Security Incidents

Records of security incidents — brand impersonation, phishing, fraud, and external threats affecting Wealthy or its customers

Security Incidents

This section records security incidents — events involving brand impersonation, phishing, investment fraud, and other external threats targeting Wealthy or its customers. These are distinct from the engineering post-mortems in Root Cause Analyses, which cover internal production failures.

A security incident here typically means our systems and data were not compromised, but our brand, regulatory identity, or customers were targeted by an external party.

Incidents

Date Incident Type Severity Status
2026-06-01 wealthtraders.co.in brand impersonation Brand impersonation / phishing High (brand/regulatory) Host + Safe Browsing reported; site down; monitoring

Record convention

  • Naming: YYYY-MM-DD-brief-description.md
  • Each record covers: Summary · Classification · Impact · Indicators · Investigation method · Actions & reporting · Status & lessons
  • Sanitised for publication: no unverified individual names, no live operational detail (draft contents, internal contacts). The full working record with raw indicators lives in the security repo and its tracking issue.

2026-06-01: wealthtraders.co.in Brand Impersonation

A fraudulent website impersonated Wealthy’s SEBI brokerage to defraud retail investors; investigation, takedown reporting, and the wider fraud network.