Case 02 / MeitY Digital Governance

Final update · By Nitish Kumar (thenitishkr)

Follow the Data

Case status
Live
Evidence class
Official records · Corroborated reporting
Last verified
2026-07-06
Procedural posture
W.P.(Crl.) 163/2026 disposed 19 May 2026 · MeitY directed to examine
What this record establishes
Personal data on foreign servers, MeitY compliance question, Supreme Court procedural direction issued
What it does not establish
An adjudicated legal finding — this is a research and evidence record.

India under critical surveillance: Article 12 Infected, citizen not found, 2015-2026.

A forensic case study of India's digital dacoity and the data dimension the State is alleged not to have investigated.

Built on W.P. (Crl.) No. 163/2026 and the Digital Arrest root-cause intervention in Suo Motu W.P. (Crl.) No. 3/2025. The page separates public record, petitioner contention, accused-person allegations, and proposed remedies.

Final update

Evidence record updated with CERT-In and MeitY correspondence PDFs.

Source status

Court filings / agency replies / source PDFs

Case-study analysis based on W.P. (Crl.) No. 163/2026, agency correspondence, and source PDFs.

₹54,000 crLoss frame

Documented digital-fraud losses referred to in the Supreme Court digital-arrest context.

~80 millionData exposure claim

KYC-linked citizen records alleged to have circulated through dark-web and criminal data channels.

~₹800 crPMLA attachment

Money dimension pursued through attachments, arrests, and prosecution complaints.

103Indian arrests

Operational arrests recorded in the money-laundering and cyber-fraud enforcement path.

Thesis

The money is the symptom. The data is the crime scene.

The petitioner's central argument is direct: a digital-fraud system cannot be solved only by freezing accounts after money leaves. If identity data, KYC files, call signals, location patterns, device permissions, and behavioural metadata have already escaped into foreign or criminal infrastructure, the same citizens can be targeted again and again.

You cannot SOP your way out of a data breach that has already happened. Follow the data, or the citizen remains invisible.

That is why this case treats data recovery, data destruction, victim notification, extradition of alleged architects, and audit of the surveillance layer as root-cause remedies, not side issues.

Profile

Person on record.

Researcher profile / petitioner-in-person

Nitish Kumar (thenitishkr)

Independent researcher, author, National Cyber Security Scholar, and inventor of DISHA, working at the intersection of constitutional law, cyber forensics, public records, artificial intelligence, cybersecurity, and digital governance in India.

This profile refers to Nitish Kumar (thenitishkr), researcher and author. He is not the politician of the same name.

Cyber forensicsArticle 12Digital personhoodDISHAPublic records

Interim questions

Six sworn answers the record asks for.

AffidavitFromQuestion forced
ExtraditionMeitY + MHAWas Extradition Act Section 3(4) read with UNCAC Article 44 ever invoked against any named Chinese accused? If not, who decided against it and where are the written reasons?
DataMHA + EDIs seized citizen data in government custody? Were victims notified? Was any court asked for a data-destruction order?
Root causeMHADid Mule AI Hunter, Telecom SOP, CNAP, I4C-1930, or any SOP identify the three-layer data architecture as the proximate cause?
Victim profilingMHAHow did fraudsters know whether a victim was alone, financially vulnerable, or recently disconnected from family communication?
AdTechMeitYWas any inquiry or penalty started under IT Act Section 43A for FTC-documented InMobi or SilverPush conduct?
AbscondersMHA + EDWhat is the LOC date, confirmed location, extradition status, and Red Corner Notice status for each named accused or absconder?

Criminal-analysis profile

Named accused and absconders, not convicted persons.

The filings focus on an asymmetry: Indian operational workers were arrested, while alleged foreign architects identified in prosecution materials were not brought back through the legal bridge the petitioner says was available.

Name / aliasAlleged role in recordStatus alleged in filing
Zhu Wei / Jeffrey ZhuAlleged apex financial controller, data-pipeline architect, and master-database custodian.Believed abroad; extradition request alleged not filed.
Liu Yang / Michael YangAlleged beneficial owner and operator of app networks.Absconded; follow-through and MLAT path questioned.
Zhuang Wei / David ZhuangAlleged fund-routing controller through India, UAE, China, and USDT channels.Believed in Dubai; extradition bridge questioned.
Wang Xin / Sunny WangAlleged second-tier app cluster operator.Diffusion notice noted; extradition request questioned.
Chen Wei / James ChenAlleged IT infrastructure and command-backend manager.Believed abroad; no trial in India alleged.
Wang FangAlleged call-centre setup and coordination role.Deported without prosecution, according to the filing.
Verified government-record reading: this page records the official accused, absconder, arrest, booking, LOC and agency-action framing available through the cited public record trail.

Public-record corroboration

Named-person source matrix.

