{"id":1157,"date":"2023-11-11T11:18:00","date_gmt":"2023-11-11T19:18:00","guid":{"rendered":"https:\/\/blog.realcall.ai\/?p=1157"},"modified":"2023-11-15T19:19:02","modified_gmt":"2023-11-16T03:19:02","slug":"banking-fraud-to-watch","status":"publish","type":"post","link":"https:\/\/www.realcall.ai\/blog\/banking-fraud-to-watch\/","title":{"rendered":"8 Top Banking Fraud\u2002to Watch in 2023"},"content":{"rendered":"\n<p>In the Wake of Covid-19, published in December 2020, the Association of Certified Fraud Examiners found that 79 percent of respondents had seen rising fraud levels in the final months of 2020. Some 90 percent expected a further increase during 2021. The most serious areas of concern were cyber-fraud, including business email compromise, where 85 percent of respondents reported an increase, and payment frauds, where 72 percent saw an increase.<\/p>\n\n\n\n<h2><strong>What is Banking Fraud<\/strong>?<\/h2>\n\n\n\n<p>Banking fraud is constantly evolving as conditions change, creating new vulnerabilities for banks and opportunities for fraudsters. Staying abreast of this moving target is essential if banks are to find solutions that can spot and prevent such scams, especially given the effects of the pandemic on the banking fraud landscape. The common methods criminals use to defraud banks and their customers \u2013 something everyone should know about going forward. We classify the different types of frauds according to whether the payment is initiated by unauthorized or authorized parties. In our view this is the most relevant classification system to use, since this distinction directly affects the level of liability that banks face.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img loading=\"lazy\" width=\"800\" height=\"800\" src=\"https:\/\/blog.realcall.ai\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800.png\" alt=\"\" class=\"wp-image-1160\" srcset=\"https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800.png 800w, https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800-300x300.png 300w, https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800-150x150.png 150w, https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800-768x768.png 768w, https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/10\/BANK-SCAMS-800-120x120.png 120w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/figure><\/div>\n\n\n<h2><strong>How do Bank Scams Work?<\/strong><\/h2>\n\n\n\n<p>Scammers can never access your bank account without your help. Therefore, a bank scam starts the moment the link is established between you and the scammer. Here are some of the common ways a bank scammer will target you:<\/p>\n\n\n\n<ul><li>Send you fake checks that legally bind you to some action.<\/li><li>Send a spam email or fake text messages that requires you to respond with a log-in code or with a link to download malware.<\/li><li>Get you to share your credit card number or bank account information on a phishing website.<\/li><li>Pretend to be a bank representative and ask for your account number over the phone.<\/li><li>Try to gain remote access to your online banking platform through malware or viruses.<\/li><li>Buy your banking information on the Dark Web.<\/li><\/ul>\n\n\n\n<p>The good news is that in most cases, you\u2019re in control of what bank scammers can steal. The more you understand how they try to pull off bank scams, the more secure your account information and money will be.<\/p>\n\n\n\n<h2><strong>Top Types of Bank Scams<\/strong><\/h2>\n\n\n\n<h4>1. Bank insider frauds<\/h4>\n\n\n\n<p>Insiders can be bank employees or staff employed by IT vendors working with the bank. Because these people have detailed knowledge of the bank\u2019s internal systems, this fraud can be difficult to detect and can continue for long periods unless a robust fraud-monitoring system is in place.<\/p>\n\n\n\n<p>Insiders exploit user privileges to access victims\u2019 accounts directly, or to transfer funds from the bank\u2019s internal payment accounts into accounts belonging to customers. The ACFE survey mentioned in the Introduction revealed that 48 percent of banks and financial service providers had seen an increase in internal fraud. Shockingly, 71 percent expected to see it increase further in 2021 \u2013 nearly a quarter expected a \u201csignificant\u201d increase.