Archive for Lookout

Lookout Unveils Social Engineering Protection

Posted in Commentary with tags on September 23, 2026 by itnerd

Lookout, Inc. today announced the launch of Lookout Social Engineering Protection (SEP). Integrated directly into the Lookout Mobile AI Security Platform, the new module delivers automated, real-time protection against the next generation of AI-driven mobile threats, including synthetic voice cloning, deepfake vishing, executive impersonation, and linkless smishing attacks.

Frontier AI is transforming social engineering by enabling attackers to create highly convincing deception with unprecedented realism, personalization, and scale. Advanced AI models can craft context-aware messages tailored to individual employees, while advanced voice cloning and deepfake technologies can convincingly impersonate executives, colleagues, and IT support. These capabilities make it increasingly difficult for employees to distinguish legitimate communications from malicious ones. As critical business interactions increasingly move to SMS, voice calls, WhatsApp, and other mobile channels, mobile has become a primary attack surface for AI-powered deception.

Legacy defenses were not designed for this new generation of AI-powered deception. Email security largely protects a single channel and often relies on detecting malicious links, attachments, and known indicators, while Security Awareness Training depends on employees recognizing increasingly sophisticated attacks themselves. Neither approach can keep pace with highly personalized, convincing attacks that span SMS, voice, and messaging applications. This new threat demands a more sophisticated approach—one that can continuously analyze the intent, context, and authenticity of mobile interactions in real time. Lookout Social Engineering Protection delivers that protection across mobile channels.

Omnichannel Defense Against Mobile Deception

Lookout Social Engineering Protection delivers AI-powered, multi-channel defense across text and voice communications:

  • Smishing Protection: Continuously analyzes incoming SMS, MMS, and RCS messages on iOS and Android to detect malicious links, phishing attempts, and suspicious intent in real time.
  • Vishing Protection: Analyzes audio and voicemail to detect AI-generated voice clones and deepfakes, while transcribing conversations to identify suspicious intent and scam patterns.
  • Phone Number Authentication & Centralized Call Blocking: Uses mobile identity signals and phone-number attributes to distinguish legitimate callers from numbers exhibiting suspicious characteristics or behaviors, enabling organizations to apply risk-based controls and centrally block known or suspicious numbers across the mobile workforce.

Addressing the Mobile AI Risk Triangle

With the launch of Social Engineering Protection, Lookout introduces the third core pillar of its Mobile AI Security Platform, delivering continuous protection across three critical areas of mobile risk: AI usage and data exposure, mobile software vulnerabilities, and AI-powered human manipulation.

  • AI Visibility & Governance: Protects enterprise data by providing visibility and control over employee interactions with generative, agentic, and Shadow AI applications.
  • Mobile Software Exposure Center (MSEC): Reduces mobile software risk by continuously identifying vulnerable components, SDKs, and libraries embedded within compiled mobile applications.
  • Social Engineering Protection (SEP): Protects employees from AI-powered deception by detecting and stopping smishing, vishing, voice cloning, and other sophisticated social engineering attacks in real time.

Availability

Lookout Social Engineering Protection is available as a native add-on module for the Lookout Mobile AI Security Platform. Existing customers can activate SEP capabilities directly in their unified admin console, without additional agents or infrastructure.

Lookout Announces Mobile Software Exposure Center (MSEC)

Posted in Commentary with tags on July 22, 2026 by itnerd

Lookout today announced the launch of the Lookout Mobile Software Exposure Center (MSEC). Delivered as a core integrated capability within the Lookout Mobile Endpoint Security (MES) platform, this new solution allows organizations to continuously identify, assess, prioritize, and manage software exposure risk across their mobile environments.

The market availability of frontier AI models, such as Anthropic’s Claude Fable 5 and Mythos 5, marks a critical inflection point for cybersecurity. AI has rewritten the economics of offensive cyber operations by compressing exploit discovery and vulnerability analysis from months of specialized human research into hours at minimal cost. Security experts anticipate an imminent “Zero-Day Flash Flood” where automated, offensive AI tools target unexamined code.

