Gujarat police have dismantled a massive email network used to send interstate bomb threats, uncovering over 513,000 fake Gmail accounts. The investigation is now turning its focus toward Google's security protocols.

  • Gujarat police uncovered 513,847 fake Gmail IDs and passwords used since 2022.
  • The accounts were utilized to send widespread, interstate bomb threats to government offices.
  • Police intend to question Google regarding the failure of its security safeguards.
  • A criminal connection to Bangladesh via cryptocurrency payments was identified.

In a massive crackdown on cyber terrorism, the Gujarat Police have dismantled a sophisticated email network responsible for sending "inter-state" bomb threats. The investigation has revealed a staggering 513,847 fake Gmail IDs and passwords that have been operational since 2022. This unprecedented scale of fraudulent activity has prompted authorities to turn their scrutiny toward Google, questioning how such a vast network could bypass the tech giant's security measures.

The Investigation into Google

Vivek Bheda, a senior cybercrime official of the Gujarat police, stated that the police will formally write to Google to demand policy changes. The authorities are concerned that the current safeguards are insufficient to prevent the mass creation of fraudulent accounts. Police are expected to designate Google as a formal subject of the investigation in the near future.

A particularly alarming detail emerged during the investigation: every single one of these fraudulent accounts employed two-factor authentication (2FA). This suggests that criminals have found sophisticated ways to bypass or automate the very security features designed to protect users, making the detection of bot-driven account creation even more difficult.

International Links and Cryptocurrency

The investigation has also unraveled an international dimension. One of the arrested individuals was reportedly in contact with a buyer based in Bangladesh. These buyers would purchase batches of fake accounts to execute hoax bomb threats, paying for the services partly through cryptocurrency to evade traditional banking surveillance. These threats specifically targeted government offices and were timed around high-profile events like the BRICS summit in New Delhi.

Why This Matters

BozokMedia analysis shows that this incident marks a significant escalation in the use of mass-scale automated accounts for psychological warfare and terror hoaxes. It highlights a critical vulnerability in how major tech platforms manage identity verification at scale.

The ability of criminals to maintain over half a million verified-looking accounts poses a systemic risk to the integrity of global communication platforms.

Historical Background

Cybercrime in India has seen an exponential rise, with financial scams and digital threats causing losses exceeding $2 billion annually. Law enforcement agencies across the globe are increasingly finding themselves in a cat-and-mouse game with criminals who exploit the very platforms designed to connect the world.

Did You Know?: Cybercriminals often use 'account farming' techniques to create thousands of identities that look legitimate to automated security systems.

Frequently Asked Questions

1. Why is Google being questioned in this case?
Police want to understand how 500,000+ fake accounts were created despite existing security protocols.

2. What was the purpose of these fake accounts?
They were used to send hoax bomb threats to government institutions and international entities.