SEVIS Account Suspension Phishing Attack

Verdict: Suspicious | Risk Score: 8/10 | Severity: high

Category: UPI, WhatsApp, Phishing

How SEVIS Account Suspension Phishing Attack Works

Overview: SEVIS (Student and Exchange Visitor Information System) is crucial for students on F-1 visas in the US. Scammers have latched onto this, sending emails or calls claiming the victim’s SEVIS account is at risk of termination. These scams create panic among Indian students, exploiting their fear of losing visa status and being asked to pay hefty ‘rectification’ fees. How It Works: Victims receive an official-seeming email, call, or WhatsApp message warning them their SEVIS account is being suspended due to 'alleged violations.' Fraudsters cite technical-sounding reasons—like mismatched university records or late fee payments. They instruct students to pay a 'fine' via money transfer, UPI, or cryptocurrency to restore their account and avoid deportation. Sometimes, fake government portals are set up to accept payments, complete with authentication forms that steal Aadhaar or passport details. India Angle: This scam is rampant among Indian students in the US, especially from Telugu, Tamil, and Punjabi-speaking regions. Families are contacted in regional languages, amplifying emotional distress. Links or forms might ask for Aadhaar details and request quick UPI payments into Indian bank accounts. Major student destinations like Andhra, Telangana, Punjab, and Tamil Nadu are hardest hit. Real Examples: - Email: "Immediate Action Required: Your SEVIS account is pending suspension. Pay ₹1.25 lakh within 24 hours!" - WhatsApp: "Aadhaar-linked verification failed for your student visa. Update your details now via this link." - Call: "Your US student visa will be cancelled unless you pay the overdue fine today." Red Flags: - Emails from unofficial domains but with government logos - Requests for Aadhaar or passport details through forms or calls - Errors in grammar or spelling despite 'official' tone - Payment demanded for account restoration - Urgent threats of visa cancellation Protective Measures: Always check SEVIS status directly through your university or official government websites. The US government never demands payments this way. Don’t share personal details in response to unsolicited messages or forms. If Victimised: Retain emails, account numbers, screenshots. Report the fraud to cybercrime.gov.in, consult your university’s international office, call 1930 in India, and inform the RBI if you made any payments. Related Scams: Phishing attacks targeting Indian passport renewals; university admission frauds requiring false 'processing fees.'

How This Scam Works — Detailed Explanation

Scammers have identified Indian students on F-1 visas in the United States as an easy target for their SEVIS Account Suspension Phishing Attack. They often operate through email, WhatsApp, and even phone calls, creating a sense of urgency to lure their victims. Given the reliance on digital communication in today's world, scammers craft fake messages that closely resemble official communications. For instance, emails may come from spoofed addresses that seem legitimate at first glance, while WhatsApp messages may feature official logos and jargon that create a false sense of security. These messages often include links that lead to phishing websites, designed to harvest personal and financial information such as Aadhaar or bank details.

The tactics used by these criminals are alarming due to their psychological manipulation. They play on the fears of international students by claiming their SEVIS accounts are in jeopardy due to non-compliance or administrative errors, thus putting their visa status at risk. To intensify panic, they may threaten immediate consequences, such as account termination or hefty 'rectification' fees, if action isn't taken instantly. The scammers make their communications appear credible, employing tactics like creating fake deadlines or claiming that a limited-time offer is available for rectification, which can lead nervous students to act impulsively without confirming the legitimacy of the message.

Once victims begin to engage, they are typically guided through a series of steps. A common scenario involves a victim receiving a warning email and subsequently being contacted via phone or WhatsApp by someone pretending to be from the SEVIS support team. They may be asked to confirm their identity using Aadhaar details or be pressured to make an instant payment via UPI to 'secure' their accounts. Victims may feel a sense of urgency that leads them to comply without questioning the legitimacy of the request. Reports indicate that Indian victims have suffered losses exceeding ₹100 crore due to such scams, with banks like SBI and HDFC also reporting spikes in fraud cases tied to these incidents.

The impact of such scams is profound, with many victims not only losing their hard-earned money but also facing emotional distress. The Ministry of Home Affairs and the Reserve Bank of India have recognized the growing threat of these phishing attacks and continue to emphasize the importance of user awareness and timely reporting. Statistics from the Cyber Crime Investigation Cell show a sharper rise in such incidents, particularly during examination periods when students are most vulnerable.

To differentiate between genuine communications and this particular phishing scam, students should look for key red flags such as spelling and grammatical errors in emails, requests for sensitive information such as Aadhaar or bank details, and threats regarding visa statuses. Official communications will never demand immediate payment or sensitive personal information through unsecured methods. Always cross-check official channels and use trusted contact information when in doubt about a message or call regarding your SEVIS account.

Visual Intelligence:

BharatSecure's AI has identified this as a used in scams targeting Indian users.

Who Does SEVIS Account Suspension Phishing Attack Target?

General public across India

Red Flags — How to Identify SEVIS Account Suspension Phishing Attack

  • Fake suspension alerts about SEVIS accounts
  • Spelling/grammar mistakes in official-looking emails
  • Requests for Aadhaar/passport details or money transfers
  • Pressure to pay via UPI or cryptocurrency
  • Threats of loss of visa status if not paid

What To Do If You Encounter SEVIS Account Suspension Phishing Attack

  1. Report any suspicious emails or messages to 1930 or cybercrime.gov.in immediately.
  2. Do not share Aadhaar or personal details over email or phone.
  3. Verify contact numbers associated with your SEVIS account through official government websites.
  4. Reach out to your educational institution for guidance if you receive concerning communications.
  5. Avoid making payments through UPI or cryptocurrency to unknown individuals.
  6. Contact your bank’s customer service helpline, like SBI at 1800-11-1109 or HDFC at 1800-202-6161, for assistance.

How to Report SEVIS Account Suspension Phishing Attack in India

  • Call 1930 — National Cyber Crime Helpline (24x7)
  • File a complaint at cybercrime.gov.in
  • Contact your bank immediately if money was lost
  • Call RBI helpline: 14440 for banking fraud

Frequently Asked Questions

What should I do if I shared my Aadhaar details in response to a phishing email?
Immediately report the incident to 1930 and monitor your bank statements for unauthorized transactions. You may also want to contact your bank and request them to block your Aadhaar-linked services.
How can I identify if a SEVIS email is legitimate?
Look for inconsistencies like generic greetings, poor language, and requests for sensitive information or money. Official emails will typically come from verified accounts.
How do I report a phishing attack in India?
Report the incident through the cybercrime helpline 1930, or visit cybercrime.gov.in to file a report. Additionally, notify your bank for any financial concerns.
Can I recover my lost money after falling victim to this scam?
While recovery is challenging, act quickly by reporting the scam to your bank and file a complaint with the cybercrime helpline 1930. They may offer steps to safeguard your financial accounts.

Verify Any Suspicious Message

Check any suspicious message, link, or call for free at bharatsecure.app. BharatSecure uses AI to detect scams in real-time and protect Indian users.