While enterprise security tools exist to handle software vulnerabilities, they are built for traditional desktop and cloud environments. They completely overlook modern mobile applications, which are assembled as a complex patchwork of open-source libraries, embedded SDKs, and third-party APIs. This creates a critical software exposure gap that legacy cybersecurity tools and Mobile Device Management (MDM) platforms cannot inspect, leaving security teams operating in the dark.

Legacy mobile defenses that only scan for basic malicious apps are entirely obsolete when faced with autonomous AI systems capable of constructing zero-day exploit paths inside legitimate software. This reality is illustrated by Lookout Threat Labs’ discovery of DarkSword, a sophisticated full-chain iOS exploitation framework that targets vulnerabilities hidden deep within legitimate apps that employees use ever day. In this high-velocity environment, relying on “free” alternative operating system utilities or generic software that does not see mobile threats is entirely meaningless.

By analyzing Android and iOS application binaries directly, the Lookout Mobile Software Exposure Center operationalizes exposure management at machine speed:

  • Binary SBOM Extraction: Extracts a versioned Software Bill of Materials (SBOM) directly from application binaries using advanced binary fingerprinting, giving full visibility into the software supply chain without requiring access to source code.
  • Continuous Vulnerability Correlation: Maps extracted SBOM components against CVE databases, threat intelligence feeds, and historical exploit activity to identify vulnerable libraries and outdated SDKs.
  • Vectorized SBOM Explorer: Transforms static inventories into a searchable format, allowing security teams to query the fleet instantly to identify exactly which apps contain specific vulnerable components.
  • Abandonware & Hygiene Scoring: Automatically flags applications and SDKs no longer actively maintained and calculates an Application Security Hygiene Score driven by the publisher’s Mean Time to Patch (MTTP).
  • Active Enforcement Workflows: Integrates directly into existing MDM and Unified Endpoint Management (UEM) workflows to automatically enforce risk policies or restrict high-risk applications at machine speed.

Lookout is uniquely positioned to address this crisis because the company is mobile-native and has been the first place enterprises turn to solve the mobile security problem for more than 15 years. This new platform capability is powered by an AI-driven mobile threat defense framework built on more than a decade of specialized expertise, protecting over 235 million devices and analyzing over 400 million applications globally. No other vendor sees more of the global mobile ecosystem or possesses the specialized telemetry required to solve this problem.

For existing Lookout customers, these capabilities will be delivered natively within the Lookout MES platform. Current deployments will gain immediate access to automated binary analysis, exposure scoring, and active enforcement workflows using the same unified console and agent footprint already deployed across their enterprise fleets.

This launch directly complements Lookout’s AI Visibility and Governance solution announced in April of this year. While AI Visibility and Governance is focused on securing outward-facing interactions and mitigating user data leakage, the Mobile Software Exposure Center focuses on securing the inbound software supply chain running on the device.

Together, these solutions deliver a complete, closed-loop framework for modern mobile enterprise security, empowering organizations to safely adopt AI tools while ensuring the underlying mobile ecosystem is fundamentally secure against automated, AI-accelerated threats.

Availability

The Lookout Mobile Software Exposure Center capability will be generally available to all new and existing Lookout Mobile Endpoint Security (MES) platform customers starting later this year.

Lookout Study Reveals 93% of CISOs Blinded by False AI Confidence as 59% of Mobile AI Traffic Flows “Dark”

Posted in Commentary with tags on June 9, 2026 by itnerd

Lookout today released the findings of an exclusive survey report conducted with ZK Research, titled “Solving for the Mobile AI Blind Spot: Executive Confidence Meets Technical Reality.” The independent study exposes a systemic architectural failure. An overwhelming 93% of security executives voice absolute confidence in their AI governance, yet traditional network perimeters are completely blind to a massive mobile shadow AI ecosystem.

