Skip to Content

Cyber Cell Emergency: Shared Your Details on a Fake Site? 24-Hour Action Plan

Shared Aadhaar on a Fake Website? Safe Cyber-Fraud Response Guide
2026-05-22 01:01:21 Updated 2026-08-20 15:10:14.800373 — min read 225 views
Cyber Cell Emergency: Shared Your Details on a Fake Site? 24-Hour Action Plan
“Aadhaar shared on a fake website? Treat it as a possible data-exposure incident, not proof that money is already gone. Preserve the page and messages, report any financial loss through 1930 or the National Cybercrime Reporting Portal, notify your bank through an official channel, and use UIDAI’s own security services.

What You'll Learn

  • How to distinguish data exposure from confirmed account or payment fraud.
  • Which official channels to use for cybercrime reporting, UIDAI security, and bank notification.
  • What evidence to preserve without publishing sensitive identity or banking details.
  • How RBI customer-liability rules depend on the transaction facts and reporting time.

Fake government-scheme pages often copy familiar names, logos, application language, and payment instructions. A page can look convincing while collecting Aadhaar details, phone numbers, bank information, documents, or one-time passwords for a completely different purpose. If you entered information on a page you now suspect is fraudulent, act promptly, but do not panic or assume that identity theft or financial loss has already occurred.

The correct response depends on what you entered and what happened afterward. Sharing a name and mobile number is different from sharing a payment credential. Uploading an Aadhaar document is different from approving a UPI collect request. Seeing an unauthorized debit is different from receiving a suspicious message with no transaction. This guide separates those situations and points to official channels rather than promising a particular result.

India’s official response system includes the National Cybercrime Reporting Portal, the 1930 helpline described by the Indian Cybercrime Coordination Centre, UIDAI security services, and bank complaint channels. Use those services directly. Do not rely on a person who contacts you claiming to recover money or restore an account for a fee.

What sharing data on a fake site actually means

A suspected fake website may expose several kinds of information at once. A visitor may have entered an Aadhaar number, name, date of birth, mobile number, bank account details, card information, UPI identifier, or a document image. The risk is not identical for every field.

Aadhaar information can contribute to impersonation or social engineering, but an Aadhaar number by itself is not the same as a bank password or UPI PIN. A document image may help a fraudster make a convincing call. A phone number may attract phishing messages. A payment credential or an approved transaction requires immediate bank or payment-provider attention.

Do not turn the incident into a public exposure by posting the complete Aadhaar number, account number, card number, OTP, or personal documents while asking for help. If you need to share a screenshot with a bank, police officer, or platform, use the official channel and ask how it should be redacted.

The multimodal data guide explains why images and documents deserve the same care as text. A screenshot can contain more information than the part you intended to show.

First response: make a calm decision tree

Start by writing down exactly what happened. Record the website address, the time, the fields you entered, any payment instruction, the phone numbers or messages involved, and whether you approved an OTP, UPI request, card payment, or biometric authentication. Take screenshots before the page changes, but do not revisit the site through a suspicious link just to test it.

What happenedImmediate priorityOfficial pathDo not assume
Only contact or basic identity details enteredPreserve evidence and watch for phishingNCRP or suspect-report facility if the page is fraudulentThat an account has already been hacked
Aadhaar details or document uploadedReview UIDAI security options and authentication historyUIDAI official services and 1947 supportThat biometric lock reverses every risk
Bank, card, UPI, or payment details enteredNotify the bank or payment provider through an official channelBank fraud line, app, branch, and NCRP or 1930 as appropriateThat a website can freeze an account for you
Unauthorized debit or approved fraudulent paymentReport immediately and preserve the transaction referenceBank, 1930, NCRP, and payment-provider dispute processThat recovery is guaranteed

This table is a triage guide, not a legal deadline. If money has moved, move the bank and 1930 steps to the front. If only an Aadhaar document was shared, use UIDAI’s official options and remain alert for impersonation. If a phone or email account may be compromised, secure that account before using it to reset anything else.

When money moved or a payment credential was exposed

Confirmed financial loss changes the priority. Contact the bank, card issuer, wallet, UPI provider, or other payment intermediary using a phone number or application path that you already trust. Do not use a number supplied in the suspicious message. Ask the institution to record the incident, restrict further unauthorized activity where available, and provide a complaint or reference number.

