Close Menu
    Facebook X (Twitter) Instagram
    Trending
    • 5 Active Malware Campaigns in Early 2025: What You Need to Know
    • 10 Critical Network Pentest Findings IT Teams Overlook
    • Report Phishing Instantly with PhishAlarm
    • Password Reuse Epidemic: Nearly Half of User Logins Compromised
    • Women in Cybersecurity: Interest, Exposure, or Just Stereotypes??
    • Stay Ahead of Scammers in 2025
    • Cybersecurity Alert: Risks of Abandoned Websites
    • DHS Unveils Playbook for the Deployment of Artificial Intelligence for the Public Sector
    Fordham University Information Security and Assurance
    • Information Security and Assurance Homepage
    • Privacy Blog
    • About
    Fordham University Information Security and Assurance
    You are at:Home»Security Awareness»The “not-so-merry” facts about the holiday shopping season.
    Security Awareness

    The “not-so-merry” facts about the holiday shopping season.

    By Anthony BarraccaNovember 18, 20153 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Copy Link

    Cyber criminals take advantage of the busy holiday shopping season to target unsuspected shoppers that are often looking for a deal.  Many retailers often offer discounts and savings throughout the season.  For most people, money is usually tight around this time.  This makes it a perfect time for criminals to leverage the fact that many shoppers have their guard down; when looking to save money on popular or hard to find products.

    Below are five tips to help keep you safe and keep the “happy” in holidays.

    1. Black Friday/Cyber Monday Specials

    In the last couple of years, holiday shopping has shifted from standing on long lines waiting to purchase sale items, to the majority of people making online transactions to purchase sale items.   Cyber criminals are aware of this and go to extreme measures creating malicious websites that look identical to legitimate sites.  Emails that offer huge deals or online ads that promise deep discounts should be a red flag for buyers.  As always, never click on links directing you to a website.  Type URL’s directly into your web browser and remember, if something seems to good to be true, it more than likely is.

    2. Complimentary Vouchers or Gift Cards

    A popular holiday scam is big discounts on gift cards. Don’t fall for offers from retailers or social media posts that offer phony vouchers or gift cards paired with special promotions or contests. Some posts or emails even appear to be shared by a friend, but in most cases they themselves have already fallen victim to an account compromise.  Always use common sense when it comes to anything being given away for free.

    3. Bogus Shipping Notices From UPS and FedEx

    Although we see these types of phishing campaigns throughout the year, the increase of online shopping around the holidays makes it a perfect opportunity for fake shipping notifications.  Cyber criminals will often spoof email addresses to make unsuspected shoppers think a message is being sent from UPS, FedEx or DHL.  Many of these are phishing attacks that try to make you click on a link or open an attachment.  Opening a suspicious attachment or clicking on a suspicious link often leads to malware or ransomware being installed on your device.  The best advice is, if something looks suspicious don’t open it.  If you have ordered something or are expecting a shipment, contact the sender directly.

    4. Holiday Refund Scam

    These emails seem to come from retail chains or e-commerce companies such as Amazon or eBay claiming there’s a “wrong transaction” and prompt you to click the refund link. However, when you do that and are asked to fill out a form, the personal information you give out will be sold to cyber criminals who use it against you. Always contact the merchant directly if you are concerned.  To help protect yourself, never use a debit card for online transactions.  If offered, always make purchases using Paypal.  Paypal offers great protection for its customers against fraud and prevents you from having to enter your credit card information on a malicious or hijacked website

    5. Phishing on the Dark Side

    A new phishing email has begun circulating that tricks people into thinking they could win movie tickets for the highly-anticipated film, “Star Wars: The Force Awakens,” due out on Dec. 18. However, the email is a phishing attack. Leading up to the film’s release, and shortly after, you need to watch out for this social engineering attack and not fall for the scam. Stay safe online!

     

    Resource: CyberHeistNews

    Share this:

    • Click to share on X (Opens in new window) X
    • Click to share on Facebook (Opens in new window) Facebook
    • Click to share on LinkedIn (Opens in new window) LinkedIn

    Like this:

    Like Loading...
    Previous ArticleHacking tool swipes encrypted credentials from password manager
    Next Article Employee Documents – Internal Use – Malicious Email With Attachment Sent to the Fordham Community on 11/23/2015

    Related Posts

    5 Active Malware Campaigns in Early 2025: What You Need to Know

    10 Critical Network Pentest Findings IT Teams Overlook

    Report Phishing Instantly with PhishAlarm

    Follow Us on Twitter!
    Follow @FordhamSecureIT
    My Tweets
    Archives
    Categories
    • AI (1)
    • Alerts (384)
    • CISO (19)
    • Cyber Security Awareness Month Tip (150)
    • Data Privacy Week (2)
    • Executive Director (1)
    • Exploits and Vulnerabilities (35)
    • General Information (34)
    • Identity and Access Management (12)
    • Identity Theft (26)
    • Jason Benedict (19)
    • Legitimate Email (14)
    • Malicious Email (24)
    • Mobile (25)
    • Network Security (2)
    • News and Events (143)
    • Newsletter (13)
    • Password (17)
    • Phishing (333)
    • Phishing Email (340)
    • Privacy (10)
    • Ransomware (9)
    • Scam (104)
    • Security Awareness (262)
    • Security Guides (34)
    • Social Engineering (12)
    • SPAM (40)
    • Suspicious (6)
    • Telework (2)
    • Teleworking (3)
    • Trojan (7)
    • Uncategorized (9)
    • Virtual Meeting (4)
    • Virus (28)
    • Viruses (8)
    • World Backup Day (1)
    • Zoom (6)
    Tag Cloud
    Alerts Artificial Intelligence Backups cell phones CISO Cybersecurity Awareness Month Tip Cybersecurity Month Data Privacy Device email Exploits and Vulnerabilities fordham fraud Identity and Access Management Identity Theft Information Security Guides Jason Benedict Legitimate Email malicious email Mobile Multi-Factor Authentication networks Network Security News and Events Newsletter online safety Online Shopping Password Phishing Phishing Email Privacy ransomware scam scams Security Awareness social engineering Social Media spam trojan Virus Viruses Wireless wire transfer scam World Backup Day zoom
    About
    About

    Founded in 1841, Fordham is the Jesuit University of New York, offering exceptional education distinguished by the Jesuit tradition to more than 15,100 students in its four undergraduate colleges and its six graduate and professional schools.

    Copyright © Fordham University
    Facebook X (Twitter) Instagram YouTube LinkedIn
    © 2025 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.

    %d