The evolution of the mobile AI threat landscape

The rapid enterprise shift from desktop browsers to mobile applications has fundamentally broken traditional data security perimeters. When organizations block or throttle generative AI tools on corporate laptops, employee behavior shifts, rather than stops. To maintain productivity, employees rely on the ultimate shadow AI bypass route. Their personal devices. Today, 52% of all generative AI usage occurs on mobile endpoints, with global knowledge workers routinely uploading sensitive source code, corporate records, and intellectual property.

The technical reality: High spend, zero visibility

Driven by legacy, desktop-era security thinking, organizations are throwing an average of 19% of their 2026 security budgets at AI compliance. Despite this heavy spend, traditional security frameworks are experiencing a systemic structural failure when confronted with mobile-native generative and agentic AI:

  • The Dark Traffic Route: 59% of mobile AI traffic is hidden from traditional network-discovery tools, routing directly between local apps and external clouds without ever crossing a corporate gateway.
  • The Agentic Blind Spot: 68% of enterprises have zero technical visibility into autonomous AI agent workflows that inherit user identity and single sign-on (SSO) tokens to manipulate corporate records out of sight.
  • The Hidden SDK Supply Chain: 72% of organizations are structurally incapable of auditing embedded AI Software Development Kits (SDKs) hidden inside benign-looking everyday mobile applications.

This total absence of mobile-native visibility has immediate operational and board-level consequences. The report confirms that 63% of organizations have actively investigated severe data leaks within the past 12 months where generative AI tools were a definitive contributing factor. Furthermore, 78% of security leaders admit they cannot generate the audit-ready evidence required by emerging frameworks like the EU AI Act, exposing organizations to devastating, tiered global statutory fines that reach up to €35 million or 7% of an enterprise’s total global annual turnover.

Lookout AI Visibility & Governance

To bridge the gap between false security confidence and technical reality, enterprises must abandon perimeter-tied discovery models and deploy a dedicated, mobile-native architecture.

The survey’s findings directly reinforce the critical importance of Lookout’s recent launch of Lookout AI Visibility & Governance. Purpose-built to eliminate the heavy operational friction and “virtualization tax” of legacy architectures, Lookout treats the physical endpoint as the primary control point for AI risk. Operating natively and non-disruptively inside the device environment, Lookout addresses the exact blind spots revealed in the ZK Research data through three primary pillars:

  1. Comprehensive AI Application Discovery: Instantly unmasks every AI-enabled
    system, background process, and embedded SDK touching corporate data fabrics to
    neutralize the 72% supply chain visibility gap.
  2. Agentic Behavior Mapping: Tracks autonomous agent actions and single sign-on permission extensions in real-time to proactively block unsanctioned workflowsbefore data exfiltration occurs.
  3. Inline Mobile Edge Data Guardrails: Enforces real-time, content-aware data loss prevention (DLP) directly on the physical device, stopping sensitive corporate properties and PII from reaching unsanctioned AI models before it can ever leave the device perimeter.

Join the virtual panel discussion on June 11th

To help organizations navigate these findings and bridge the mobile AI visibility gap, Lookout will host an exclusive virtual panel on Thursday, June 11, 2026.

Moderated by Zeus Kerravala, Principal Analyst at ZK Research, the panel will feature top cybersecurity executives dissecting shadow permissions, embedded SDK exposure, and practical strategies for enforcing edge-based data guardrails.

● What: Solving for the Mobile AI Blind Spot (Virtual Panel)
● When: Thursday, June 11, 2026 at 8:00 am PT
● Moderator: Zeus Kerravala, ZK Research
● Registration: To secure your virtual seat, register now

Lookout Introduces Mobile AI Visibility and Governance to Expose Shadow AI Risk

Posted in Commentary with tags on April 29, 2026 by itnerd

Lookout today with the launch of Lookout AI Visibility & Governance, a mobile-native solution designed to provide organizations with the visibility needed to discover, govern, and secure AI adoption across their mobile ecosystem.

By extending AI agent discovery and policy control into the mobile environment, Lookout provides a missing layer of visibility, enabling organizations to identify “Shadow AI” activity on mobile devices, detect unauthorized agent behavior, and enforce policy where traditional controls have no reach.