<\/p>\n\n\n\n<h4>2. Phishing scams<\/h4>\n\n\n\n<p>Millions of fake official emails or text messages from banks, companies, delivery agents, tax authorities, health services, and many other sources are sent every day. The emails contain links that, once clicked by an unwary victim, automatically download and install a piece of malware on their device which gathers personal information needed for an account takeover.<\/p>\n\n\n\n<p>Phishing attacks surged after Covid-19 lockdowns began in March and April 2020. More than 8,000 involved criminals impersonating the police or a bank, a jump of 94 percent. The scams included fraudsters sending emails or text messages pretending to be from government departments and offering grants related to Covid-19.<\/p>\n\n\n\n<h4>3. Man in the middle\/pharming scams<\/h4>\n\n\n\n<p>A hacker obtains sensitive information transmitted between two other parties online. This can happen when the victim is intercepted trying to log in to their online or mobile banking service, allowing their log-in information to be harvested.<\/p>\n\n\n\n<h4>4. Online Lending Scams<\/h4>\n\n\n\n<p>If you\u2019re in a fix and can\u2019t get a loan from your bank, you may be tempted to try an online lender. But many of these services are really just trying to&nbsp;<a href=\"https:\/\/www.aura.com\/learn\/how-to-tell-if-someone-is-scamming-you-online\">scam you online<\/a>. Bank scammers will set up fake websites designed to commit&nbsp;<a href=\"https:\/\/www.aura.com\/learn\/loan-fraud\">loan fraud<\/a>&nbsp;or email you with a \u201cspecial offer\u201d. When you apply, they\u2019ll ask for sensitive information like bank details or Social Security numbers.&nbsp;Once they have access to this information, they can open real loans in your name or provide you with a false loan and request payment right away. Only after you pay do you realize the loan was fraudulent.<\/p>\n\n\n\n<h4>5. Technical support scam<\/h4>\n\n\n\n<p>Fake technical support staff call the victim, who is told that there is a problem with their software. The victim is duped into giving the caller control of their computer remotely, sometimes with the help of personal information about them gathered via social engineering. The fraudster is then able to gain access to their computer and steal confidential information. Action Fraud in the UK said it received almost 15,000 reports of tech support fraud in the 12 months to November 2020, with a total of \u00a316 million defrauded from victims who were duped into installing remote-access software.<\/p>\n\n\n\n<h4>6. Government Impostor Scams<\/h4>\n\n\n\n<p>Americans fend off over&nbsp;<a href=\"https:\/\/www.comparitech.com\/blog\/information-security\/phone-spam-statistics\/\">3 billion spam phone calls<\/a>&nbsp;a month. And a large number of them are scammers pretending to be from a government or law enforcement agency like Medicare, the FBI, or the IRS.&nbsp;During these calls (or emails or texts), the imposter will threaten you with jail time for outstanding debts that require you to pay with a gift card. Or, they might claim you\u2019ve won a prize that requires payment of taxes or fees before they can process it.&nbsp;Either way, the scammers either get money or your personal information they can use for other&nbsp;<a href=\"https:\/\/www.aura.com\/learn\/types-of-financial-frauds\">types of financial fraud<\/a>. For examples of other government imposter scams, check out&nbsp;<a href=\"https:\/\/www.usa.gov\/common-scams-frauds#item-36617\">usa.gov<\/a>. Remember, the government and your bank will never ask for personal information in an email or text. If you\u2019re unsure, hang up and call back on the official agency phone number.<\/p>\n\n\n\n<h4>7. Mobile SIM-swap frauds<\/h4>\n\n\n\n<p>Stealing mobile numbers via SIM swap is a key fraud vector in the developing world, because the primary way most people access mobile banking is via their mobile phone number. Their mobile number is connected to their bank account and is used to verify their identity \u2013 most banks also use this phone number as the primary 2FA implementation mechanism.