Sliding Into Your DMs… with Scams: How to Spot and Dodge Digital Catfishers

In today’s digital age, social media has become a double-edged sword. It’s a great way to stay connected and entertained, but it’s also a prime target for sneaky cybercriminals. They’re especially sneaky when they use direct messages (DMs) to trick you into giving them your personal info or even your login details. Let’s learn how these scams work and how to protect yourself.

Phishing is a type of cyber attack where criminals use deceptive tactics to trick individuals into providing sensitive information, such as login credentials, credit card numbers, or personal details. These attacks often involve fake emails, messages, or websites that appear to be from legitimate sources like banks, social media platforms, or trusted companies.

How DM Phishing Scams Work in 4 Steps

  1. The Sneaky Scammers: Phishing scammers are like digital hunters. They spend hours studying your social media profile to perfect their con. They look at your name, friends, interests, and even your job to make their messages sound more real.

  2. The Hook: The scam starts with a message that has been designed to excite or scare you. It could be something like, “Is this you in this video? (Often includes a link)” or “Congratulations! You’ve won a prize. Click here to claim it.” or “We’ve detected suspicious activity on your account. Verify your identity now.” These messages are designed to make you curious, scared, or excited so you’ll act without thinking. By nature, we react more impulsively and think less critically when afraid or excited by overly good news.

  3. The Trap: The Fake Link or Attachment: The message often has a link to a phishing website. These websites are basically fake versions of your favorite social media platforms, bank, or your email provider. By tricking you into clicking on the link, the attacker can steal your username and password, which they can use to take over your account. In some cases, clicking the link can even download malicious software onto your device, so the attacker can steal your personal info.

  4. The Bad Guy’s Game: Once the attacker has your credentials, they can do some pretty sneaky things. They might take over your account and send phishing messages to your friends to continue the ruse. They could also access your private chats or your stored payment details. Or, they could even use your account to scam your followers. The ultimate objective is to collect as much information as possible to sell on the internet to other scammers or to gain direct access to things like your bank account where they can steal something more tangible, your money.

Stay Safe from DM Phishing Scams! By Spotting These Red Flags

Phishing scams through direct messages are on the rise, and becoming ever more convincing through the use of new AI (Artificial Intelligence) services. So let’s learn how to spot them and stay safe.

  • Messages that seem too good to be true or urgent. If something sounds too great to be true, it probably is. And if a message is super urgent, it might be a scammer trying to trick you into acting quickly without thinking. A good rule of thumb when seeing a message that causes you concern is to take a breath and count to 10 before doing anything. If the message claims to be from a person or organization of authority like your bank or law enforcement, you can be sure that this is likely a scam, as social media and email are not typically how these entities reach out.
  • Unsolicited messages, even from people you know. Scammers can hack into your account and pretend to be someone you trust. So, be careful of messages that come out of the blue. Even if the message claims to be from a familiar source like your credit card company or a close friend, do not respond to the message directly but reach out to that person or organization by a means you trust, like a phone number you already have or the bank’s customer service phone number on the back of your bank card.
  • Poor grammar, unusual phrasing, or generic greetings like “Hello friend.” Scammers often use these tactics to make their messages seem more trustworthy. But if you read more carefully, the language often doesn’t seem quite right. Misspelled words or terminology that just doesn’t fit are often signs the message has been created as a part of a scam.
  • Links that don’t look right. Hover over links to see the full URL before clicking. If the link looks suspicious or doesn’t match the sender’s name, don’t click it. In fact, my personal recommendation is that you never click on any link you did not ask for from a verified source. Even links that look legitimate can be substituted with fake links or shortened links designed to hide their true destination. Always be wary of links in messages or emails you did not request or expect.

Here are some extra tips to keep you safe:

  • Use Multi-Factor Authentication (MFA). MFA adds an extra layer of security to your account. It requires a verification code in addition to your password, making it harder for scammers to get in even if they have your password.
  • Update your privacy settings. Limit who can send you direct messages. Avoid sharing sensitive personal details publicly that scammers can use to target you.
  • Educate yourself and others about phishing scams. Share this knowledge with friends and family to create a safer online environment.

Remember, your caution is the best defense against cybercriminals. So, always think twice before clicking links or sharing information online. Stay safe and keep your digital world secure!

Previous
Previous

Why Ohio Valley Cyber is a Game-Changer for Small Business.

Next
Next

Protecting Children Online: 5 Essential Tips for Internet Safety