The new offering delivers a real-time view of an organization’s AI footprint by identifying both sanctioned and unsanctioned AI use on mobile devices, exposing activity that traditional endpoint and cloud-centric discovery tools cannot detect. It provides actionable, evidence-based visibility to enforce policy, reduce risk, and maintain control over AI usage across the mobile domain. As a strategic extension of Lookout’s mobile security platform, it goes beyond device protection to directly govern AI activity, preventing unintended data exposure from both autonomous agents and “Shadow AI,” and securing the interactions users rely on every day.

Bridging the Mobile AI Governance Gap

A recent survey of CISOs and senior security leaders commissioned by Lookout highlights the magnitude of the challenge. Key findings from the survey include:

● Visibility gaps: Nearly 60% of surveyed organizations cannot monitor AI activity on mobile devices, leaving the majority of mobile AI activity operating in the shadows

● Agentic blind spots: 68% of surveyed organizations lack visibility into the workflows and permissions of autonomous AI agents on users’ devices.

● Hidden risks: 72% of surveyed organizations cannot identify AI Software Development Kits (SDKs) embedded in the apps their employees use.

Lookout AI Visibility & Governance acts as a strategic force multiplier across Lookout’s mobile security platform, extending protection from the device to the AI activity occurring on it. It strengthens a layered defense that secures not only devices and users but also the AI-driven interactions that operate on their behalf.

Key features and benefits include:

● Comprehensive AI App Discovery & Shadow AI Visibility: Obtain real-time inventory of all AI apps—sanctioned and unsanctioned—across corporate and BYOD devices, exposing hidden “Shadow AI” and turning mobile risks into governed assets.

● Agentic Behavior Monitoring: Continuously analyze AI-driven behavior and map permissions to ensure autonomous agents do not execute unauthorized workflows or access sensitive enterprise data.

● Intelligent Data Guardrails & Policy Enforcement: Prevent sensitive data from reaching unsanctioned AI services with real-time controls that stop unauthorized access and exfiltration.

● Automated Compliance Alignment: Generate audit-ready evidence aligned to the European Union’s Artificial Intelligence Act (EU AI Act), the U.S. National Institute of Standards and Technology’s AI Risk Management Framework (NIST AI RMF), and the international standard ISO/IEC 42001, delivering the traceability required for effective AI risk management and regulatory compliance.

To learn more about how Lookout AI Visibility & Governance is transforming mobile security:

Lookout Survey Reveals Critical Gaps in Security Leaders’ Confidence and the Actual Vulnerability of Their Organizations

Posted in Commentary with tags on July 10, 2025 by itnerd

A new global survey by Lookout, Inc. today unveiled concerning insights into the state of mobile cybersecurity preparedness, revealing a significant gap between security leaders’ confidence and the actual vulnerability of their organizations. The survey of more than 700 security leaders globally exposes a pervasive overconfidence in employees’ ability to detect modern mobile-centric threats, leaving businesses significantly more exposed than they realize.

The survey’s most critical insights include:

  • 58% of companies have experienced incidents due to executive impersonation scams via text or voice, highlighting the severe impact of sophisticated social engineering tactics.
  • 77% of respondents have experienced one or more mobile phishing attacks in the past six months, underscoring the ubiquity of these threats.
  • 51% admit to having inconsistent visibility of social engineering attempts, creating massive security blind spots.

Despite these alarming statistics, the survey revealed pervasive overconfidence: 96% of leaders are confident their employees can spot a phishing attempt that comes via their mobile devices. Yet, over half reported incidents where employees fell victim to executive impersonation scams, leading to financial loss or sensitive data exposure. Furthermore, even with widespread security training efforts, “lack of training” remains the top reason cited for employees clicking suspicious links, suggesting current education may not be keeping pace with the rapidly evolving modern threat landscape.