Call 1930 for suspected online financial fraud and use the National Cybercrime Reporting Portal as directed by the official process. Have the transaction amount, date, time, UTR or transaction reference, beneficiary details, device information, and bank complaint number ready. Share sensitive data only in the authenticated complaint flow.

If you gave away an OTP, UPI PIN, card security code, internet-banking password, or remote-access permission, say so clearly to the bank. Change credentials from a clean device if the bank advises it. Do not keep using a compromised session to investigate the incident.

The account-access troubleshooting article offers a general reminder that an error or warning is not the same as a verified compromise. In a fraud case, use transaction evidence and the bank’s official records rather than guesswork.

Report suspected cyber fraud through official channels

The I4C information page says that the National Cybercrime Reporting Portal supports reporting of all types of cybercrime. It also describes a Citizen Financial Cyber Fraud Reporting and Management System for quick reporting of financial cyber fraud and monetary loss involving digital banking, cards, payment intermediaries, wallets, and UPI.

Official channelUse it forKeep
1930 helplineSuspected online financial fraud or money that has movedCall time and complaint reference
National Cybercrime Reporting PortalFinancial Fraud or Other Cyber Crime complaintAcknowledgement and submission time
NCRP suspect-report facilityFake website URL, phone number, email, or other identifierReported identifier and confirmation
Bank or payment providerUnauthorized transaction or exposed payment credentialFraud ticket and restriction requested

For a suspected financial cyber fraud, call 1930 and follow the operator’s instructions. You can also use cybercrime.gov.in to submit the appropriate complaint. The portal provides Financial Fraud and Other Cyber Crime paths. It also provides facilities for reporting suspect identifiers such as website URLs and phone numbers.

Keep the 1930 reference and portal acknowledgement. The reference is evidence that you reported the matter. It is not a promise that funds will be recovered or that a bank will accept every claim. The case may require additional information from the bank, payment provider, local police, or investigating authority.

Use the official portal address typed into the browser or saved from a trusted government page. Fraudsters sometimes send a second message after the first incident, claiming that a refund or investigation is waiting. Never pay an unofficial recovery fee and never disclose an OTP to a caller who says they are from the cybercrime helpline.

Use UIDAI’s official biometric and UID controls

UIDAI provides separate services for biometric locking and Aadhaar UID locking. They should not be treated as the same setting. Biometric locking addresses biometric authentication. UID locking is a different control with different effects and instructions.

Open the current instructions from UIDAI rather than following a copied screenshot from a social-media post. The UIDAI biometric security guidance explains the official service and its conditions. UIDAI lists 1947 as its toll-free support contact.

Before changing a setting, read what the lock affects and how it can be reversed. A biometric lock is one defensive control. It does not cancel a bank transfer, invalidate a copied document, secure an exposed email account, or prevent every kind of impersonation.

If you cannot access the service, use UIDAI’s official help route or Aadhaar Seva Kendra guidance. Do not give your Aadhaar OTP to an agent, website, or caller who offers to lock it on your behalf.

Check Aadhaar authentication history without exposing it

UIDAI provides an Aadhaar Authentication History service. It can help a holder review authentication records and investigate entries they do not recognize. The current UIDAI page lists information about records, failed transactions, response codes, transaction IDs, modalities, and error codes. It also states that the facility displays a maximum of 50 records at a time.

Look for an entry that you cannot associate with your own activity. Save the relevant date, time, agency or entity information, response details, and transaction identifier through a private copy. Do not upload an unredacted history screenshot to a public forum.

An unfamiliar entry is a reason to contact UIDAI and report through the relevant official channel. It is not, by itself, proof that a bank account was emptied or that a particular person committed the act. Keep the distinction clear when writing a complaint.

If the site asked for an Aadhaar document but there is no authentication record, that does not prove the document was harmless. It means the history check and the document exposure are different evidence points.

Notify your bank and payment providers promptly

RBI’s customer-protection direction tells banks to advise customers to notify the bank of any unauthorized electronic banking transaction at the earliest. It also says that longer delay increases the risk of loss and that banks must provide channels for reporting unauthorized transactions. When a bank receives a report, it must take immediate steps to prevent further unauthorized transactions.

