Indian National Charged in $8 Million COVID-19 Relief Fraud Scheme

Indian National Charged in $8 Million COVID-19 Relief Fraud Scheme
Wednesday, November 9, 2022

A federal grand jury in Newark, New Jersey, returned an indictment today charging an Indian national for fraudulently obtaining millions of dollars in Paycheck Protection Program (PPP) loans guaranteed by the Small Business Administration (SBA) under the Coronavirus Aid, Relief, and Economic Security (CARES) Act.

According to court documents, Abhishek Krishnan, 40, previously resided in Wake County, North Carolina, before returning to his home country of India. After returning to India, Krishnan allegedly submitted numerous fraudulent PPP loan applications to federally insured banks, including on behalf of purported companies that were not registered business entities. The fraudulent PPP loan applications allegedly included false statements about the companies’ employees and payroll expenses, as well as falsified tax filings. As part of the fraud scheme, Krishnan allegedly used the name of another person without that person’s authority. Krishnan allegedly submitted at least 17 PPP loan applications seeking over $8.2 million and received more than $3.3 million in loan proceeds. Following receipt of the funds, Krishnan allegedly laundered the proceeds of the fraud.  

Krishnan is charged with two counts of wire fraud, two counts of money laundering, and two counts of aggravated identify theft. If convicted, Krishnan faces a maximum penalty of 20 years in prison on each of the top counts and a mandatory minimum of two years in prison on each count of aggravated identify theft. A federal district court judge will determine any sentence after considering the U.S. Sentencing Guidelines and other statutory factors.

Assistant Attorney General Kenneth A. Polite, Jr. of the Justice Department’s Criminal Division; U.S. Attorney Philip R. Sellinger for the District of New Jersey; Special Agent in Charge Mark Morini of the U.S. Treasury Inspector General for Tax Administration (TIGTA), Southeast Field Division; Special Agent in Charge Kyle A. Myles of the Federal Deposit Insurance Corporation Office of Inspector General (FDIC-OIG), Atlanta Region; U.S. Marshal Michael East for the Eastern District of North Carolina; and Special Agent in Charge Amaleka McCall-Brathwaite of the Small Business Administration Office of Inspector General (SBA-OIG), Eastern Region made the announcement.

The TIGTA, FDIC-OIG, U.S. Marshals Service, and SBA-OIG are investigating the case.

Assistant Chief Justin Woodard and Trial Attorney Thomas D. Campbell of the Criminal Division’s Fraud Section and Assistant U.S. Attorney Katherine M. Romano for the District of New Jersey are prosecuting the case, with assistance from Assistant U.S. Attorney Susan B. Menzer for the Eastern District of North Carolina.

In a separate case, Krishnan was recently charged in the Eastern District of North Carolina with theft of government property and aggravated identity theft regarding his alleged receipt of unemployment insurance benefits funded by the federal government in response to the COVID-19 pandemic.

The Fraud Section leads the Criminal Division’s prosecution of fraud schemes that exploit the PPP. Since the inception of the CARES Act, the Fraud Section has prosecuted over 150 defendants in more than 95 criminal cases and has seized over $75 million in cash proceeds derived from fraudulently obtained PPP funds, as well as numerous real estate properties and luxury items purchased with such proceeds. More information can be found at https://www.justice.gov/criminal-fraud/ppp-fraud.

On May 17, 2021, the Attorney General established the COVID-19 Fraud Enforcement Task Force to marshal the resources of the Department of Justice in partnership with agencies across government to enhance efforts to combat and prevent pandemic-related fraud. The Task Force bolsters efforts to investigate and prosecute the most culpable domestic and international criminal actors and assists agencies tasked with administering relief programs to prevent fraud by augmenting and incorporating existing coordination mechanisms, identifying resources and techniques to uncover fraudulent actors and their schemes, and sharing and harnessing information and insights gained from prior enforcement efforts. For more information on the department’s response to the pandemic, please visit https://www.justice.gov/coronavirus.

