Chinese hackers can empty your bank account under the pretext of updating KYC, beware of the temptation of free gifts of Rs 50 lakh on WhatsApp
Chinese hackers can empty your bank account under the pretext of updating KYC, beware of the temptation of free gifts of Rs 50 lakh on WhatsAppThink Tank Cyberpeace Foundation exposes hackers cheating SBI customers in this way
Expert's advice not to open any link of unknown source
If you are a customer of SBI then you need to be alert now. Chinese hackers are now targeting SBI's customers. Hackers are sending SBI customers a link to update KYC with a phishing scam. At the same time, they are offering a gift of Rs 50 lakh on WhatsApp. This was revealed by the New Delhi-based think tank Cyberpeace Foundation.
The research wing of the foundation met with Autobot Infosec Pvt Ltd to analyze 2 cases of fraud in the name of SBI. In this case, smartphone users were offered a link to KYC update and a free gift of Rs 50 lakh. The domain that was used in it is linked to China.
Case 1: Sent KYC update message
In the first case the customer was texted with a link to the KYC verification. If you open this link, the landing page will look exactly like SBI. It had a 'Continue to Login' button to complete the KYC details. Like the official website, it also asks the customer for a captcha with confidential details like username and password for banking login.
It then sends the OTP to the user's mobile, as the user submits this OTP is redirected to another page. Here the user is asked to submit personal information including account number, mobile number, birth date. After submitting all this data, OTP is sent to the user once again.
According to the researcher, the page is displayed as SBI, but it allows the user to host the bank's official website www.onlinesbi.com on a third party domain instead. It steals all the personal details of the user. This page is designed like SBI page. The features of NetBanking are similar.
Second case: offer of free gifts of Rs 50 lakh
read in gujrati
In another case, a free gift message was sent to SBI customers on their WhatsApp. It also had a link to the message. A greeting message from SBI is seen when this link is open. Customers are then asked to participate in a survey to claim a gift of Rs 50 lakh. A comment box appears at the bottom of the page. It contains comments from Facebook users.
The researcher opened the link on a smartphone that did not have WhatsApp installed. The researcher advised not to open such messages coming on social media. The link's URL revealed that hackers were targeting not only SBI but also customers of IDFC, PNB, IndusInd and Kotak Bank.
No comments:
Post a Comment