Skip to main content

Protecting Yourself from Vishing & Smishing frauds in India

Awareness is necessity

Vishing & Smishing fraud is a type of scam that involves the use of text messages and Voice calls to trick individuals into revealing sensitive personal information such as bank account details, passwords, and credit card numbers. This type of fraud has become increasingly common in India, with many people falling victim to these scams every year. In this blog, we will discuss what Vishing & Smishing frauds are, how it works, and what steps you can take to prevent falling victim to these scams.


What is Vishing & Smishing Fraud?

Vishing & Smishing fraud is a type of social engineering scam that involves the use of text messages and Voice calls to trick individuals into revealing sensitive personal information. The term "vishing" is a combination of "voice" and "phishing," which refers to the use of voice calls to trick individuals into revealing personal information. In "Smishing" fraud, scammers use text messages instead of voice calls to deceive their victims.


How Does Vishing & Smishing Fraud Work?

Vishing & Smishing fraud typically starts with a text message that appears to be from a legitimate source, such as a bank or a government agency. The message may ask the recipient to click on a link or call a phone number to verify their account details or claim a prize. Once the victim clicks on the link or calls the number, they are directed to a fake website or automated voice system that prompts them to enter their personal information.

The fake website or voice system may look and sound legitimate, making it difficult for the victim to detect that they are being scammed. The scammers may also use techniques such as urgency or fear to pressure the victim into giving up their personal information.


Prevention Steps for Vishing & Smishing Fraud

  1. Be cautious of unsolicited text messages and Calls: If you receive a text message or call from an unknown source asking for personal information, do not respond. Legitimate companies and government agencies will not ask for personal information over text message.
  2. Do not click on links: If a text message contains a link, do not click on it. The link may direct you to a fake website that will prompt you to enter personal information.
  3. Verify the source: If you receive a text message from a company or government agency that you do business with, verify the source before responding. Call the company or agency directly to confirm that they sent the message.
  4. Use two-factor authentication: Two-factor authentication adds an extra layer of security to your accounts. It requires you to enter a code that is sent to your phone in addition to your password.
  5. Keep your software up to date: Make sure that your phone's software is up to date. Updates often include security patches that can help protect against Vishing & Smishing fraud and other types of scams.

Conclusion:

Vishing & Smishing fraud is a serious threat in India. Scammers use text messages to trick individuals into revealing sensitive personal information. To prevent falling victim to these scams, it is important to be cautious of unsolicited text messages, verify the source, avoid clicking on links, use two-factor authentication, and keep your software up to date. By taking these steps, you can help protect yourself from Vishing & Smishing fraud and other types of scams.

If you are already scammed and lost money, then you can call cybercrime helpline number 1930 immediately or you can register a complaint on our government portal www.cybercrime.gov.in. The first 2-4 hours are called golden hours. If you register a complaint in these golden hours, then chances are increased of getting money back.

Stay Safe Stay Secure, Jai Hind!

Comments

Popular posts from this blog

Exploiting and Securing GitLab: Lessons from a TryHackMe Lab

Perimeter security isn’t enough—because sometimes the threat is already inside. In this blog post, I’m sharing what I learned from a hands-on TryHackMe lab on GitLab security . It revealed how a simple internal misconfiguration—like open registration or overly permissive repo access—can lead to major data exposure inside an organization. I’ll walk you through the red team perspective on exploiting a misconfigured GitLab instance , and then flip the script to explain how you can secure your own internal build systems . Scenario: Inside the Walls of a Large Organization Think of a large organization—like a bank—with thousands of employees and multiple teams handling development, IT operations, and security. To keep intellectual property (IP) secure, these organizations often host self-managed GitLab instances on their internal network. But here’s where things can go wrong: GitLab is hosted internally Allows anyone on the internal network to register Has some projects...