Anyone with information about allegations of attempted fraud involving COVID-19 can report it by calling the Department of Justice’s National Center for Disaster Fraud (NCDF) Hotline via the NCDF Web Complaint Form at https://www.justice.gov/disaster-fraud/ncdf-disaster-complaint-form.



Private Practice Revises Process to Provide Access to Records Regardless of Payment Source Covered Entity: Private Practices Issue: Access At the direction of an insurance company that had requested an independent medical exam of an individual, a private medical practice denied the individual a copy of the medical records. OCR determined that the private practice denied the individual access to records to which she was entitled by the Privacy Rule. Among other corrective actions to resolve the specific issues in the case, OCR required that the private practice revise its policies and procedures regarding access requests to reflect the ...read more



If a CSP stores only encrypted ePHI and does not have a decryption key, is it a HIPAA business associate? Answer: Yes, because the CSP receives and maintains (e.g., to process and/or store) electronic protected health information (ePHI) for a covered entity or another business associate.  Lacking an encryption key for the encrypted data it receives and maintains does not exempt a CSP from business associate status and associated obligations under the HIPAA Rules.  An entity that maintains ePHI on behalf of a covered entity (or another business associate) is a business associate, even if the entity cannot actually ...read more



Outpatient Surgical Facility Corrects Privacy Procedure in Research Recruitment Covered Entity: Outpatient Facility Issue: Impermissible Uses and Disclosures An outpatient surgical facility disclosed a patient's protected health information (PHI) to a research entity for recruitment purposes without the patient's authorization or an Institutional Review Board (IRB) or privacy-board-approved waiver of authorization. The outpatient facility reportedly believed that such disclosures were permitted by the Privacy Rule. OCR provided technical assistance to the covered entity regarding the requirement that covered entities seeking to disclose PHI for research recruitment purposes must obtain either a valid patient authorization or an Institutional Review Board ...read more



§ 164.314 Organizational requirements. (a) (1) Standard: Business associate contracts or other arrangements. The contract or other arrangement required by § 164.308(b)(3) must meet the requirements of paragraph (a)(2)(i), (a)(2)(ii), or (a)(2)(iii) of this section, as applicable. (2) Implementation specifications (Required) - (i) Business associate contracts. The contract must provide that the business associate will - (A) Comply with the applicable requirements of this subpart; (B) In accordance with § 164.308(b)(2), ensure that any subcontractors that create, receive, maintain, or transmit electronic protected health information on behalf of the business associate agree to comply with the applicable requirements of ...read more

April 2025
SuMoTuWeThFrSa
12345
6789101112
13141516171819
20212223242526
27282930

Blog Home

Newest Blog Entries
1/21/25 Understanding Business Associate Agreements

11/12/22 Modernizing Medicine Agrees to Pay $45 Million to Resolve Allegations of Accepting and Paying Illegal Kickbacks and Causing False Claims

11/12/22 Indian National Charged in $8 Million COVID-19 Relief Fraud Scheme

11/12/22 Former Hospital Employee Pleads Guilty To Criminal HIPPA Charges

11/12/22 Covered entities and those persons rendered accountable by general principles of corporate criminal liability may be prosecuted directly under 42 U.S.C. § 1320d-6

11/12/22 The Delaware Division of Developmental Disabilities Services Data Breach

11/12/22 OCR Settles Three Cases with Dental Practices for Patient Right of Access under HIPAA

11/12/22 HHS Issues Guidance on HIPAA and Audio-Only Telehealth

11/12/22 Five Former Methodist Hospital Employees Charged with HIPAA Violations

11/12/22 May a covered entity use or disclose protected health information for litigation?

11/12/22 When does the Privacy Rule allow covered entities to disclose protected health information to law enforcement officials?

Blog Archives
January 2025 (1)
November 2022 (54)

Blog Labels
PPP Fraud (1)
BAA (4)
Data Breach (1)
EHR Fraud (1)
HIPAA (2)
ePHI (2)
Covered Entity (40)
HIPAA Enforcement (3)
Telehealth (1)