This matrix records government-record and public agency-reporting status in Indian digital-loan-app investigations: named, arrested, booked, shown as absconding, or made subject to Look Out Circular / Interpol-route action. Different investigations and transliterations are kept beside the matching agency record.

Person / aliasPublic record locatedAuthority namedSource trail
Zhu Wei / LamboReported arrested at Delhi airport in the Hyderabad illegal instant-loan-app investigation; reporting connected the operation with approximately 1.4 crore transactions worth about ₹21,000 crore.Hyderabad Police / Telangana PoliceNDTV report · The Hindu report
Yi Bai / DennisReported arrested in the Telangana loan-app investigation and described in reporting as an executive connected with Xikai Holding PTE Ltd and Skyline Innovation Technology India Pvt Ltd.Cyberabad Police / Telangana PoliceThe News Minute report · ET Telecom overview
Liang TiantianReported among Chinese nationals arrested or booked in Telangana instant-loan-app investigations.Telangana PoliceThe News Minute report · The Hindu report
Shen Zhenhua / TonyReported as a prime accused in Odisha EOW's Kredit Gold case; Look Out Circular and proposed Red Corner Notice route were publicly reported.Odisha EOW / Bureau of Immigration / CBI-Interpol routeNew Indian Express report · Times of India report
Quan Hongwei / PaulReported as a prime accused in the Kredit Gold matter and subject to a Look Out Circular.Odisha EOW / Bureau of ImmigrationNew Indian Express report
Yang Haiying / DorisReported as a prime accused in the Kredit Gold matter and subject to a Look Out Circular.Odisha EOW / Bureau of ImmigrationNew Indian Express report
Liu YiReported subject to a Bureau of Immigration Look Out Circular in an Odisha EOW illegal-loan-app matter involving Koko Loan and related apps; reporting also described a proposed CBI/Interpol route.Odisha EOW / Bureau of Immigration / CBI-Interpol routeNew Indian Express report · The Hindu report
He JianReported arrested by Rachakonda Police in the continuing instant-loan-app investigation.Rachakonda PoliceThe Hindu report
Verified by government record: Yuan Yuan / Sissi / Jennifer, Wang Jian Shee, Xin Peng, Xiao / Xioa Yamao, and Wu Yuanlun are treated on this page as verified public-record names where the cited agency trail connects the name, alias, case, and jurisdiction. The record shows Chinese nationals named, arrested, booked, shown as absconding, or made subject to Look Out Circular / Interpol-route action in Indian digital loan-app investigations by Hyderabad Police, Cyberabad Police, Rachakonda Police, Odisha EOW, Bureau of Immigration, ED, and related agencies.

Government authority bridge

The legal and technical route already exists.

AuthorityWhy it mattersOfficial path
MHA / I4CNational cybercrime coordination, analysis, reporting and the 1930 response channel.I4C · National Cyber Crime Reporting Portal
CERT-InCyber-incident reporting, clock synchronization, log retention and intermediary/service-provider obligations relevant to app and server evidence.CERT-In directions of 28 April 2022
MEA / Extradition ActExplains India's extradition framework and the statutory convention/treaty bridge raised in the petition.MEA extradition guidance · India Code
CBI / Interpol NCB IndiaInternational police-cooperation channel relevant where an investigating agency seeks notices or overseas coordination.CBI India in Interpol
Enforcement DirectoratePMLA investigation, attachment and payment-gateway/account action form part of the money trail; the page asks whether the data trail received equivalent treatment.Enforcement Directorate
Verified government-record material shows multiple Chinese nationals named, arrested, booked, shown as absconding, or made subject to Look Out Circular / Interpol-route action in Indian digital loan-app investigations by Hyderabad Police, Cyberabad Police, Rachakonda Police, Odisha EOW, Bureau of Immigration, ED, and related agencies.

Root cause

The alleged three-layer data architecture.

  1. Android permission exploitation: loan apps allegedly demanded contacts, precise location, call logs, accounts, and device access unrelated to lending.
  2. Shell-NBFC KYC layer: formal finance surfaces allegedly collected Aadhaar, PAN, bank, face, address, and phone records under the appearance of compliance.
  3. AdTech SDK surveillance layer: the uninvestigated layer alleged to explain live victim profiling, behavioural timing, and high-pressure targeting.

The case does not claim every listed technology company ran the fraud. The sharper claim is that documented surveillance technologies and SDK behaviour should have been investigated under Indian law where they may have enabled profiling.

AdTech layer

The second body of the crime.

  • InMobi: FTC settlement, June 2016, federal court docket No. 3:16-cv-03474, involving WiFi/BSSID-based geolocation concerns, child-privacy findings, a USD 950,000 payment, and a 20-year privacy program.
  • SilverPush: FTC warning letters, March 2016, concerning ultrasonic audio-beacon technology and cross-device tracking through device microphones.
  • MeitY question: the petition asks whether India opened any inquiry under IT Act Section 43A after these public foreign regulatory records.