These findings highlight core issues:

  • A dangerous overconfidence gap: Organizations feel ready for threats but are demonstrably underprepared, leading to successful attacks.
  • Inadequate visibility: Traditional security solutions often lack visibility into mobile-centric social engineering attempts, meaning many manipulative efforts go unnoticed until it’s too late.
  • Outdated training: Security awareness training isn’t evolving fast enough to truly prepare employees for today’s sophisticated, mobile-focused threats.

To address these pressing challenges, Lookout emphasizes a multi-faceted approach to secure the “front line” – employees and their mobile devices. This includes:

  • Implementing an AI-first social engineering and human risk solution: This provides baseline protection against today’s Modern Kill Chain.
  • Integrating Mobile Endpoint Detection and Response (EDR): Gaining strategic mobile security data points, such as vulnerable assets and web traffic analysis, by integrating EDR into existing SIEM, SOAR, EDR, or XDR solutions.
  • Sophisticated and ongoing security awareness training: Training specifically designed for mobile-centric threats, including simulated phishing and social engineering exercises that reflect current malicious tactics, fostering a culture of vigilance and easy, judgment-free reporting.

The report can be found here: https://mms.businesswire.com/media/20250710838048/en/2520234/1/lookout-2025-simplydirect-survey-report-us.pdf?download=1.

About the Survey

The data presented in this report is sourced from the independent research company Censuswide, which conducted the survey in June 2025. More than 700 security leaders globally were polled across various industries. Censuswide is a member of the British Polling Council and abides by and employs members of the Market Research Society and follows the MRS code of conduct and ESOMAR principles.

Research From Lookout Warns Of ‘Significant Phishing Risk’ During The Holidays 

Posted in Commentary with tags on November 23, 2023 by itnerd

In the holiday spirit, Lookout Inc. is warning employees and businesses that phishing attacks across organizations and personal devices are expected to more than double this week, based on historical data. 

This week as the holiday shopping season kicks off, many employees will be working (and shopping) on their mobile devices, and, as this is part of a more modern business model, the mobile devices these employees use are traditionally neglected by corporate cyber security strategies. This creates a perfect environment for hackers to carry out socially engineered phishing attacks leading to credential theft and direct access to sensitive corporate data. 

Lookout surveyed 1,515 employees yielding the following notable data points: 

  • 63% admit that they are more distracted during Thanksgiving week  
  • 89% will capitalize on Black Friday and Cyber Monday sales  
  • 57% admit they are more likely to click on unfamiliar links in search of good deals 
  • 66% will shop on personal mobile phones  
  • 47% reported their employer provides no mobile security platform 

“As employees are distracted by shopping on their mobile device, CISOs face a significant phishing risk. But rather than just focusing on the particular methods attackers may use this Thanksgiving, businesses should take a data-centric approach and monitor for changes in user behavior and anomalous data transfers,” said David Richardson, Vice President of Endpoint and Threat Intelligence, Lookout.

George McGregor, VP, Approov Mobile Security had this to say:

   “Half the employees surveyed report that their employers provide no mobile security for their devices! 

   “Two types of security leaders should read this report with trepidation: Enterprise leaders must ensure the enterprise apps their employees use are protected, and e-commerce app owners must put in place effective mobile security to protect their apps.”

Emily Phelps, Director, Cyware follows with this:

   “Phishing emails are like those ugly holiday sweaters: unwanted and sometimes hard to identify. They might promise you a free PlayStation 5 or a lifetime supply of gingerbread cookies, but don’t take the bait and never click on mysterious links or attachments! Always check the legitimacy of websites. A missing padlock icon in the address bar is an indicator to dash away, dash away, dash away all!”

Phishing attacks are dangerous to begin with. But at this time of year, they are insanely dangerous. That means everyone needs to be more focused on spotting these sorts of attacks so that they don’t become a victim.

Guest Post: It’s World Cloud Security Day – And Lookout Says That Remote Work Could Be Risky for Your Organization

Posted in Commentary with tags on April 3, 2023 by itnerd

Today, April 3rd, is World Cloud Security Day which raises awareness of the emerging threats individuals and organizations face when team members use their personal cell phones and computers to access corporate data remotely. These threats include malware, denial of service, and password attacks.

