The Ministry of Electronics and IT directed major app marketplaces on Monday to delist screen-sharing and remote-access Android packages that fraud rings use in digital-arrest scams, extending a weekend enforcement push that also asks wallet providers to block sideloaded APK files mimicking bank login screens.

What changed in storefront rules

Officials circulated an advisory naming bundle identifiers associated with remote-desktop tools abused in cyber-crime workflows, not legitimate enterprise support software with verified publisher keys. Stores must remove listed packages within 48 hours and reject updates carrying obfuscated names, according to briefings summarised by industry groups.

The order follows Supreme Court scrutiny of large digital-arrest cases, including a Gujarat complaint exceeding ₹11 crore that the Central Bureau of Investigation highlighted in public statements on 28 September. MeitY framed storefront action as complementary to banking controls, not a substitute for police work.

Why remote-access apps are targeted

Scammers convince victims to install screen-sharing tools, then capture one-time passwords and unified payments interface credentials during fake "police verification" video calls. Indian Computer Emergency Response Team indicators updated Sunday include hashes of APK files recovered in Operation Chakra sweeps across multiple states.

Legitimate remote-support vendors can remain listed if they register enterprise signing keys and agree to rapid takedown channels when CERT-In flags abuse. Consumer users should prefer built-in help-desk tools from known brands rather than links sent over WhatsApp.

Platform compliance timeline

Google Play's India policy team acknowledged receipt of the directive in a statement to developers, saying appeals must show fraud-prevention audits. Alternative stores with smaller compliance teams received the same deadlines, with penalties under the Information Technology Act cited for repeat failures.

Phone manufacturers enabling sideloading by default were asked to ship September security patches that warn users when APK sources lack verified publisher metadata.

Household protection steps

Banks reiterated that no genuine officer demands remote access or asks transfers to "safe accounts." Families with elderly relatives were urged to disable sideloading in Android settings and to call branch helplines using numbers printed on debit cards, not numbers supplied in chat apps.

Digital literacy NGOs plan community sessions in tier-two cities before festival travel, when scam call volumes historically rise.

What comes next

MeitY scheduled a follow-up call with payment aggregators on Wednesday to align merchant onboarding checks with the APK crackdown. Cyber-security researchers expect scammers to pivot toward progressive web apps, prompting another indicator list update.

For users, the immediate action is mundane: delete unused remote-access downloads, update phones and treat any unsolicited screen-share request as a hang-up moment.