CloudSEK Identifies Large-Scale 'PrintSteal' Fake KYC Document Generation Scam in India

Threat actors reportedly generated Rs. 40 lakh in revenue from a single platform, which has generated over 1,60,000 fake documents.

Advertisement
Written by David Delima | Updated: 6 March 2025 18:31 IST
Highlights
  • CloudSEK has discovered a fake KYC document generation scam
  • Several fake documents including voter and Aadhaar cards were generated
  • The scammers reportedly created over 1.67 lakh fake documents

Scammers are using fraudulent websites to collect user data and generate fake documents

Photo Credit: Pexels/ Sora Shimazaki

Cybersecurity firm CloudSEK has identified a large-scale fraud operation in India that involves the generation of fake Know Your Customer (KYC) documents. Dubbed 'PrintSteal', the operation involved the use of several fake domains that impersonated government websites. The scammers reportedly generated over 1.67 lakh fake documents, generating more than Rs. 40 lakh in the process. The firm also found that the fraudulent documents were generated using personally identifiable information (PII) harvested from documents provided by unsuspecting customers.

'PrintSteal' Fraud Operation Imitated Legitimate CSCs to Trick Users

In a detailed post explaining how the fraudulent scheme was executed, the CloudSEK reports that the scammers set up over 50 websites that were designed to imitate the government's Common Services Centres (CSCs). CSCs are an important part of the e-governance mechanism in the country, and the fraudulent websites would use domain names that were similar to the ones used by official CSCs.

A print portal dashboard used by the fraudsters (tap to expand)
Photo Credit: CloudSEK

Advertisement

 

The fraudsters would then use social media, search engine optimisation, chat apps, and even cybercafés to promote the fake websites. When users visit these sites, they are asked to provide a lot of PII, including their physical address, phone number, Aadhaar number, photographs, date of birth, PAN card details, and even their UPI IDs and bank information.

Advertisement

As the fake websites were designed to copy legitimate government websites, unsuspecting users would think that they are sharing their data with an official website. The security firm states that once the information was provided by a user, the system would generate fraudulent documents that resemble genuine ones, such as a PAN card, Aadhaar card, driving licence, or even a voter ID.

Advertisement

QR codes on the fake documents lead to fraudulent sites (tap to expand)
Photo Credit: CloudSEK

Advertisement

 

The firm said the threat actors would charge a fee that ranged between Rs. 20 to Rs. 35 to generate a single document. Their associates, involved in the distribution of these documents, would charge the customer a higher amount to make a profit. The fake KYC documents even include QR codes that lead to a website that displays the document, in order to fool customers into thinking they are visiting a legitimate government website.

During its investigation, the firm also discovered that the fake KYC documents generated by the scammers were stored on cloud storage services like ImgBB and ImgPile, instead of being discarded — this cloud infrastructure could potentially be used to sell some of these fraudulently created documents.

A screenshot of the scammer warning associates about investigations
Photo Credit: CloudSEK

 

CloudSEK estimates the fraudsters generated Rs. 40 lakh in revenue from the identified network of websites, which has generated over 1,60,000 fake documents. It also warned that it had detected similar sites, with over 1,800 domains — 600 of these are currently active. These platforms are set up using predesigned templates and external APIs.

The fraudulent operation could pose several risks, including financial fraud and identity theft, as these documents are typically issued by the government after verification. CloudSEK also points out that they could pose a risk to national security, if these fake documents are used to hide identities while committing serious crimes.

Some of the firm's recommendations include prosecution of key actors, cross agency (and international) collaboration, website and domain takedowns, shutting down local networks, two-factor (or biometric) authentication for verification, real-time verification, public awareness, and the use of AI and machine learning to detect fraud.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Son of Sardaar 2 OTT Release: Know When and Where to Watch it Online
  2. Astronomers Say High Chance of Black Hole Exploding in the Next Decade
  1. Astronomers Predict 90 Percent Chance of Spotting an Exploding Black Hole in Next Decade
  2. DNA Cassette Tapes Could Transform the Future of Digital Storage
  3. Researchers Create Metal That Resists Cracking in Deep Space Cold
  4. The Madras Mystery OTT Release: This Nazriya Nazim Thriller Will Soon Arrive on This Platform
  5. The Treasure Hunters OTT Release: Know When and Where to Watch Manisha Rani's Game Show Online
  6. Sarkeet OTT Release: This Is Where You Can Watch the Asif Ali-Starrer Later This Month
  7. Researchers Reconstruct 2,500-Year-Old Faces From Skulls Found in Tamil Nadu
  8. House Mates OTT Release: When and Where to Watch the Tamil Horror Comedy Online
  9. Black Hole Kicked Away? Gravitational Waves Reveal Einstein’s Ripples in Spacetime
  10. NASA’s Artemis II Astronauts Will Double as Test Subjects for Deep Space Health Research
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.