Wednesday, April 2, 2025
HomeSecurity NewsA Women Shared OTP 28 Times to Fraudsters and Lost Nearly 7...

A Women Shared OTP 28 Times to Fraudsters and Lost Nearly 7 Lakhs

Published on

SIEM as a Service

Follow Us on Google News

A 40-year-old Navi Mumbai women lost nearly 7 lakhs after sharing her OTP 28 Times to Fraudsters. She is a state bank of India account holder and she received a call from fraudster masquerading as a manager.

The incident happened between May 17 and 23 and she had around 7.20 lakh in her bank account. Tasneem Mujjakkar Modak, the victim has told the police that the concept of online banking is completely alien to her.

Modak has provided all the details including 16-digit debit card number and the CVV numbers which is to be kept confidential and the fraudster also asked to delete the messages received from the bank.

Periodic Calls

In total, the fraudster made 28 transactions and the minimum transaction was of Rs.4,000 and the highest Rs.49,999 reports the Hindu.

Police Inspector (Crime) Bhaguji Auti said: “the fraudster said that her card was blocked and asked her to share the card details and pin number, again he called to get the OTP number that she received.”

The first transaction was of Rs.4000 to Oxygen wallet and after realizing the women is not doubtful the fraudster made may calls on the daily basis till May 23 and the payments transferred to the PhonePe wallet in Mumbai.

Also Read Fakebank Malware Variant that Intercepts Android user’s Banking Calls

Modak finally learned that share was cheated on May 30 and went to the bank to update her passbook and “She found that nobody from the bank had called her. She lodged a complaint with us when she learned of the cheating,” a police officer said.

Common Bank Fraud Techniques to steal your information

Vishing

Vishing also knows as Voice Phishing, a social engineering technique used by attackers over the telephone system to gain financial details, by using this method attackers steal payment card details.

Phishing

Commonly carried out via e-mail spoofing and instant messaging, attackers present a fake page posing to be a trusted source and steal your banking credentials.

Smishing

Smishing also knows as SMS phishing that involves in text messaging, the tactics used by attackers to leverage the payment card details and credentials.

Banking Malware

Banking malware is pushed through Social engineering, Phishing and spam emails and security vulnerabilities. They are designed to Steal Money, personal and financial information. Some of the well-known banking malware are Zeus, Spyeye, and Zitmo.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Firefox 137 Launches with Patches for High-Severity Security Flaws

Mozilla has officially launched Firefox 137 with crucial security fixes aimed at addressing several...

Google Cloud Platform Vulnerability Exposes Sensitive Data to Attackers

A privilege escalation vulnerability in Google Cloud Platform (GCP), dubbed "ImageRunner," was recently discovered...

Apple Fined $162 Million by France Authorities for Mobile Ad Market Domination

French antitrust regulators have imposed a hefty fine of €150 million ($162.4 million) on...

20,000 WordPress Sites at Risk of File Upload & Deletion Exploits

A critical security alert has been issued to WordPress site administrators following the discovery...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Advanced CoffeeLoader Malware Evades Security to Deliver Rhadamanthys Shellcode

Security researchers at Zscaler ThreatLabz have identified a new sophisticated malware family called CoffeeLoader,...

Clio: Real-Time Logging Tool with Locking, User Authentication, and Audit Trails

Clio is a cutting-edge, secure logging platform designed specifically for red team operations and...

Enhancing Satellite Security by Encrypting Video Data Directly on Payloads

The rapid expansion of low-Earth orbit (LEO) satellite constellations has underscored the need for...