‘Tis the Season (for Holiday Fraud)

The best time of the year is here, but it’s also a time of year when fraud increases too. If you are doing any sort of holiday shopping, be aware of the following scam tactics designed to steal your personal and financial information:

E-Skimming – This is what happens when a scammer gets control of an unsecure link within a website that you may be shopping on. Without even realizing it, you could be redirected to a malicious domain where a skimming code can capture your personal and financial information as you are making your purchase online. Such a skimming code would be sent to a remote server in real time where fraudsters would be collecting all your personal data. This data is often sold and then used to make fraudulent purchases in your name afterward. Before you click on any links in emails or on the web – make sure it’s a secure website (you’ll see an https at the top) and only open emails from trusted sources.

Social Media Scams – Sometimes social media platforms are used to set up a fake online store. The site will feature advertising messages and take payments, but unfortunately you will never receive what you ordered and your financial information may also be compromised in the process. When following a brand on social media, look to see if it’s a verified business (blue check mark in the profile) and look to see their website and contact details, number of followers, and the like. If something seems off or too good to be true, it probably is.

Porch Pirates – This is a big time of year when delivered packages often disappear from the doorstep of unsuspecting homes and businesses. Be sure to track anything ordered as it ships to you, look for a delivery confirmation from the retailer, and try to not leave packages out on your porch for hours on end. If you are going to be away from home when a package is delivered, ask a trusted neighbor or family member to pick it up and hold it for you.

Shipment Update Scam Emails – You may find that a fraudster sends you a fake email that tells you your item failed to deliver and then asks you for updated shipping and contact information. This is a scam! The email may look legit (though you will usually find a fake or unusually long email address with a slightly different domain name), but it often contains a link with malware that will steal your personal information if you click on it. The original retailer has all of this contact information and will not ask you for it again.

Donations to Fake Charities – Scammers know that people love to give back this time of year. A donation scam will often duplicate a charity website and get you to click on a link (which is malware) to donate money. Instead of going to the actual charity, your donation goes right into the pocket of a criminal. Do your research before you donate, ensure the site is legitimate and verified.

Additional steps you can take to help prevent fraud this holiday season:

  • Sign up for transaction alerts to receive emails and/or texts for all your credit and debit cards.
  • Pay careful attention to links in emails and on websites.
  • Try to avoid entering card information into website forms. Instead use PayPal or a digital wallet like Apple or Google Pay when you can.
  • Make sure your home computer and mobile devices have anti-virus protection and a firewall.
  • Only shop on well-known and verified websites when buying online.
  • Go directly to a retailer’s website yourself instead of through a social media ad.
  • Look for skimming devices at the ATM or a gas station pump.
  • Monitor your bank accounts on a daily basis and if you see a purchase that was not made by you, report it to your financial institution right away.

Follow the above tips for an enjoyable, safe, and risk free holiday season. Think First!

Article Source: CUNA Mutual Risk Alert 11/14/19

 

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s