide questioned the delivery as she had placed no orders, the scammer directed her to call a specific number for further details.
The trap was set using a specific USSD command: *21* [Mobile Number] #. This command is a standard instruction to activate call forwarding. By following the scammer's instructions, Bhide unwittingly forwarded all her incoming calls to the criminals' number. This allowed the attackers to attempt a WhatsApp login on a different device and select the 'voice call' verification option instead of a text-based OTP. Since the calls were being forwarded, the fraudsters received the verification call directly, granting them full access to her account.
Why This Matters
BozokMedia analysis shows that this scam targets the social capital of public figures. Criminals exploit the inherent trust people have in prominent leaders; when a known contact asks for financial assistance, recipients are less likely to verify the legitimacy of the request, especially during weekends when response times may vary.
Cybercriminals are moving away from simple OTP theft toward advanced social engineering techniques like call diversion.
This incident is part of a growing trend affecting prominent Indian figures. Previous victims of this exact modus operandi include NCP leader Supriya Sule, BJP leader Sambit Patra, and Shiv Sena leader Shaina NC. Law enforcement agencies believe the operational hub for these scams is located near the Jharkhand-Bihar border.
Historical Background
The evolution of cybercrime in India has seen a shift from mass phishing emails to highly targeted 'social engineering' attacks. As multi-factor authentication (MFA) becomes standard, criminals have adapted by using techniques like SIM swapping and call forwarding redirection to intercept the very channels meant to protect users.
Frequently Asked Questions
1. How can I tell if my calls are being forwarded?
You can check your forwarding status by dialing *#62# or *#21# on most GSM networks.
2. What should I do if a contact asks for money via WhatsApp?
Always verify the request through a secondary communication channel, such as a direct phone call, before transferring any funds.