Email Security Deep Dive: 13 Steps to Keep Your Emails Safe

Email Security Checklist The Email Security Checklist 1. Enable SPF (Sender Policy Framework) What it is: SPF is like a guest list for your email domain. It tells the world that only specific servers are allowed to send email for your domain. How it works: Publish an SPF record in DNS. When someone receives an email claiming to be from your domain, their mail server checks if the sending IP is listed in the SPF record. If the IP is not listed, the email is rejected or marked as spam. Example SPF record: v=spf1 ip4:203.0.113.0/24 include:_spf.google.com -all Only servers in the specified IP range and Google’s mail servers can send emails for this domain. Others are rejected. Points to Note: Prevents attackers from spoofing your domain and sending phishing or spam emails. 2. Enable DKIM (DomainKeys Identified Mail) What it is: DKIM is a digital signature for each email, ensuring that the message hasn’t been tampered with. Ho...

How to Protect ourselves from Online Banking frauds: Tips & Ticks

Awareness is necessity Nowadays, Online banking frauds are increasing day by day, and awareness about Internet use, Internet Security and cyber crime can be helpful in mitigating cyber crime. So here I am sharing some security guidelines you should follow during bank transactions as given by Delhi Police. Safe Bank Transaction Tips: Always do banking transactions on self-computer and mobile devices, installed with original operating system. Use the latest Antivirus software in order to detect and stay protected from most of the threats and vulnerabilities in the applications installed on computers. Never disclose ATM PIN codes and OTP “One Time Password” sent by the bank through SMS or on Email with anyone, even if he is an employee at the bank, as bank never ask you about the codes of your account or any credit card details. Avoid using public computers for making banking transactions. Avoid electronic banking transactions if you are connected to the Internet via...

Deep Dive into Cybersecurity: Security+ Level Knowledge Without the Certificate

📚 My Cybersecurity Learning Journey Key Topics from a 17-Hour Security+ Course ðŸ”đ CIA Triad Explained Confidentiality: Ensuring that sensitive data is only accessed by authorized users. This is often achieved using encryption and access controls. Integrity: Ensuring data is accurate and untampered. Techniques like hashing, checksums, and digital signatures help validate that data hasn't been altered. Availability: Making sure systems and data are accessible when needed. Achieved through backups, redundancy, load balancing, and fault-tolerant design. ðŸ”đ Types of Threats Malware: Includes viruses, ransomware, worms, and trojans that compromise devices or networks. Social Engineering: Manipulating users into giving up confidential info. Example: Phishing emails. Insider Threats: Employees or contractors misusing access, accidentally or intentionally. Advanced Persistent Threats (APTs): Long-term targeted attacks, often by well-funded threat actors. Zero...

āŠŠ્āŠ°ાāŠ‡āŠ āŠļ્āŠ•ેāŠŪ: āŠœો āŠĪāŠŪાāŠ°ે āŠ‡āŠĻાāŠŪ āŠŪેāŠģāŠĩāŠĩા āŠŪાāŠŸે āŠšૂāŠ•āŠĩāŠĢી āŠ•āŠ°āŠĩી āŠŠāŠĄāŠĪી āŠđોāŠŊ āŠĪો āŠĪે āŠ‡āŠĻાāŠŪ āŠĻāŠĨી

Awareness is necessity āŠķું āŠĪāŠŪāŠĻે āŠ•્āŠŊાāŠ°ેāŠŊ āŠ•ોāŠˆ āŠ•ોāŠē્āŠļ āŠ†āŠĩ્āŠŊા āŠ›ે āŠ•ે āŠœેāŠŪાં āŠĪāŠŪે āŠ•ોāŠˆ āŠŠāŠĢ āŠ“āŠĻāŠēાāŠ‡āŠĻ āŠķોāŠŠિંāŠ— āŠĩેāŠŽāŠļાāŠ‡āŠŸāŠŪાંāŠĨી āŠ‡āŠĻાāŠŪ āŠ…āŠĨāŠĩા āŠēોāŠŸāŠ°ી āŠœીāŠĪી āŠēીāŠ§ી āŠđોāŠŊ āŠĪેāŠĩું āŠ•āŠđે āŠ›ે? āŠķāŠ•્āŠŊāŠĪા āŠ›ે āŠ•ે āŠ† āŠ•ોāŠē્āŠļ āŠŦ્āŠ°ોāŠĄ āŠ›ે. āŠļાāŠŊāŠŽāŠ° āŠļ્āŠĩāŠŊંāŠļેāŠĩāŠ• āŠĪāŠ°ીāŠ•ે, āŠŪેં āŠ† āŠŠ્āŠ°āŠ•ાāŠ°āŠĻી āŠ›ેāŠĪāŠ°āŠŠિંāŠĄીāŠ“āŠĻા āŠ•ેāŠŸāŠēાāŠ• āŠ•ેāŠļ āŠĻું āŠ…āŠ§્āŠŊāŠŊāŠĻ āŠ•āŠ°્āŠŊું āŠ›ે. āŠšાāŠēો āŠļāŠŪāŠœીāŠ āŠ•ે āŠ† āŠŠ્āŠ°āŠ•ાāŠ°āŠĻી āŠ›ેāŠĪāŠ°āŠŠિંāŠĄી āŠ•ેāŠĩી āŠ°ીāŠĪે āŠĨાāŠŊ āŠ›ે? !! āŠ›ેāŠĪāŠ°āŠŠિંāŠĄી āŠ•āŠ°āŠĻાāŠ° āŠĪāŠŪāŠĻે āŠ•ોāŠˆāŠŠāŠĢ āŠĩિāŠķ્āŠĩāŠļāŠĻીāŠŊ āŠ“āŠĻāŠēાāŠ‡āŠĻ āŠķોāŠŠિંāŠ— āŠļાāŠ‡āŠŸāŠŪાંāŠĨી āŠ•āŠ°્āŠŪāŠšાāŠ°ી āŠđોāŠĩાāŠĻુ āŠ•āŠđે āŠ›ે.āŠĪેāŠ“ āŠĪāŠŪāŠĻે āŠļાāŠ‡āŠŸ āŠŠāŠ°āŠĨી āŠĪāŠŪાāŠ°ી āŠ›ેāŠē્āŠēી āŠ–āŠ°ીāŠĶી āŠĩિāŠķેāŠĻી āŠĩિāŠ—āŠĪો, āŠ‰āŠĪ્āŠŠાāŠĶāŠĻ āŠ…āŠĻે āŠ“āŠ°્āŠĄāŠ° āŠĻી āŠĩિāŠ—āŠĪો āŠļાāŠĨે āŠĪāŠŪāŠĻે