By News SA Correspondent:

One of the fastest-growing and most dangerous scams targeting South African consumers involves something many people have never heard of: RAT attacks. A new generation of banking fraud is emerging in South Africa, giving criminals real-time control over victims’ devices. This article unpacks RAT attacks, a growing form of banking fraud that lets fraudsters access and manipulate customers’ devices remotely.
According to Bonolo Sebolai, Head of Fraud at TymeBank, these scams rely on tricking customers into giving criminals direct access to their devices. “RAT scams are particularly dangerous and extremely sophisticated because they are designed to use the device at the same time as the customer without any clear signs of a device takeover. The criminal doesn’t steal your login details but rather takes control of your device,” says Sebolai.
What Is a RAT Attack?
RAT stands for Remote Access Trojan, which is malicious software that allows a fraudster to remotely control a person’s phone or computer. Once installed, the scammer can see what the customer sees, capture PINs and passwords, intercept one-time passwords (OTPs), and even initiate banking transactions. Because the activity happens on the customer’s own device, banks may initially see the transactions as legitimate. “To the bank, it can look like the customer is making the transaction themselves because the criminal is actually using the customer’s own device,” says Sebolai.

How the Scam Works
These scams usually begin with an urgent call or message claiming to be from a trusted organisation such as a bank, mobile network provider, courier company, online retailer, or even a government department. Victims are told there is a serious issue with their account, delivery, or device and are instructed to click a link or install an app to “fix” the problem. That app is actually the RAT software.
Once installed, the fraudster can:
- monitor everything happening on the screen,
- capture sensitive information,
- and perform banking actions in real time.
Key Red Flags to Watch For
Fraudsters rely heavily on fear and urgency.
“These scams thrive on pressure and authority. If you’re being rushed to act immediately, that’s one of your biggest red flags,” Sebolai warns.
Other major warning signs include:
- being asked to install software to solve a problem,
- being told to stay on the line while logging into your bank,
- or being instructed to approve transactions to “reverse fraud”.
A critical rule applies to all banks:
Your bank will never ask you to install remote access software or share your PIN or OTP.
How to Protect Yourself
Sebolai advises customers to stay cautious and trust their instincts.
“Only download apps from official app stores. And don’t be afraid to hang up and contact your bank directly if something feels wrong. You should act immediately if you suspect your device has been compromised.”
Practical safety steps include:
- downloading apps only from Google Play or the Apple App Store,
- never clicking links from unsolicited messages,
- and always contacting your bank through official channels if unsure.
Why Awareness Matters
As digital banking continues to grow, so do the methods used by criminals. While banks invest in advanced security systems, consumer awareness remains one of the strongest defences against fraud.
Understanding how scams work and knowing when to stop, question, and verify can prevent significant financial loss and emotional stress. – @NewsSA_Online
Follow us on our social media platforms, links below: