Intelligence Agencies and OJK Provide Tips to Prevent Phone Hacking and Bank Account Drain
Cybercrime targeting mobile phones and public bank accounts is becoming increasingly diverse, exploiting simple habits such as using public Wi-Fi or leaving Bluetooth active. As mobile phones are now used for shopping, paying bills, and transferring money, device security is directly linked to financial security.
The US National Security Agency (NSA), through its Mobile Device Best Practices guide, reminds the public to be more disciplined in maintaining mobile device security. The guide contains several simple steps that can be applied to both Android and iPhone devices without the need for additional applications.
One vulnerability to watch out for is the use of public Wi-Fi networks, such as in malls, cafes, stations, and airports. Such networks can be exploited by perpetrators to launch attacks or steal information when users are careless.
The NSA also highlights other habits often considered trivial, including leaving Bluetooth on when not in use. Users are advised to turn off unnecessary connectivity features and update operating systems and applications to close known security loopholes.
Risks can also arise when the public charges their phones in public facilities. Users should avoid connecting devices haphazardly to public USB ports and instead prefer using trusted adapters and power sources.
In Indonesia, the Financial Services Authority (OJK) also reminds the public to maintain security when performing digital transactions. Users need to protect personal data, access codes, PINs, and OTP codes, and must not provide this information to anyone claiming to be a bank official or financial institution representative.
Device protection should not stop at using passwords. Activating strong screen locks, biometric authentication, automatic updates, and avoiding suspicious links or applications can minimise the chances of devices and financial accounts being misused.
Ultimately, mobile security depends heavily on user habits. Reducing the use of untrusted networks, disabling unnecessary connections, and maintaining the confidentiality of transaction data are simple steps that can help prevent a phone from becoming a gateway to a bank account.
How to keep your phone secure:
Use a six-digit PIN and activate the feature to automatically wipe data after 10 failed attempts. Do not use birthdays, sequential numbers, or patterns that are easily guessed.
Turn off Bluetooth after use. Do not leave it on in public places, as it can be exploited to inject data-stealing programmes from a short distance.
Avoid public Wi-Fi for all financial transactions. Free networks in malls, cafes, airports, and stations are breeding grounds for data theft. Also, delete saved Wi-Fi lists so the phone does not connect automatically to foreign networks.
Avoid charging in public sockets. Public ports can inject malicious data through cables. Use only your own cables and chargers.
Install applications only from official stores like Google Play Store or the App Store. Delete unused applications to prevent security loopholes.
Update the operating system as soon as it becomes available. Updates are not just for new appearances, but to patch security vulnerabilities known to criminals.
Avoid opening attachments from unknown senders. Ignore pop-up messages that suddenly appear asking you to download something.
Do not modify the phone’s system via rooting or jailbreaking, as this disables all factory-installed protections.
Restart your phone once a week. This simple step cleanses spyware that may be hiding in the phone’s memory.
Safe methods for mobile banking transactions:
Never disclose your PIN, password, or OTP to anyone, including those claiming to be from the bank. Legitimate banks will never ask for them.
Do not store PINs or passwords on your phone in the form of notes, photos, or messages. Memorise them or store them in a place not connected to the internet.
Carefully check the recipient’s name and the amount of money before pressing the confirmation button. A single wrong digit could mean money goes to a criminal’s account.
Always wait for a notification from the bank after a transaction, then read its contents carefully. If there is a transaction you did not perform, immediately contact the bank via the official number on the back of your ATM card, not a number sent via text message.
If your SIM card is lost or falls into the wrong hands, immediately report it to the bank so the number can be blocked from banking access. Criminals can steal your mobile number to take over your entire account.
Always press the Log Out button after using a banking application. Do not leave a transaction session open.
When changing phones, ensure all banking application data has been completely deleted before the device is passed to someone else.
Customer Service Numbers for Major Banks in Indonesia:
If there is suspicious activity in your account or mobile banking application, you can contact these numbers:
Bank Mandiri: 14000
BRI: 14017
BNI: 17000
BCA: 1500888
Mobile and account security is fundamentally determined not by the price of the phone or the sophistication of the application, but by the user’s discipline in maintaining daily habits. One preventive step taken today is far more valuable than a thousand remedies required after money has been lost.