1. Deceptive Social Media Ads
You see a jaw-dropping discount on a designer saree or the latest smartphone in your social media feed. These ads often look professional, sometimes even using deepfake videos of celebrities to endorse the product. The goal is to lure you to a fraudulent
website. These scams thrive during festive rushes when shoppers are actively hunting for deals. Always be wary of offers that seem too good to be true. Instead of clicking on the ad link, go directly to the brand's official website to verify the deal.
2. Malicious Payment Links and QR Codes
This is one of the most common scams, especially with the widespread use of UPI. A scammer might send you a payment link or a QR code via SMS or WhatsApp, claiming it's for a refund, a cashback offer, or to confirm a cash-on-delivery order. Remember a cardinal rule of UPI: you never need to enter your PIN or scan a code to receive money. Approving such a request will debit money from your account, not credit it. Always verify the recipient's details on the confirmation screen before you approve any payment.
3. Lookalike Websites and Fake Apps
Scammers create websites that are nearly identical to popular e-commerce stores, often with very similar URLs (e.g., Amajon instead of Amazon). These sites are designed to steal your login credentials and credit card information. They might offer unbelievable prices, but the products will never arrive. Similarly, fake apps might appear on third-party stores. Always download shopping apps from the official Google Play Store or Apple App Store and double-check the URL for subtle misspellings before entering any personal data.
4. Fake Delivery Notifications
You receive an SMS claiming a package is on hold due to an incomplete address or a pending customs fee. The message creates a sense of urgency, pressuring you to click a link to resolve the issue. This is a classic phishing tactic. The link leads to a fake portal that harvests your personal information and banking details, often by asking for a small payment to “release” the package. Legitimate courier companies like India Post do not typically send such messages. Always track your orders through the official website or app where you made the purchase.
5. 'Too Good To Be True' Offers
Festive sales are known for discounts, but fraudsters exploit this by offering deals that are simply impossible. A brand new iPhone for half price or a luxury watch for a few thousand rupees are huge red flags. These offers are designed to make you act impulsively. Often, the seller will insist on prepaid-only payment methods like direct bank transfers or gift cards, which offer no fraud protection. If a deal seems unbelievable, it's almost certainly a scam. Stick to reputable retailers and secure payment methods.
6. Shopping on Insecure Public Wi-Fi
It can be tempting to browse festive deals while sitting in a cafe or at the airport, but public Wi-Fi networks are often unsecured. This makes it easy for hackers on the same network to intercept your data, a technique known as a 'man-in-the-middle' attack. They can steal your passwords, credit card numbers, and other personal information. Avoid making any financial transactions or logging into sensitive accounts when connected to public Wi-Fi. Wait until you're on a secure, trusted network like your home Wi-Fi or mobile data.
7. The 'Juice Jacking' Threat
When your phone battery is low while you're out shopping, a public USB charging port can seem like a lifesaver. However, cybercriminals can modify these ports to install malware onto your phone or steal data from it—a threat known as 'juice jacking'. While your phone charges, your data, including banking information and passwords, could be compromised. It's always safer to use your own power bank or to plug your own adapter into an electrical wall outlet rather than using a public USB port.














