State Bank of India (SBI), the nation’s largest public sector bank, has issued a high-priority fraud alert to its millions of digital banking customers.
Cybersecurity researchers and banking officials are tracking a surge in highly targeted phishing campaigns aimed at compromising SBI accounts.
Threat actors are aggressively deploying fake SMS and WhatsApp messages designed to panic users into downloading malicious applications.
This latest social engineering campaign exploits the widespread use of the YONO (You Only Need One) mobile banking platform.
By weaponizing compliance mandates, attackers are successfully tricking individuals into handing over their sensitive financial data.
SBI Warns YONO Users
The anatomy of this ongoing cyberattack relies heavily on creating a false sense of urgency and fear.
Attackers distribute unsolicited text messages or WhatsApp alerts claiming that the customer’s YONO application will be permanently deactivated within 24 hours.
The fraudulent messages state that this impending deactivation is due to a failure to update or link the user’s Aadhaar number to their bank account.
To immediately resolve this fabricated compliance issue, the message provides a malicious hyperlink or a direct file attachment.
When unsuspecting customers click the provided link, they are not directed to the legitimate State Bank of India portal. Instead, they are redirected to a sophisticated phishing website designed to mimic the official SBI online banking interface.
In other dangerous variations of this attack, the link triggers the automatic download of a malicious Android Package Kit (APK) file.
These unverified APK files are disguised as official banking updates but actually harbor dangerous banking trojans and spyware.
Once successfully installed on a victim’s smartphone, these rogue applications trick the user into granting extensive device permissions.
The malware operates quietly in the background, executing overlay attacks that capture banking credentials and personal identification details as the user types them.
According to TheOfficialSBI research, security teams and banking officials recommend adopting a proactive approach to mobile banking security.
Users should immediately delete any suspicious messages regarding Aadhaar updates or account deactivations without clicking on any embedded links.
If a user suspects they have accidentally downloaded a fraudulent file, they should immediately disconnect their device from the internet, uninstall the suspicious application, and contact their bank to secure their accounts.
To ensure continuous protection against these credential harvesting scams, follow these essential cybersecurity practices.
Download the YONO application exclusively from official platforms like the Google Play Store or Apple App Store. Completely avoid installing standalone APK files received through email, SMS, WhatsApp, or third-party platforms.
Never interact with unverified links, threatening account suspension, blocking, or immediate deactivation. Remember that official banking institutions will never ask you to share your PIN, passwords, or OTPs for authentication.
Always navigate to the official SBI website directly for critical account updates, banking applications, or to submit feedback.
Follow us on Google News , LinkedIn and X to Get More Instant Updates. Set Cyberpress as a Preferred Source in Google.