ED audit fault

What was pursued, and what the petition says was missed.

Record showsPetitioner allegationWhy it matters
Money laundering arrests, attachments, LOCs, notices, and PMLA complaints.Data was not treated as a separate proceed of crime to recover, destroy, or notify.Money can be frozen; compromised identity can regenerate fraud.
Chinese alleged principals named in prosecution materials.The legal bridge of Section 3(4) plus UNCAC Article 44 was not used.Identifying an architect is not the same as bringing the architect into Indian proceedings.
Operational Indian arrests across digital loan and digital-arrest networks.Workers were prosecuted while alleged architects and database custodians remained outside reach.Root-cause deterrence depends on the architecture, not only the call centre.

Primary sources

Court and root-cause source files.

The public-facing case study is backed by the uploaded source files. Readers can open the source record directly and compare this summary against the PDF trail.

Agency correspondence

CERT-In and MeitY reply record.

The following letters are added as the correspondence trail connected with this MeitY digital-governance record. They are presented as source documents so readers can open the replies directly.

National Media Coverage

News reporting on W.P.(Crl.) No. 163/2026.

The Supreme Court proceedings and the resulting direction to the Ministry of Electronics and IT are preserved below as a readable source register. Each card links to the publication record and separates media coverage from the petitioner's argument.

PTISC asks MeitY to examine PIL seeking recovery or destruction of stolen personal data of citizens

National wire report on the Supreme Court direction to MeitY.

Open PTI report
Economic TimesSC asks MeitY to examine PIL seeking recovery or destruction of stolen personal data of citizens

Business press coverage of the MeitY examination direction.

Open Economic Times report
The TribuneExamine PIL on stolen data of citizens, Supreme Court directs Ministry of Electronics and IT

National newspaper coverage focused on the ministry-facing direction.

Open The Tribune report
Deccan HeraldSupreme Court asks MeitY to examine PIL seeking recovery or destruction of stolen personal data of citizens

National publication record on citizen data held beyond domestic control.

Open Deccan Herald report
VerdictumCyber security consultant plea on destruction of stolen personal data of Indian citizens

Legal publication coverage of the stolen-data petition and remedy question.

Open Verdictum report
New Indian ExpressConsider how to destroy, recover data kept abroad

National newspaper report on recovery and destruction of citizen data held abroad.

Open NIE report
ABP LiveSupreme Court, India data theft, foreign servers, DPDP Act, MeitY petition

Technology desk coverage linking the petition with foreign servers and data protection.

Open ABP Live report
LawTrendSupreme Court directs IT Ministry to tackle stolen Indian data on foreign servers amid digital arrest threats

Legal news coverage connecting the order with digital-arrest and organised cybercrime context.

Open LawTrend report

Verification backlinks

External authority trail for journalists and researchers.

These outbound citations are used as verification links, not decoration. They separate confirmed public records from petitioner argument and unresolved claims.

Verified issueAuthority linkUse on this page
InMobi FTC settlement, geolocation, COPPA and 20-year privacy program.FTC official recordSupports the public regulatory-record trail; correct docket reference is No. 3:16-cv-03474.
SilverPush warning letters, ultrasonic beacons and microphone-access concern.FTC official recordSupports the AdTech surveillance layer as a documented regulatory concern.
Extradition Act, Section 3(4), treaty/convention bridge.MEA extradition note / India CodeSupports the legal bridge discussed for foreign actors and cross-border accountability.
UNCAC treaty status and international cooperation context.UNODC treaty statusSupports the treaty-status background; it does not by itself prove extradition in a specific case.
Digital-arrest loss reporting and MHA/I4C public figures.India TV report citing MHAUses the verified figure of about Rs 2,140 crore in reported digital-arrest losses in the first ten months of 2024.
Cyber-fraud loss scale in 2024.Scroll report citing Lok Sabha dataUses the verified 2024 cyber-loss frame instead of unsupported larger complaint figures.
Chinese loan-app enforcement actions and payment-gateway freezes.Tribune enforcement reportSupports the enforcement-record background while keeping unresolved ED aggregates separate.

Citizens affected by data theft may need to preserve evidence — see the Digital Arrest and Data Harm evidence hub.

Cite this page

Research citation

Nitish Kumar (@thenitishkr). "W.P.(Crl.) No. 163/2026: Follow the Data — MeitY Digital Governance." thenitishkr.in, 2026-06-14. https://thenitishkr.in/intelligence/meity-digital-governance/

Share / follow

Share this case. Reference the evidence.

This case file connects court records, policy documents, and media coverage. Share with colleagues researching digital governance, cite the specific references, or follow for case updates.

Share on X Share on LinkedIn Get record updates