Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Security Education Videos Scams & Phishing Your Security Mobile Security Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
Fake Refund APP Scams Steal Banking Info, Cash
Facebook   X   LinkedIn   Email

Fake Refund APP Scams Steal Banking Info, Cash

April 15, 2025

Who wouldn’t love a message from their bank about a hefty refund coming their way? Most of us would, and that’s why this latest refund scam is, well, breaking the bank. It’s called “authorized push payment” (APP) fraud, and trusting consumers are handing their most sensitive banking information to fraudsters. Here’s what to watch for with these latest scams.

A recent example of an APP scam, customers of NatWest bank received a message saying a big refund was due to them. An included link brought users to a credible looking, but copycat website stealing their username and password, physical address, customer or payment card number, mobile number, and other account details. Instead of the promised refund, the only gift is giving scammers enough PII for financial and identity theft.

APP Scam Promises

APP scams make big promises but they’re really another form of phishing. With stolen PII in hand, fraudsters make legitimate or “Authorized” withdrawals from the bank. The “Push” part comes from bogus push notifications from a user’s banking app—even if the app isn’t being used. The “Payment” part of this fraud happens when the scammer authorizes the payment to themself. At that point, all but the scammer has been duped by APP fraud.

Although the NatWest APP scam happened in the UK, they’re not the only bank being targeted. And when a particular scam has success elsewhere in the world, there’s no reason it won’t spread to the U.S. next.

We all have the option of turning off an app’s push notifications. But one of the smartest answers to an unexpected message is not responding, including not following links or opening attachments. Next up, directly contacting the business yourself and not using what the message provides. That’s when you’ll find if the push notification is for real, including the promised refund. One way or the other, you’ll be glad you played it safe with APP fraud.


Keeping Your Mobile Device Apps Virus Free

Mobile Security

Keeping Your Mobile Device Apps Virus Free

It’s no secret that cybercriminals take advantage of anxiety-filled times and the current coronavirus pandemic (COVID-19) is most certainly one of those moments. The latest cybersecurity news reports that Android smartphones are being targeted with apps claiming to have up-to-date data on COVID-19. These infected apps promise the latest updates, but to unsuspecting users who download them, they also promise malware will surely be installed on your mobile device. READ FULL STORY

Cash to Play Mobile Games; Are They Scams?

Your Security

Cash to Play Mobile Games; Are They Scams?

In the ever-expanding world of mobile gaming, there's a growing trend of games that promise to pay you real money while you play. Titles like Solitaire Cash and Bingo Cash have gained popularity for their enticing proposition — earning money while having fun on your mobile device. And some of us play various games to while away the time when we’re waiting in lines or when our brains need a break. But how do these games that promise to pay work? Do they really deliver on their promises or are they just scams? READ FULL STORY

'Tis The Season Of Fake Shopping Sites

Scams & Phishing

'Tis The Season Of Fake Shopping Sites

As we’re all getting back into the holiday spirit after a somewhat glum 2020 season, it’s important to remember that the holiday shopping season doesn’t end on December 25. In fact, some retailers put their marketing effort into overdrive. There are after holidays sales, new year’s sales, and even “getting rid of all this stuff we didn’t sell at Christmas” sales advertised under some creative title. Retailers try to take advantage of the shopping spirit as far into the new year as they can and those who like to capitalize on this are also upping their game. READ FULL STORY

Crypto Wallets Hacked Through Windows Vulnerability

Mobile Security

Crypto Wallets Hacked Through Windows Vulnerability

The security of crypto wallets has been a question mark for some time. And now, there's a Windows vulnerability leaving users infected with a previously unknown infostealer that's draining crypto wallets. It's called Phemedrone Stealer and malicious campaigns are exploiting this Windows vulnerability to steal crypto wallet contents and other sensitive information from victims. The attackers use malicious .url files to download and exploit the vulnerability that bypasses checks and warnings from Microsoft Defender. READ FULL STORY

Online Scams The New Top Cybercrime With 73% Of All Attacks

Scams & Phishing

Online Scams The New Top Cybercrime With 73% Of All Attacks

Move over former top cybercrimes, there’s a new winner according to Group-IB experts who specialize in high-tech cybercrimes. Group-IB recently announced that online scams are now the number one type of cybercrime in the world today, with some referring to this as a “scamdemic.” Researchers found that in total, fraud now makes up 73% of all online attacks. There’s a definite need for users to be aware of these scams, how they can work and how prevalent they are. READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...