According to Lookout’s The State of Remote Work Security 2023 survey – a study of 3,000 remote and hybrid workers from enterprise companies in the United States, United Kingdom, France, and Germany — data results presented below highlight the behaviors of remote workers that put an organization at risk.

  • 81% of CIOs report their company had experienced a Wi-Fi-related security incident in the last year, with 62% of Wi-Fi-related security incidents occurring in cafes and coffee shops.
  • 43% of remote workers have downloaded, saved, or sent work-related materials to a personal account for convenience; and
  • 57% of remote workers have sent an email from their work account to a personal one for convenience.
  • 56% say they often do work and personal tasks on the same device.
  • Fully remote workers (72%) are more likely to do personal tasks during work hours than hybrid workers (54%); and
  • 32% of remote workers use apps or software for convenience reasons, which are not approved by their IT department. 

Please download the the full report here to find out: 

  • What are the implications for IT security in the wake of the transition to remote work? 
  • What sort of employee practices increase the risk of sensitive data falling into an insecure environment?
  • How does an organization best protect its data when employees spend 20+ hours per week on their personal mobile devices. 

Guest Post: Fraud Awareness Week: Tips for Staying Safe During the Cyber Holidays

Posted in Commentary with tags on November 15, 2022 by itnerd

By Hank Schless, Senior Manager of Security Solutions at Lookout

This week is Fraud Awareness Week and the conversation is all about knowing how to best protect ourselves in a constantly evolving and quite scary cyberworld. According to the Better Business Bureau’s naughty list of the top 12 holiday shopping scams this Christmas season, the two most prevalent scams are misleading social media ads and social media gift exchange scams. 

The Internet Crime Complaint Center’s (IC3) 2021 reported that non-payment or non-delivery scams cost people more than $337 million. Credit card fraud accounted for another $173 million in losses. Lookout, the leader in delivering integrated Security, Privacy, and Identity Theft Protection solutions, is here in time with the perfect gift for keeping your wallet and data safe this season.  

Tips To Stay Safe This Holiday Season

Exercise Savvy Shopping

  • If you’re purchasing from a company for the first time, do your research and check reviews.
  • Verify the legitimacy of a buyer or seller before moving forward with a purchase. If you’re using an online marketplace check their feedback rating. Be wary of buyers and sellers with mostly unfavorable feedback ratings or no ratings at all.

Watch for “Red Flags” When Paying Online

  • Avoid paying for items with prepaid gift cards. In these scams, a seller will ask you to send them a gift card number and PIN. Instead of using that gift card for your payment, the scammer will steal the funds, and you’ll never receive your item. 
  • Use a credit card when shopping online and check your statement regularly. If you see a suspicious transaction, contact your credit card company to dispute the charge.

Avoid Shipping Pitfalls 

  • Always get tracking numbers for items you buy online, so you can make sure they have been shipped and can follow the delivery process.
  • Avoid buyers who request their purchase be shipped using a certain method to avoid customs or taxes inside another country.

Enable Security Protection To Block Shopping Scams & Threats

  • Run security protection on your mobile devices – like Lookout’s security application – which is an app you can download from Google Play or the App Store. Security protection will automatically monitor and identify scam URLs in email, text messages, and on the web and block you from threats that can do harm.
  • Gift Card Scams:
    • CVS, Walmart & Home Depot 
    • The FTC reports that around $10 million a month has been lost globally to these scams. 
    • About one in four people who tell the FTC they lost money to fraud say they paid with a gift card.(1) In fact, gift cards have topped the list of reported fraud payment methods every year since 2018. During that time, people reported losing a total of nearly $245 million, with a median individual loss of $840.(2)
    • https://www.kiplinger.com/personal-finance/603028/beware-of-gift-card-scams 

All consumers can scan their email for FREE on Lookout’s website to learn about breaches that may have occurred & take action to secure their data.