<\/p>\n\n\n\n<p>The victim receives a call from a fraudster pretending to represent a telco to check account details. Using the personal information obtained, the fraudster poses as the victim and contacts their mobile service provider to have their number transferred to a new SIM in a device the gang controls. This gives access to the victim\u2019s mobile wallet and can even allow the fraudster to attempt to reset the victim\u2019s mobile banking security data and access their account.<\/p>\n\n\n\n<h4>8. Account takeover resulting from social engineering and telephone scams<\/h4>\n\n\n\n<p>Even well-known, unsophisticated techniques such as telephone frauds, which date back decades, continue to be extremely effective, especially when combined with basic social engineering using information about the victim that is easily found online. This type of scam can involve callers pretending to be agents working for a wide variety of organizations, such as the victim\u2019s bank or the tax authorities. Victims are persuaded to disclose their banking credentials, allowing the criminals to take control of their account.<\/p>\n\n\n\n<h2><strong>Must-Learn Tips to Avoid Bank Scams (Free but Useful)<\/strong><\/h2>\n\n\n\n<h4>1. Secure your devices with RealCall app<\/h4>\n\n\n\n<p>If you get a cold call trying to sell you something, ignore it. Robocalls are usually illegal. If you get an unwanted call, use the RealCall app which also avoids offers that come through text or an unexpected email based on a strong number database and continuous iteration of blocking rules. If you get a cold call trying to sell you something, ignore it. Robocalls are usually illegal. If you get an unwanted call, use the RealCall app which also avoids offers that come through text or an unexpected email based on a strong number database and continuous iteration of blocking rules.<\/p>\n\n\n\n<h4>2. Carefully assess any messages claiming to be your bank<\/h4>\n\n\n\n<p>You can better recognize&nbsp;phishing emails&nbsp;once you understand how banks communicate with customers. There are certain things legitimate banks never do. If you get a message like that, assume it\u2019s fraudulent. Some other tips include:&nbsp;<\/p>\n\n\n\n<ul><li><strong>Calling:<\/strong>&nbsp;Banks or other&nbsp;financial institutions&nbsp;don\u2019t call for your PIN or&nbsp;checking account number. Never provide this over the phone. Call your bank directly using the&nbsp;phone number&nbsp;on your&nbsp;credit card&nbsp;or bank statement if you want to confirm.&nbsp;<\/li><li><strong>Email:<\/strong>&nbsp;Your bank has no reason to email you for&nbsp;account information&nbsp;it already has. If you receive an email asking you to click a link or provide&nbsp;account information, assume it\u2019s fraudulent. Don\u2019t click any links and mark the email as spam.&nbsp;<\/li><li><strong>Text messages:<\/strong>&nbsp;If a message appears to be from your bank asking you to sign in or enter your PIN, it\u2019s a&nbsp;scam. Banks never ask customers for this information by text.&nbsp;<\/li><li><strong>Urgent action:<\/strong>&nbsp;A common theme in&nbsp;phishing emails&nbsp;is the urgent call to action. Cybercriminals want to scare you into acting immediately without thinking. The email says there was&nbsp;suspicious activity&nbsp;on your account, and you should log in immediately to avoid having it frozen or closed. No legitimate business would close a customer\u2019s account without giving reasonable notice. Contact your bank through your normal channels to check your balance and account activity if you aren\u2019t sure.&nbsp;<\/li><li><strong>Typos:<\/strong>&nbsp;Misspelled words and grammatical errors are another&nbsp;red flag. Major corporations have professional editors to make sure the content is correct.&nbsp;<\/li><\/ul>\n\n\n\n<h4>3. Create strong passwords and update them regularly<\/h4>\n\n\n\n<p>At some point, almost everyone has used the same password for different websites. But this is one of the simplest ways for hackers to get into your accounts. If they figure out the password for one, they can sometimes access your other accounts.