Wearable Sensors

How to avoid email and message scams

By Rin Susanti
·
Share:
How to avoid email and message scams - email message scams
Three people in the author’s circle fell for scams in recent weeks, highlighting rising fraud risks during peak seasons.

The holiday season is a prime time for scammers. Over the past few weeks, three people in my immediate circle fell for separate scams, and I’ve received similar emails myself. With fraudsters becoming bolder, it’s worth knowing how to spot a fake message before it’s too late.

Start with the message itself

Most scam emails ask for sensitive information—login details, bank accounts—under false pretenses. These messages often mimic real communications so closely that side-by-side comparisons might not reveal the deception. The key is to trust your instincts if something feels off.

Legitimate companies won’t ask you to submit personal details via email or text. Whether the message claims fraudulent activity or an expiring reward, if it’s not your usual way of logging in, it’s likely a scam. Links are another red flag. If they’re shortened (like bit.ly) or don’t match the company’s real website, avoid clicking. Even if you do, check the URL for inconsistencies—like a slight misspelling or extra characters. For example, a fake login page might use a domain like “secure-paypal-login.com” instead of “paypal.com,” which is a common tactic to trick users into entering credentials on a fraudulent site.

Read Also: LG AI Home Vision Debuts at IFA 2026

Some scams are sloppy. Typos, missing words, or odd spacing can be dead giveaways. While scammers can easily clean up their text, they can’t always disguise the sender’s identity. Even minor inconsistencies, such as incorrect capitalization in a company name or an unusual greeting, can signal a scam. For instance, a message from “Amazon Support” that begins with “Dear Customer” instead of your actual name may be a red flag.

Check the sender’s details

Even with polished text, the sender’s email address often exposes the scam. In three recent cases I’ve seen, the sender’s name looked legitimate, but the actual email address was clearly fake. On a desktop, the full email appears beside the name when you open the message. On mobile, tap the sender’s name to reveal it.

For example, an email claiming to be from “Maya” might show as “[email protected]” instead of an official domain. If the address doesn’t match what you’d expect, it’s a scam. Scammers often use free email services like Gmail or Outlook with random usernames to mimic legitimacy, but these addresses rarely align with a company’s actual domain structure. Always verify the domain extension, official company emails typically use their own branded domains (e.g., “[email protected]” rather than “@gmail.com”).

Scammers can spoof senders, and panic is their weapon

Some fraudsters go further by spoofing official senders, making messages appear to come from banks, retailers, or services you trust. A recent example was an alert from a bank claiming a large withdrawal had been attempted. The message looked real, no typos, no odd formatting, but the link led to a fake login page.

Read Also: POVA 8 Pro gets sleek new design

The scammer’s goal is to trigger a panic response. If you click the link out of fear, you’re handing over control. The solution? Verify independently. Log in to your bank app, check your transaction history, or call the company directly. If the alert is real, it should still appear when you check officially. Many banks and services now offer dedicated fraud hotlines where you can confirm suspicious activity without relying on the message’s claims. Always use the official contact number from the company’s verified website or app, not the one provided in the email.

This tactic isn’t limited to banks. A scam email claiming a Spotify subscription failed to renew can be checked by opening the app, if nothing’s wrong, the message is fake. Scammers rely on urgency; don’t let them. For subscription services, most platforms also send confirmation emails or notifications through their own systems, so cross-referencing with your account dashboard is a reliable way to verify.

Even friends can’t always be trusted

Hacked accounts are another common scam vector. If someone you know suddenly sends an unusual message, like a link to a game or an unexpected request, it might not be them. Hackers often use compromised accounts to spread malware.

In one case, a Discord contact messaged me about a fake game. The goal was to trick me into clicking a link that would install malware, giving the hacker access to my device and all linked accounts.

Read Also: Acer Launches Predator ES Thunder Pro E-Scooter

If you’ve been scammed, act fast

If you’ve fallen for a scam, the first step is to secure the affected platform. Change passwords immediately and enable two-factor authentication. For bank accounts, call the institution to report the issue, you may need to freeze your card temporarily, but it’s better than losing funds.

If you suspect malware on your device, disconnect from the internet right away. A hacker without connectivity is powerless. Then, using a different device, reset passwords for all linked accounts. If possible, manually revoke access from the infected device. Finally, perform a clean reinstall of your operating system to remove any lingering malware.

Scammers adapt quickly, but so can you. The next time you get an unexpected message, pause and check the details. A few seconds of caution can save hours of cleanup, or worse.

Leave a Reply

Your email address will not be published. Required fields are marked *