Guest Post: Protect Your Elderly Loved Ones During Cyber Security Month

Posted in Commentary with tags on September 28, 2022 by itnerd

By Hank Schless, Senior Manager of Security Solutions at Lookout

With digital scams on the rise, it’s growing increasingly difficult to discern if an email, text message, phone call or website is legitimate or not. More people are reporting losing time and money due to online scams, and in particular, elderly individuals report falling victim. In 2021, over 92,000 victims over the age of 60 reported losses of $1.7 billion to the FBI’s Internet Crime Complaint Center (IC3). This is a whopping 74 percent increase over losses reported in 2020. The number one area of attacks were in tech support fraud, including identity theft and personal data breaches. 

Luckily, by taking a few key steps, people of all ages can reduce the risk of scams, and online fraud. In honor of Cyber Security Month, Lookout has provided the below tips that family members can take to best protect parents and elderly family members from digital risks.  

  • Check the “sent from” email address: Real companies will send from their own domain. One easy way to check for authenticity is to make sure a company email isn’t coming from an address ending in “@gmail.com” or  “@yahoo.com”.
  • Go directly to the source: If you receive an email requiring action from you, usually involving private information like social security, birthday, bank information, or more, immediately call the company this message is reportedly from. 
  • Beware of urgency: Be wary of urgent demand or emails that require immediate action and divulgence of personal information. “Emergencies” can sometimes cause people to act without fully understanding the request or the implications of them, which make them a common tool for cybercriminals.
  • Watch for obvious misspellings and grammatical errors: Professional newsletters, notifications, and other email messages go through several rounds of approvals before distribution, so emails that include spelling errors and odd punctuation can be a sign of a scam.
  • Set Stronger Passwords 
  • Use  Two-Factor Authentication: This makes it harder for hackers to access your account, and will alert you to any potential hacking attempts.  
  • Password Changes
    Regularly change the password to your most important accounts. This will help prevent hackers from getting access. Make sure you use a combination of letters and numbers for the best protection. If your information has been compromised in a data breach, act immediately.
  • Install Security Software On Your Devices
    Security protection, like Lookout, will automatically monitor and identify scam URLs in email, text messages, and on the web and block you from threats that can do harm.

Guest Post: Summer of The Scam: Key Online Scams On The Rise

Posted in Commentary with tags on September 6, 2022 by itnerd

By Hank Schless, Senior Manager of Security Solutions at Lookout. 

Online scammers create new and deceptive schemes every day in hopes of swindling unsuspecting victims out of their time, money and resources. Consumers reported $5.8 billion in fraud to the Federal Trade Commission last year, a 70 percent increase from 2020. Here are some of the trending scams:

  • Romance Meets Cryptocurrency: In 2021, online daters lost a record $547 million to romance scams, according to a report from the Federal Trade Commission. Scammers are now using online dating platforms to trick victims into investing in cryptocurrency accounts before disappearing with their money. It’s a months-long trust building scam known as “pig butchering.”
  • SIM Swapping: This is an attack where scammers fake your identity with a mobile carrier to gain access to your phone. From there, they use “Forgot Password” for critical online accounts – think banking, investments and social media – to intercept two-factor authentication text messages. In 2021, this scam resulted in losses over $68 million and is still a very popular and effective scam today. 
  • Back To School Scams: In August, many parents post “first day of school” photos on social media with their child holding a chalkboard or sign with details about the child’s teacher, school, birth date, height, interests, favorite colors, etc. While it’s wonderful to share updates with friends and family, the Better Business Bureau issued a warning to families about oversharing personal information on social media due to privacy concerns and online scammers. The Federal Trade Commission also issued a warning about back-to-school shoppers being targeted by online scams. 
  • Rental Scams: This scam is not necessarily “new” and traditionally targets consumers trying to rent a home, but with the red hot rental market and usage of social media websites to advertise rental properties, this scam has regained steam. According to the FBI, 11,578 people nationwide reported losing over $350 million through rental and real estate scams in 2021 with a major uptick of victims this summer. There’s even a spinoff of this scam for vacation rentals.