This site contains affiliate links. We may earn a commission at no extra cost to you. Full disclosure

Fake Banking SMS Phishing (Smishing)

Phishing Active Threat

Also known as: Capitec SMS Scam, FNB Phishing SMS, Standard Bank SMS Fraud, Bank Account Blocked SMS, FICA Update Scam

Reported losses: R5,000–R250,000 per victim. Most victims lose the full accessible balance in their transactional and savings accounts. Some lose credit facility drawdowns.

Last updated: 2026-04-02

How This Scam Works

You receive an SMS that looks like it comes from your bank — Capitec, FNB, Standard Bank, or Absa. The message creates urgency: 'Your account will be blocked in 2 hours due to FICA failure,' or 'Suspicious login detected — verify now.' It includes a link to a site that mirrors your bank's real website almost exactly. You enter your username, password, and PIN. Sometimes you're prompted to call a number where a scammer posing as a bank employee 'confirms your identity' and extracts your OTP. Within minutes, your account is emptied. SABRIC's 2024 Annual Report recorded 97,975 digital fraud incidents with gross losses of R1.9 billion — an 86% increase year on year. Smishing (SMS phishing) is cited as the primary method used to harvest banking credentials across mobile channels.

Red Flags to Watch For

  • SMS creates panic with deadlines like '2 hours to act' or 'account blocked tonight'
  • Message contains a clickable link — real banks never send links in SMS messages
  • Link URL does not exactly match the official bank domain (e.g., 'capitec-secure.co.za' instead of 'capitecbank.co.za')
  • Website asks for your full PIN, password, and OTP on the same page
  • A 'bank agent' calls immediately after you enter your details and asks you to read out an OTP
  • Grammar or spelling is slightly off, or the sender number is a random mobile number rather than a short code

Evidence

  • SABRIC Annual Crime Statistics 2024: 97,975 digital fraud incidents reported, gross losses R1.9 billion — 86% increase from 2023 (sabric.co.za/wp-content/uploads/2025/09/CRIME-STATISTICS-REPORT-2024.pdf)
  • SABRIC Annual Report 2024 identifies smishing as primary method for harvesting mobile banking credentials (sabric.co.za/wp-content/uploads/2025/08/SABRIC_annual-report-2024.pdf)
  • TechAfrica News, August 2025: 'South Africa Sees 86% Surge in Digital Banking Fraud, Losses Near R1.9 Billion' (techafricanews.com)
  • Standard Bank flagged specific smishing example in July 2025: 'Your Standard Bank account is scheduled to be blocked in 2hrs due to fica failure update' (Daily Maverick, March 2026)
  • Daily Maverick, March 2026: Investigation into SA bank fraud reveals smishing as leading attack vector for credential theft (dailymaverick.co.za)
  • FNB Security Centre explicitly warns: 'Banks never send links in SMS messages' (fnb.co.za/security-centre/fraud-types/scams.html)
  • Capitec Fraud Centre warns customers against any SMS asking to update profile via link (capitecbank.co.za/fraud-centre/avoid-these-common-scams)

What to Do If You've Been Targeted

  1. 1 Do NOT click any link in the SMS — close the message immediately
  2. 2 Go directly to your bank's official app (downloaded from the App Store or Google Play) or type the URL manually in your browser
  3. 3 Call your bank's official fraud line: Capitec 0860 10 20 43, FNB 087 575 9444, Standard Bank 0800 020 600, Absa 0800 111 155
  4. 4 If you already entered credentials, call your bank immediately to freeze your account and reset passwords
  5. 5 Report the smishing number to SABRIC via your bank or at sabric.co.za
  6. 6 File a criminal case at your nearest SAPS station or at saps.gov.za — get a case number for your bank's fraud claim
  7. 7 Register with SAFPS (Southern African Fraud Prevention Service) to protect your identity at safps.org.za or call 011 867 2234

Share this warning

Help protect others. Share this page with friends or family who might be at risk.