āŠŪāŠĻાāŠĩāŠĩાāŠĻો āŠŠ્āŠ°āŠŊાāŠļ āŠ•āŠ°ે āŠ›ે. āŠœ્āŠŊાāŠ°ે āŠ•ોāŠˆ āŠĩ્āŠŊāŠ•્āŠĪિ āŠŪાāŠĻે āŠ›ે āŠ•ે āŠ›ેāŠĪāŠ°āŠŠિંāŠĄી āŠ•āŠ°āŠĻાāŠ° āŠ“āŠĻāŠēાāŠ‡āŠĻ āŠļાāŠ‡āŠŸāŠĻો āŠ•āŠ°્āŠŪāŠšાāŠ°ી āŠ›ે, āŠĪ્āŠŊાāŠ°ે āŠĪેāŠ“ āŠĪāŠŪāŠĻે āŠĩિāŠĩિāŠ§ āŠ‡āŠĻાāŠŪો āŠœેāŠĩા āŠ•ે āŠēેāŠŠāŠŸોāŠŠ, āŠŸીāŠĩી, āŠŪોāŠŽાāŠ‡āŠē āŠŦોāŠĻ āŠĩિāŠķે āŠ†āŠ•āŠ°્āŠ·āŠ• āŠŊોāŠœāŠĻાāŠ“ āŠ†āŠŠે āŠ›ે āŠ…āŠĻે āŠĪāŠŪાāŠ°ી āŠŠાāŠļેāŠĨી āŠāŠ• āŠ‡āŠĻાāŠŪ āŠŠāŠļંāŠĶ āŠ•āŠ°āŠĩાāŠĻો āŠĩિāŠ•āŠē્āŠŠ āŠ†āŠŠે āŠ›ે.āŠœ્āŠŊાāŠ°ે āŠĪāŠŪે āŠĨોāŠĄી āŠ°ુāŠšિ āŠŽāŠĪાāŠĩો āŠ…āŠĻે āŠ‡āŠĻાāŠŪ āŠŠāŠļંāŠĶ āŠ•āŠ°ો āŠĪ્āŠŊાāŠ°ે āŠ‰āŠē્āŠēેāŠ–િāŠĪ āŠ‡āŠĻાāŠŪāŠŪાંāŠĨી, āŠĪેāŠ“ āŠĪāŠŪāŠĻે SMS āŠĪāŠ°ીāŠ•ે āŠāŠ• āŠēિંāŠ• āŠŪોāŠ•āŠēે āŠ›ે.āŠŪોāŠ•āŠēેāŠēી āŠēિંāŠ• āŠ āŠ›ેāŠĪāŠ°āŠŠિંāŠĄીāŠĻી āŠēિંāŠ• āŠ›ે āŠœે āŠĪāŠŪાāŠ°ી āŠĩિāŠ—āŠĪો āŠœેāŠĩી āŠ•ે āŠŽેંāŠ• āŠĩિāŠ—āŠĪો āŠĪેāŠŪāŠœ āŠĩ્āŠŊāŠ•્āŠĪિāŠ—āŠĪ āŠŪાāŠđિāŠĪી āŠŪાāŠŸે āŠŠૂāŠ›ે āŠ›ે.āŠĻોંāŠ§āŠĢી āŠ•āŠ°āŠĪી āŠĩāŠ–āŠĪે, āŠĪે āŠĪāŠŪāŠĻે āŠĪāŠŪાāŠ°ા āŠļ્āŠĨા...