ContactWhat to reportWhat to requestWhat to save
Bank or card issuerUnauthorized debit, exposed credential, or suspicious paymentFraud case, restriction options, and complaint numberTime, channel, reference, and staff response
UPI or wallet providerFraudulent collect request, transfer, or account accessDispute process and account safeguardsUTR, screenshots, beneficiary details, and ticket
1930 and NCRPOnline financial fraud or suspected cybercrimeComplaint registration and acknowledgementReference number and submission time
UIDAISuspicious Aadhaar authentication or biometric concernOfficial service guidance and supportAuthentication record and support reference

Do not assume that “freeze bank account” is a standard button available to every customer. The bank may offer a card block, channel restriction, transaction monitoring, credential reset, or another safeguard depending on the product and facts. Ask what control has actually been applied and obtain written or recorded confirmation.

RBI’s rules on customer liability depend on circumstances. They distinguish, among other things, bank deficiency, third-party breach, customer negligence, and the time taken to notify the bank. The article should not promise zero liability or a refund merely because someone shared data on a fake page.

Preserve evidence and report the fake identifier

Evidence should show what the site looked like, what it asked for, how you reached it, and what happened afterward. Save the URL, screenshots, page title, date and time, messages, email headers, phone numbers, payment instructions, receipts, transaction references, and any downloaded file name. Keep the original files unchanged when possible and make a separate working copy for redaction.

EvidenceWhy it mattersSafe handling
Website URL and screenshotsShows the suspected impersonation and collection flowSave privately and report the URL through NCRP
SMS, email, WhatsApp, or call detailsConnects the page to a message or contactExport or screenshot with private numbers redacted for public sharing
Bank or UPI transaction recordIdentifies a monetary event and reference numberShare through bank, 1930, or NCRP channels only
UIDAI authentication recordShows an authentication event that may need explanationKeep an unredacted private copy and redact public copies

The NCRP portal provides facilities for reporting suspect identifiers, including URLs and phone numbers. Use the official facility when appropriate. A report is not a public accusation and should not be used to publish another person’s private information.

Do not click the fake site repeatedly after the incident. If you need to verify the domain for a complaint, use the screenshot, browser history, or a safe text copy. Do not download a browser extension or remote-access application suggested by the site.

Secure the phone, email, SIM, and payment accounts

Aadhaar exposure is only one part of the risk. A fraudster may use the phone number and email address for targeted phishing, password-reset attempts, SIM-swap deception, or impersonation. Review the security settings of the email account connected to banking and government services. Change passwords from a clean device, enable multi-factor authentication where available, and sign out unknown sessions.

Contact the mobile operator through an official channel if you suspect a SIM or mobile-number problem. Ask what account-protection steps are available. Never share a one-time password with the caller. Review UPI mandates, autopay instructions, card controls, beneficiaries, and recent login alerts through the official bank or payment application.

If you installed remote-access software or allowed screen sharing, disconnect the session, uninstall the software if safe, and contact the bank from another trusted device. Consider professional device support if you cannot verify that the phone is clean.

The agent-security guide describes the same principle in another context: permissions and tool access determine the possible blast radius. A human scammer does not need every credential if one trusted recovery path is left open.

What RBI customer-liability rules do and do not say

RBI’s customer-protection framework is about unauthorized electronic banking transactions and the responsibilities of banks and customers. It is not a blanket insurance policy for every case in which a person entered data on a suspicious website.

In the official circular extracted for this review, RBI says that customers should notify their bank at the earliest. It describes different liability outcomes for bank deficiency, certain third-party breaches, and customer negligence. In some third-party breach situations, the timing of notification is relevant to the liability framework. The exact result depends on the account, transaction, evidence, bank policy, and applicable rule.

If a customer shared payment credentials, the circular says the customer may bear losses until the unauthorized transaction is reported, while losses after reporting may be borne by the bank in the described circumstances. This is why the article must tell readers to report quickly without promising that every claim will be accepted.

Keep the bank complaint number and ask for the institution’s written procedure. If the response is incomplete, use the bank’s grievance process and the applicable RBI complaint route. The comparison guide is unrelated to fraud, but it illustrates a useful editorial habit: always separate a documented rule from an assumption about how a system will behave.

When police or professional help is appropriate

Use the official cybercrime and bank channels first for online financial fraud. Police reporting may also be appropriate when money has been debited, identity misuse is suspected, threats are involved, a document has been misused, or an investigator or bank asks for a formal report.

