APP Fraud via Fake Bank Official Calls

Verdict: Suspicious | Risk Score: 9/10 | Severity: critical

Category: UPI, WhatsApp, Phishing

How APP Fraud via Fake Bank Official Calls Works

Overview: Authorized Push Payment (APP) fraud via fake bank official calls is a rapidly growing threat in India. Criminals impersonate bank officials or payment processors, using persuasive language and often deepfake technology to trick company staff into transferring funds directly to fraudulent accounts. The scam targets decision makers in companies responsible for processing supplier or payroll payments. How It Works: The perpetrator first contacts the target over the phone, WhatsApp, or email, claiming urgent verifying of payments or suspicious transaction activity. They direct staff to make a trial payment, update beneficiary accounts, or provide OTPs to 'secure' the business account. These actions instead move company funds into fraudster accounts. India Angle: This scam has spiked due to increased reliance on phone-based digital banking and UPI among businesses in cities like Hyderabad, Pune, and Tier-2 urban clusters. SMEs with limited cyber awareness and busy accounts staff are at highest risk. Real Examples: An account manager at a Hyderabad-based start-up receives a call from someone claiming to be from the company's bank relationship desk, asking for verification of new supplier accounts. The manager, harried and trusting, follows instructions and inadvertently authorizes a large transfer to a scam account. Red Flags: 1. Callers claiming to be bank officials from unknown numbers. 2. Requests for urgent fund transfers or OTPs. 3. Asking to update payment beneficiary details over the phone. 4. Threats of account deactivation or penalty for non-compliance. Protective Measures: - Never share OTPs or payment authorisation codes with callers. - Verify bank communication by calling the official branch number. - Train your team to spot social engineering tricks and unsolicited requests. - Review all beneficiary changes with a senior manager. If Victimised: - Attempt to halt payment via your banker. - Register an FIR and report immediately at 1930/cybercrime.gov.in. - Alert all other staff to prevent further attempts. Related Scams: - UPI phishing calls - Deepfake banking impersonation

How This Scam Works — Detailed Explanation

In today’s increasingly digitized financial landscape, APP Fraud via Fake Bank Official Calls has emerged as a severe threat in India. Criminals often utilize various means such as social engineering and advanced technology to impersonate bank officials. They typically find their targets through public databases or online research, focusing on decision-makers or finance teams within organizations. Relevant platforms include LinkedIn, where they can identify individuals with financial responsibilities. Once they have pinpointed their victim, they initiate contact through calls, messages on WhatsApp, or even emails, exploiting the urgency and stress associated with financial transactions, particularly during times like payroll processes.

The tactics employed by these scammers often revolve around psychological manipulation. They create a façade of legitimacy by using caller ID spoofing or deepfake technologies to present themselves as actual bank officials or members of payment processors. Their language is often authoritative and persuasive, overwhelming targets with urgency. A common narrative involves threats about account suspension or fraudulent activity, prompting immediate panic. Additionally, they may request OTPs or passwords under the guise of verifying transactions, pushing the victim into a corner where they feel compelled to comply without questioning the call's authenticity.

Victims of this type of scam may find themselves losing significant amounts of money. The criminals typically instruct them to transfer funds under the pretext of settling urgent payments or adding new beneficiaries, promising that everything is above board. For instance, a small business owner in Mumbai received a call from someone posing as an HDFC Bank representative who demanded an immediate transfer of ₹10 lakh to a new supplier account due to purported administrative issues with their existing account. The business owner, overwhelmed by the urgency and the presumed authority of the caller, complied, only to later discover it was a fraudulent operation. Such cases are rampant, with losses across India reaching hundreds of crores in recent years.

According to reports from organizations like the Ministry of Home Affairs and RBI, APP frauds have led to recorded losses exceeding ₹1,500 crore in India within just the last financial year. Advisories from CERT-In have highlighted the alarming increase in these scams, especially during periods when financial activities surge, such as festivals or salary cycles. The statistics are staggering: many companies underestimate vendor payment fraud until they fall victim to it, often leading to devastating impacts on their finances.

Recognizing the difference between legitimate communications and scam attempts is crucial. Genuine banks and officials will never demand OTPs or direct transfers through unsolicited calls. Legitimate communications will often involve official emails, with verified contact numbers available on their websites. If the demand for urgent payment arises, it’s essential to take a step back, verify the caller's identity, and confirm any urgent requests through official channels. Implementing strict verification protocols within your organization can dramatically reduce the risk of falling victim to such scams.

Visual Intelligence:

BharatSecure's AI has identified this as a used in scams targeting Indian users.

Who Does APP Fraud via Fake Bank Official Calls Target?

General public across India

Red Flags — How to Identify APP Fraud via Fake Bank Official Calls

  • Unsolicited calls demanding urgent payments
  • Caller pressures you for OTPs or password
  • Asks for new beneficiary addition over phone
  • Threats about account suspension

What To Do If You Encounter APP Fraud via Fake Bank Official Calls

  1. Report the incident immediately by calling 1930 or visiting cybercrime.gov.in.
  2. Contact your bank's helpline, such as SBI at 1800-11-1109 or HDFC at 1800-202-6161 to inform them of the scam.
  3. Change your banking passwords and update your security settings immediately.
  4. Inform your company’s financial team about the incident to mitigate further risks.
  5. Block the number that contacted you and report it through relevant channels.
  6. Monitor your bank statements closely for unauthorized transactions.

How to Report APP Fraud via Fake Bank Official Calls in India

  • Call 1930 — National Cyber Crime Helpline (24x7)
  • File a complaint at cybercrime.gov.in
  • Contact your bank immediately if money was lost
  • Call RBI helpline: 14440 for banking fraud

Frequently Asked Questions

What to do if I shared my OTP in a UPI scam?
Immediately contact your bank's helpline and also report the incident at 1930. They can guide you on next steps.
How can I identify this specific APP fraud scam?
Look out for unsolicited calls insisting on urgent payments or asking for passwords or OTPs. Genuine bank calls will not pressure you.
How do I report this type of scam in India?
Report it through the cybercrime helpline at 1930, or file a complaint at cybercrime.gov.in. Also inform your bank.
How can I recover money or protect my accounts after this scam?
Contact your bank immediately, report unauthorized transactions, and follow their guidance for securing your account.

Verify Any Suspicious Message

Check any suspicious message, link, or call for free at bharatsecure.app. BharatSecure uses AI to detect scams in real-time and protect Indian users.