āŠ‘āŠĻāŠēાāŠ‡āŠĻ āŠŽેંāŠ•િંāŠ— āŠ›ેāŠĪāŠ°āŠŠિંāŠĄી āŠĩિāŠķે āŠļાāŠŊāŠŽāŠ° āŠļુāŠ°āŠ•્āŠ·ા āŠŸીāŠŠ્āŠļ

Awareness is necessity āŠ†āŠœāŠ•ાāŠē, āŠ“āŠĻāŠēાāŠˆāŠĻ āŠŽેંāŠ•િંāŠ— frauds āŠĶિāŠĩāŠļેāŠĻે āŠĶિāŠĩāŠļે āŠĩāŠ§ી āŠ°āŠđી āŠ›ે. āŠˆāŠĻ્āŠŸāŠ°āŠĻેāŠŸ āŠ‰āŠŠāŠŊોāŠ—, āŠˆāŠĻ્āŠŸāŠ°āŠĻેāŠŸ āŠļુāŠ°āŠ•્āŠ·ા āŠ…āŠĻે āŠļાāŠŊāŠŽāŠ° āŠ•્āŠ°ાāŠˆāŠŪ āŠ…ંāŠ—ે āŠœાāŠ—ૃāŠĪિ āŠ•્āŠ°ાāŠˆāŠŪ āŠ˜āŠŸાāŠĄāŠĩાāŠŪાં āŠŪāŠĶāŠĶāŠ°ૂāŠŠ āŠĨāŠˆ āŠķāŠ•ે āŠ›ે. āŠĪેāŠĨી āŠ…āŠđીં āŠ•ેāŠŸāŠēીāŠ• Security guidelines āŠŠ્āŠ°āŠĶાāŠĻ āŠ•āŠ°āŠĩાāŠŪાં āŠ†āŠĩી āŠ›ે āŠœે āŠĪāŠŪાāŠ°ે āŠŽેંāŠ• āŠŸ્āŠ°ાāŠĻ્āŠેāŠ•્āŠķāŠĻ āŠĶāŠ°āŠŪિāŠŊાāŠĻ āŠ…āŠĻુāŠļāŠ°āŠĩી āŠœોāŠˆāŠ. āŠļેāŠŦ āŠŽેંāŠ• āŠŸ્āŠ°ાāŠĻ્āŠેāŠ•્āŠķāŠĻ āŠŸિāŠŠ્āŠļ: SMS āŠĶ્āŠĩાāŠ°ા āŠ…āŠĨāŠĩા āŠˆāŠŪેāŠˆāŠē āŠĶ્āŠĩાāŠ°ા āŠŪોāŠ•āŠēāŠĩાāŠŪાં āŠ†āŠĩેāŠē ATM PIN āŠ•ોāŠĄ āŠ…āŠĻે OTP "āŠĩāŠĻ āŠŸાāŠˆāŠŪ āŠŠાāŠļāŠĩāŠ°્āŠĄ" āŠ•ોāŠˆāŠŠāŠĢ āŠļાāŠĨે āŠ•્āŠŊાāŠ°ેāŠŊ āŠœાāŠđેāŠ° āŠ•āŠ°āŠķો āŠĻāŠđીં, āŠŠāŠ›ી āŠ­āŠēે āŠĪે āŠŽેંāŠ•āŠŪાં āŠ•āŠ°્āŠŪāŠšાāŠ°ી āŠđોāŠŊ, āŠ•ાāŠ°āŠĢ āŠ•ે āŠŽેંāŠ• āŠĪāŠŪāŠĻે āŠĪāŠŪાāŠ°ા āŠ–ાāŠĪા āŠ…āŠĨāŠĩા āŠ•્āŠ°ેāŠĄિāŠŸ āŠ•ાāŠ°્āŠĄāŠĻા āŠ•ોāŠĄ āŠĩિāŠķે āŠ•્āŠŊાāŠ°ેāŠŊ āŠŠૂāŠ›āŠĪી āŠĻāŠĨી. āŠŽેંāŠ•િંāŠ— āŠĩ્āŠŊāŠĩāŠđાāŠ°ો āŠ•āŠ°āŠĩા āŠŪાāŠŸે āŠŠāŠŽ્āŠēિāŠ• āŠ•ોāŠŪ્āŠŠ્āŠŊુāŠŸāŠ°āŠĻો āŠ‰āŠŠāŠŊોāŠ— āŠ•āŠ°āŠĩાāŠĻું āŠŸાāŠģો. āŠœો āŠĪāŠŪે Public Wi-Fi āŠĶ્āŠĩાāŠ°ા āŠˆāŠĻ્āŠŸāŠ°āŠĻેāŠŸ āŠļાāŠĨે āŠœોāŠĄાāŠŊેāŠēા āŠđોāŠĩ āŠĪો āŠˆāŠēેāŠ•્āŠŸ્āŠ°ોāŠĻિāŠ• āŠŽેંāŠ•િંāŠ— āŠĩ્āŠŊāŠĩāŠđાāŠ°ો āŠ•āŠ°āŠĩાāŠĻું āŠŸાāŠģો. āŠĩોāŠŸ્āŠļāŠāŠŠ, āŠŦેāŠļāŠŽુāŠ•, āŠŸેāŠēિāŠ—્āŠ°ાāŠŪ āŠĩāŠ—ેāŠ°ે āŠŠāŠ°, āŠˆāŠŪેāŠˆāŠē, āŠšેāŠŸ્āŠļ āŠ…āŠĨāŠĩા āŠŪેāŠļેāŠœāŠŪાં āŠ†āŠŠેāŠēી āŠ•ોāŠˆāŠŠāŠĢ āŠēિંāŠ• āŠĶ્āŠĩાāŠ°ા āŠ–ોāŠēāŠĪી āŠŽેંāŠ•િંāŠ— āŠĩેāŠŽāŠļાāŠˆāŠŸ āŠŠāŠ° āŠŽેંāŠ•āŠĻી āŠĩિāŠ—āŠĪો āŠ…āŠĨāŠĩા āŠ“āŠģāŠ–āŠŠāŠĪ્āŠ° āŠ•્āŠŊાāŠ°ેāŠŊ āŠĶાāŠ–āŠē āŠ•āŠ°āŠķો āŠĻāŠđીં. āŠđંāŠŪેāŠķા personal computer āŠ…āŠĻે latest āŠ“āŠŠāŠ°ેāŠŸિંāŠ— āŠļિāŠļ્āŠŸāŠŪ āŠļાāŠĨે āŠļ્āŠĨાāŠŠિāŠĪ āŠŪોāŠŽાāŠ‡āŠē āŠ‰āŠŠāŠ•āŠ°āŠĢો āŠŠāŠ° āŠŽેંāŠ•િંāŠ— āŠĩ્āŠŊāŠĩāŠđાāŠ°...