Do not copy a fixed criminal-code section into every complaint. The applicable legal provisions depend on the facts and the law in force. Describe what happened accurately, attach the official references, and ask the investigating authority which sections or documents apply.

Seek legal advice when there is a substantial financial loss, a disputed liability decision, a forged document, a loan or account opened in your name, or a formal notice. A general website article cannot determine the legal result of an individual case.

Be cautious about recovery agents. A person who asks for an advance fee, OTP, UPI PIN, remote-access permission, or complete identity document while promising a refund may be extending the fraud.

After the first day

Keep checking bank alerts, UPI mandates, card activity, email sign-ins, SIM status, and official complaint acknowledgements. Follow the response times given by the bank, payment provider, UIDAI, or police. If a new unauthorized transaction appears, report it as a new event while referring to the earlier complaint.

Use a private incident timeline with the date, time, organization, reference number, and action taken. This is more useful than relying on memory. Keep receipts and acknowledgement messages in more than one safe location, but do not sync unredacted identity documents to an unnecessary third-party service.

After the immediate response, review where the fake link came from. Report the message, page, account, or advertisement through the platform where you found it. Remove saved passwords or payment data from the suspicious browser session. Continue to treat follow-up calls and messages as untrusted until verified independently.

The automation tools article offers a broader operational lesson that also applies here: convenience should not replace review, access control, or a record of what happened.

Conclusion: respond quickly without making promises

If you entered Aadhaar or bank information on a suspected fake website, preserve evidence and act through official channels. Call 1930 or use the National Cybercrime Reporting Portal when the matter involves online financial fraud or another cybercrime. Notify your bank immediately about an unauthorized transaction or exposed payment credential. Use UIDAI’s official biometric and authentication-history services when Aadhaar security is involved. These actions improve reporting and containment, but no article can guarantee that fraud will not occur or that money will be recovered.

Keep public sharing safe. Do not post complete Aadhaar numbers, bank details, OTPs, UPI PINs, passwords, or unredacted documents. Verify every follow-up contact independently. The safest response is evidence-led, fast, and limited to official channels.

Frequently Asked Questions

Preserve the URL, screenshots, messages, and the fields you entered. If money moved or a payment credential was exposed, contact your bank or payment provider through an official channel immediately and report suspected financial cyber fraud through 1930 or the National Cybercrime Reporting Portal. Use UIDAI’s official security services for Aadhaar-related concerns.
1930 is the national cybercrime helpline described by the Indian Cybercrime Coordination Centre. It is used for reporting online financial cyber fraud and can connect the report to the financial-fraud response system. Keep the complaint reference and also follow the current instructions on the National Cybercrime Reporting Portal.
If no banking or payment information was exposed and no unauthorized transaction occurred, start with evidence preservation, UIDAI guidance, and cybercrime reporting as appropriate. If bank, card, UPI, wallet, password, or payment details were entered, notify the bank or provider through an official channel and ask which safeguards apply. Do not assume that every bank will apply an account freeze.
UIDAI provides official biometric security and UID locking services. Open the current instructions from the UIDAI website, read what each setting affects, and use UIDAI support if you cannot access the service. Do not give an Aadhaar OTP to a caller or agent who offers to change a security setting for you.
Yes. UIDAI provides an Aadhaar Authentication History service that lets a holder review authentication records and related details. The current UIDAI page states that the facility displays a maximum of 50 records at a time. Save an unfamiliar record privately and report it through the relevant official channel rather than posting an unredacted screenshot publicly.
No. Aadhaar exposure, biometric authentication, bank-account access, and an unauthorized payment are different events. A shared Aadhaar document can create impersonation or phishing risk, but it does not by itself prove that money was taken. Check bank alerts and authentication history, secure exposed accounts, and report evidence through official channels.
No universal refund is guaranteed. RBI customer-protection rules depend on the transaction, bank or system responsibility, customer conduct, and how quickly the unauthorized transaction was reported. Notify the bank at the earliest, keep the complaint number, and follow the bank’s current dispute and grievance process. Use official financial-fraud reporting channels as appropriate.
SK Jabedul Haque
Written by

SK Jabedul Haque

Founder & Chief Editor

Building India's most trusted finance education platform — simplifying news, schemes and market trends so anyone can understand and invest confidently.

Read full bio

Never miss an update

Get our clearest explainers on schemes, markets and money — read what matters, without the noise.

Explore more articles
In this article