Sunday, June 1, 2025
HomeSecurity NewsA Women Shared OTP 28 Times to Fraudsters and Lost Nearly 7...

A Women Shared OTP 28 Times to Fraudsters and Lost Nearly 7 Lakhs

Published on

SIEM as a Service

Follow Us on Google News

A 40-year-old Navi Mumbai women lost nearly 7 lakhs after sharing her OTP 28 Times to Fraudsters. She is a state bank of India account holder and she received a call from fraudster masquerading as a manager.

The incident happened between May 17 and 23 and she had around 7.20 lakh in her bank account. Tasneem Mujjakkar Modak, the victim has told the police that the concept of online banking is completely alien to her.

Modak has provided all the details including 16-digit debit card number and the CVV numbers which is to be kept confidential and the fraudster also asked to delete the messages received from the bank.

- Advertisement - Google News

Periodic Calls

In total, the fraudster made 28 transactions and the minimum transaction was of Rs.4,000 and the highest Rs.49,999 reports the Hindu.

Police Inspector (Crime) Bhaguji Auti said: “the fraudster said that her card was blocked and asked her to share the card details and pin number, again he called to get the OTP number that she received.”

The first transaction was of Rs.4000 to Oxygen wallet and after realizing the women is not doubtful the fraudster made may calls on the daily basis till May 23 and the payments transferred to the PhonePe wallet in Mumbai.

Also Read Fakebank Malware Variant that Intercepts Android user’s Banking Calls

Modak finally learned that share was cheated on May 30 and went to the bank to update her passbook and “She found that nobody from the bank had called her. She lodged a complaint with us when she learned of the cheating,” a police officer said.

Common Bank Fraud Techniques to steal your information

Vishing

Vishing also knows as Voice Phishing, a social engineering technique used by attackers over the telephone system to gain financial details, by using this method attackers steal payment card details.

Phishing

Commonly carried out via e-mail spoofing and instant messaging, attackers present a fake page posing to be a trusted source and steal your banking credentials.

Smishing

Smishing also knows as SMS phishing that involves in text messaging, the tactics used by attackers to leverage the payment card details and credentials.

Banking Malware

Banking malware is pushed through Social engineering, Phishing and spam emails and security vulnerabilities. They are designed to Steal Money, personal and financial information. Some of the well-known banking malware are Zeus, Spyeye, and Zitmo.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Attackers Exploit Microsoft Entra Billing Roles to Escalate Privileges in Organizational Environments

A startling discovery by BeyondTrust researchers has unveiled a critical vulnerability in Microsoft Entra...

Threat Actors Exploit Google Apps Script to Host Phishing Sites

The Cofense Phishing Defense Center has uncovered a highly strategic phishing campaign that leverages...

Dadsec Hacker Group Uses Tycoon2FA Infrastructure to Steal Office365 Credentials

Cybersecurity researchers from Trustwave’s Threat Intelligence Team have uncovered a large-scale phishing campaign orchestrated...

Beware: Weaponized AI Tool Installers Infect Devices with Ransomware

Cisco Talos has uncovered a series of malicious threats masquerading as legitimate AI tool...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Phishing Campaign Uses Blob URLs to Bypass Email Security and Avoid Detection

Cybersecurity researchers at Cofense Intelligence have identified a sophisticated phishing tactic leveraging Blob URIs...

UK Government to Shift Away from Passwords in New Security Move

UK government has unveiled plans to implement passkey technology across its digital services later...

New Spam Campaign Leverages Remote Monitoring Tools to Exploit Organizations

A sophisticated spam campaign targeting Portuguese-speaking users in Brazil has been uncovered by Cisco...