&nbsp;&nbsp;<\/p>\n\n\n\n<p>The most common passwords are:&nbsp;&nbsp;<\/p>\n\n\n\n<ul><li>QWERTY&nbsp;<\/li><li>Password&nbsp;&nbsp;<\/li><li>12345678&nbsp;<\/li><\/ul>\n\n\n\n<p>Use unique passwords for each website. They should be 12 characters long and include numbers, lowercase letters, uppercase letters, and symbols. McAfee Total Protection includes a password manager to help generate and store your passwords in a single location.&nbsp;<\/p>\n\n\n\n<h4>4. Always make sure you\u2019re on the bank\u2019s official website\/app<\/h4>\n\n\n\n<p>If you get an email about an issue with your&nbsp;bank account, you can always go directly to your bank\u2019s website. Don\u2019t click any links in a text or email \u2014 just go directly to your bank\u2019s website to check your account. Similarly, if you get a&nbsp;phone call, dial your bank directly using the official telephone number.&nbsp;Use&nbsp;two-factor authentication&nbsp;when logging into websites for your&nbsp;financial institutions. You\u2019ll get a one-time code by text or email to use each time you log into your account.&nbsp;<\/p>\n\n\n\n<h4>5. Check your bank statements regularly<\/h4>\n\n\n\n<p>Review your bank statements carefully each month to ensure there are no unauthorized transactions. Contact your bank immediately if you see any payments or&nbsp;withdrawals&nbsp;that you don\u2019t recognize.&nbsp;<\/p>\n\n\n\n<h2><strong>What should be done to Minimize Your Loss if you\u2019ve Already Suffered from a Bank Scam?<\/strong><\/h2>\n\n\n\n<h4>1.&nbsp;Don\u2019t pay any more money<\/h4>\n\n\n\n<p>This may sound obvious, but some schemes use the promise of large returns to persuade victims to send one fee after another, even when the victims suspect something is wrong. These&nbsp;<a href=\"https:\/\/www.cftc.gov\/LearnAndProtect\/AdvisoriesAndArticles\/CustomerAdvisory_CoronaFees.htm\">fee frauds\u2002<\/a>have increased significantly online in recent months. Typically, legitimate brokers will deduct fees and commissions from your account, and not demand more money to release your earnings or principal. U.S. brokers will never withhold or collect taxes.<\/p>\n\n\n\n<p>Also, be on the lookout for&nbsp;<a href=\"https:\/\/www.cftc.gov\/LearnAndProtect\/AdvisoriesAndArticles\/RecoveryFrauds.html\">recovery frauds<\/a>. These frauds target recent victims and claim to be able to get the stolen money back if the victims first pay an upfront fee, \u201cdonation,\u201d retainer, or back taxes. The perpetrators of these advance-fee frauds often pose as government officials, attorneys, or recovery companies.&nbsp;<a href=\"https:\/\/www.cftc.gov\/LearnAndProtect\/AdvisoriesAndArticles\/RecoveryFrauds.html\">Learn more\u2002<\/a>about the warning signs of recovery frauds.<\/p>\n\n\n\n<h4>2.&nbsp;Collect all the pertinent information and documents<\/h4>\n\n\n\n<p>While the events are still fresh in your memory, develop a timeline and collect documents and information that could help when it comes time to report or investigate the fraud. Write down conversations you had with the fraudsters with the approximate dates and times they took place. Documents and information to collect and keep include:<\/p>\n\n\n\n<ul><li>Names, titles, or positions used by the fraudsters.<\/li><li>Social media profiles, group posts, chats, or other online interactions.<\/li><li>Website addresses and screen shots.<\/li><li>Emails and email addresses. Save these electronically, or print them out with the full header information. (Your email provider or a web search can describe how to capture header information.)<\/li><li>Phone numbers you used to contact them.<\/li><li>Account information, statements, trade confirmations, disclosures, and sales materials.<\/li><li>If credit cards were used, include the receipts or statements.<\/li><li>Exchanges of digital currencies, such as bitcoin.<\/li><li>Records of other forms of payment including cancelled checks or receipts for wire transfers, money orders, or prepaid cards.<\/li><li>Any correspondence received, including envelopes.<\/li><\/ul>\n\n\n\n<h4>3.&nbsp;Protect your identity and accounts<\/h4>\n\n\n\n<p>If you provided payment information to the fraudsters, take the steps necessary to block access to your accounts and protect against identity theft. Credit cards.