The analysis on this page is derived from AI platform responses, providing a detailed view of brand visibility and positioning

mobile banking apps to avoid in sri lanka

Prompt

Last updated 7th September 2025

Domain count
combank.lk
297
peoplesbank.lk
254
boc.lk
244
Citations count
25
9
12
4
Brands Discovered
23
10
8
9

Original answer

Short answer — don’t install or use any mobile app that is not the bank’s official app (published by the bank itself), and avoid these risky categories of apps in Sri Lanka:

  • Fake/clone “bank” apps or impersonators (apps that copy a bank’s name, icon or description but are published by a different developer). Sri Lanka CERT warns scammers hide behind loan/giveaway/financial apps aimed at Sri Lankans. (cert.gov.lk)
  • “Quick loan” and predatory-lending apps that request bank credentials, OTPs or excessive permissions — these are a common scam vector. (CERT & multiple scam advisories). (cert.gov.lk, tech.hindustantimes.com)
  • Utility/QR/finance apps on third‑party stores (or even Play Store apps laced with banking trojans) that ask for Accessibility/SMS/call permissions or ask you to “enable updates outside the store.” Researchers recently found banking trojans (Anatsa/TeaBot, Joker, Coper, etc.) hidden in apps that can steal credentials and OTPs. (tomsguide.com, zscaler.com)
  • Any app that asks you to forward OTPs, share full login credentials, or to install an “update” from a web link rather than your official app store. Malware authors use overlay screens and requests for Accessibility to capture logins. (tomsguide.com, zscaler.com)
  • Apps from unknown sources / sideloaded APKs (outside Google Play / App Store). These are frequently used to distribute malware and scam apps. (usa.kaspersky.com, tech.hindustantimes.com)

How to tell an app is risky (quick checklist)

  • Verify the publisher name matches the bank’s official publisher and the app link is listed on the bank’s official website. (If in doubt, use the bank’s website to find the store link). (boc.lk)
  • Check permissions before installing — red flags: Accessibility, SMS, call/SMS default, camera+microphone+contacts when not needed. (zscaler.com, usa.kaspersky.com)
  • Read recent reviews (look for reports of credential theft, forced updates, or requests to enable unknown permissions). Don’t trust only 5‑star reviews (they can be faked). (usa.kaspersky.com)
  • Only install from the official Play Store or Apple App Store and keep Play Protect / App Store protections enabled. (tomsguide.com, usa.kaspersky.com)
  • Never share OTPs or full credentials by phone/WhatsApp/email — legitimate banks will not ask you to send OTPs or passwords. (CERT guidance and general banking security best practice). (cert.gov.lk, usa.kaspersky.com)

If you already installed a suspicious app

  • Uninstall it immediately, change your bank passwords, contact your bank, and monitor/lock your accounts. Run a reputable mobile antivirus scan and consider notifying Sri Lanka CERT and the app store. (cert.gov.lk, usa.kaspersky.com)

Why I’m not listing specific bank apps to “avoid”

  • Many complaints about poor user experience, instability or permissions exist for some Sri Lankan bank apps (users report outages and UX/security concerns), but poor reviews ≠ proven theft or malware. For safety, focus on avoiding unofficial/clone apps and the red‑flag behaviors above rather than blanket‑blacklisting a bank app without confirmed security incidents. (If you want, I can check a specific app’s developer name/Play Store listing and scanner results). (bevigil.com, reddit.com)

Useful links (for more detail)

If you’d like, tell me one or two app names you’re worried about (exact name or developer as shown in the Play/App Store) and I’ll check whether they look legitimate and if there are any public security warnings about them.

Join BrandRadar to track your LLM score

Stay ahead of the curve. Get insights, benchmarks, and personalized alerts on your brand's LLM performance.

Rank
Brand
Topic
LLM
Sentiment
1
🥇

Bank of Ceylon

55%
45%
80%
40%
Neutral
2
🥈

Kaspersky

42%
45%
0%
80%
Neutral
3
🥉

People’s Bank

30%
0%
55%
35%
Neutral
4

MasterCard

28%
0%
0%
85%
Neutral
5

Hatton National Bank

25%
0%
75%
0%
Neutral
6

Commercial Bank of Ceylon

23%
0%
70%
0%
Neutral
7

Sampath Bank

22%
0%
65%
0%
Neutral
8

Sri Lanka CERT

20%
60%
0%
0%
Neutral
9

Amana Bank

20%
0%
60%
0%
Neutral
10

National Savings Bank

20%
0%
60%
0%
Neutral
11

National Development Bank

18%
0%
55%
0%
Neutral
12

Commercial Bank

17%
0%
0%
50%
Neutral
13

Union Bank

17%
0%
50%
0%
Neutral
14

Tom’s Guide

15%
45%
0%
0%
Neutral
15

Zscaler

15%
45%
0%
0%
Neutral
16

Hindustan Times

15%
45%
0%
0%
Neutral
17

Google Play Store

15%
45%
0%
0%
Neutral
18

Apple App Store

15%
45%
0%
0%
Neutral
19

Bevigil

15%
45%
0%
0%
Neutral
20

Reddit

15%
45%
0%
0%
Neutral
21

HSBC

10%
0%
0%
30%
Neutral
22

Google

8%
0%
0%
25%
Neutral
23

Apple

7%
0%
0%
20%
Neutral
Domain
Title
LLM
URL
Fake Loan Apps! – Sri Lanka CERT
Openai
Download warning! 5 tips to identify fake apps to stay safe and secure | Tech News
Openai
Dangerous Android banking trojan found lurking in malicious apps with 19 million installs - don't fall for this
Openai
On Google Play, Joker, Facestealer, & Coper Banking Malware
Openai
How to Spot and Avoid Fake Apps
Openai
SmartPay | Bank of Ceylon
Openai
Stay Safe Online – Sri Lanka CERT
Openai
Is Bank of Ceylon Mobile Banking app safe to use? Find out its security score
Openai
Which bank in Sri Lanka has the best & worst app?
Openai
medium.com
Gemini
dailymirror.lk
Gemini
lankatalks.com
Gemini
eyeviewsl.com
Gemini
economynext.com
Gemini
reddit.com
Gemini
google.com
Gemini
srilankamirror.com
Gemini
emerald.com
Gemini
researchgate.net
Gemini
nationstrust.com
Gemini
combank.lk
Gemini
youtube.com
Perplexity
apple.com
Perplexity
google.com
Perplexity
diva-portal.org
Perplexity
Logo© 2025 BrandRadar. All Rights Reserved.