&nbsp;If you used credit card information in the fraudulent transaction, contact your card issuers immediately to make a fraud report. As part of the process, you may be required to get a new account number.<\/p>\n\n\n\n<p>You may also want to contact one of the three national credit reporting companies (below) and ask that it place a&nbsp;<a href=\"https:\/\/consumer.ftc.gov\/articles\/what-know-about-credit-freezes-fraud-alerts#alerts\">fraud alert<\/a>&nbsp;on your credit file. The credit reporting company you contact will automatically report the fraud alert to the other credit reporting companies. A fraud alert will notify potential creditors to verify your identity before extending additional credit in your name. Placing a fraud alert is free and typically lasts up to one year or until you ask for it to be removed.<\/p>\n\n\n\n<p>You can also request a&nbsp;<a href=\"https:\/\/www.consumerfinance.gov\/ask-cfpb\/what-does-it-mean-to-put-a-security-freeze-on-my-credit-report-en-1341\/\">free security freeze<\/a>. A security freeze restricts access to your credit file, making it harder for identity thieves to open accounts in your name. You will have to contact each credit reporting company to place a freeze. A security freeze will not be lifted unless you request it.<\/p>\n\n\n\n<h4>4.&nbsp;Report the fraud to authorities<\/h4>\n\n\n\n<p><a href=\"https:\/\/www.cftc.gov\/complaint\">Tell us<\/a>&nbsp;if you believe you were victimized by a fraud that involved commodity futures, options on futures, swaps, commodity pools, binary options, foreign exchange, digital assets, or other derivatives. If you have experienced other types of fraud and don\u2019t know where to send your complaint, the Department of Justice has&nbsp;<a href=\"https:\/\/www.justice.gov\/archives\/fraudtaskforce\/report-fraud\/chart\">a directory that can help<\/a>. Also, federal agencies work closely together and will forward your complaint to the appropriate agency.<\/p>\n\n\n\n<p>If the fraud occurred in your local community, you could also report the matter to the police and your district attorney. You may need to file a police report if you plan to file an insurance claim for fraud losses. Also contact&nbsp;<a href=\"https:\/\/www.cftc.gov\/Exit\/index.htm?https:\/\/www.nasaa.org\/contact-your-regulator\/\">your state financial regulator<\/a>&nbsp;or&nbsp;<a href=\"https:\/\/www.cftc.gov\/Exit\/index.htm?https:\/\/www.naag.org\/naag\/attorneys-general\/whos-my-ag.php\">attorney general<\/a>. State authorities may choose to bring actions in state court.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the Wake of Covid-19, published in December 2020, the Association of Certified Fraud Examiners found that 79 percent of respondents had seen rising fraud levels in the final months of 2020. Some 90 percent expected a further increase during 2021. The most serious areas of concern were cyber-fraud, including business email compromise, where 85&#8230;<\/p>\n","protected":false},"author":2,"featured_media":1463,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_seopress_robots_primary_cat":"none","_seopress_titles_title":"","_seopress_titles_desc":"","_seopress_robots_index":"","ub_ctt_via":""},"categories":[39,1],"tags":[],"featured_image_src":"https:\/\/www.realcall.ai\/blog\/wp-content\/uploads\/2022\/11\/BANK-SCAMS-1200.jpg","author_info":{"display_name":"RealCall Team","author_link":"https:\/\/www.realcall.ai\/blog\/author\/realcall-team\/"},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/posts\/1157"}],"collection":[{"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/comments?post=1157"}],"version-history":[{"count":5,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/posts\/1157\/revisions"}],"predecessor-version":[{"id":3200,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/posts\/1157\/revisions\/3200"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/media\/1463"}],"wp:attachment":[{"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/media?parent=1157"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/categories?post=1157"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.realcall.ai\/blog\/wp-json\/wp\/v2\/tags?post=1157"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}