Episode 65 Educational

Job Scams Are Getting Worse | Four of the Most Dangerous

December 8, 2025 | 31:58

YouTube Spotify Apple Amazon
Job Scams Are Getting Worse | Four of the Most Dangerous

Job scams are getting scary good. We’re talking AI deepfakes, fake recruiters, and cryptocurrency traps that are fooling even tech-savvy professionals. In this Security Cocktail Hour holiday special, Joe and Adam break down four of the most dangerous job scams hitting people right now—because nothing says “Happy Holidays” quite like protecting yourself from scammers, right?

If you’re job hunting (or know someone who is), grab a drink and settle in. We’re covering everything from deepfake video interviews to the bizarre world of “lucky order” scams that’ll drain your crypto wallet faster than you can say “I got the job!”

The Four Dangerous Job Scams

1. AI-Enhanced Interview Fraud

Scammers are using AI deepfakes and voice cloning in real-time video interviews to impersonate legitimate recruiters. They create fake job postings, conduct interviews that seem completely real, then use the opportunity to steal your personal information or install malware on your computer through “competency tests” or “development environment” downloads.

Red flags:

  • Requests for excessive personal information before an interview
  • Unusual video quality or glitchiness (blamed on “bad connection”)
  • Requests to download and run unknown software
  • Requests for money for equipment, background checks, or training
  • Too-good-to-be-true offers for easy work and high pay

2. Reshipping / Package Processing Scams

Scammers offer “easy money” jobs where you receive packages at home, inspect them, and reship them elsewhere (often internationally). These packages typically contain stolen goods, and you become an unwitting accomplice to fraud and money laundering.

Red flags:

  • Jobs that sound too easy for the pay offered
  • Requests to receive and forward packages
  • International shipping requirements
  • Requests to pay shipping costs upfront (promised reimbursement)
  • Vague job descriptions about “quality control” or “logistics”

3. Mystery Shopper / Secret Shopper Scams

Fraudsters impersonate legitimate mystery shopping companies, sending you fake checks to “evaluate” retail experiences. They ask you to deposit the check, buy gift cards or products, then report back. The check bounces, but you’ve already sent the scammers real money or gift card codes.

Red flags:

  • Unsolicited job offers for mystery shopping
  • Checks sent before you’ve done any work
  • Requests to buy gift cards and send photos of the codes
  • Pressure to act quickly
  • Payment amounts that seem too generous

4. Gamified Job Scams (“Lucky Order” Scams)

A newer scam targeting people looking for easy side income. Scammers offer simple tasks (rating content, liking posts) with payment in cryptocurrency. They gamify the experience with “levels” and rewards, then introduce “lucky orders” or “merge tests” that drain your crypto wallet, demanding you deposit more funds to “unlock” your earnings.

Red flags:

  • Payment exclusively in cryptocurrency
  • Game-like progression system with levels
  • Simple, mindless tasks for surprisingly good pay
  • Sudden account deductions requiring you to “top up” to continue
  • Pressure to invest more to access accumulated earnings

How to Protect Yourself

  1. Research thoroughly: Verify companies exist, check domain ages, look for incorporation records and business licenses
  2. Never pay to work: Legitimate employers don’t charge application fees, equipment deposits, or training costs
  3. Verify identities: Call known company numbers directly (not numbers provided in suspicious messages)
  4. Be wary of remote software: Only download software from official sources; avoid custom “testing environments”
  5. Trust your instincts: If something feels off or too good to be true, it probably is
  6. Use multi-factor authentication: Protect all your accounts, especially financial and crypto accounts
  7. Check your credit: Monitor for unauthorized accounts opened in your name
  8. Share this information: Warn friends and family, especially those actively job hunting

Topics Discussed

  • AI Deepfakes & Voice Cloning
  • Malware Delivery via “Competency Tests”
  • Package Reshipping Scams
  • Mystery Shopper Fraud
  • Gift Card Scams
  • Cryptocurrency Job Scams
  • Gamified Scams / Lucky Orders
  • Identity Theft Prevention
  • Multi-Factor Authentication
📝 Full Episode Transcript

Adam Roth (00:00) You could be speaking to somebody who legitimately has a LinkedIn profile. Somebody’s copied that profile. You go to Google that person like, they’re real. And they’re talking to you in video, but they’re not really them.

Joe Patti (00:12) Welcome to the Security Cocktail Hour. I’m Joe Paddy.

Adam Roth (00:15) I’m Adam Roth.

Joe Patti (00:15) Today it’s our holiday special. Happy Holidays!

Adam Roth (00:19) Would you get me?

Joe Patti (00:21) What did I get you? I got you stress, okay? How about I give you some of that?

Adam Roth (00:26) You’ve been giving me that for the last 10-15 years of my life.

Joe Patti (00:28) Well, today the gifts are for our listeners. And we’re doing something a little different than we’ve done in the past. We’ve typically done holiday scams, but we’ve covered that quite a bit. We’re going to do something very much along the line of scams and probably have helped to a lot of people. It’s an unfortunate state of affairs that a lot of people are out of work or looking for work. And there are a lot of job scams out there.

we’re going to tell people, about these scams and all about how to pick them out, see when they’re being scammed, and help out in avoiding

So all right. So first, we’re going to talk about an AI enhanced interview fraud. We’ll call it that for now. I don’t think there’s an official title for it.

Adam Roth (00:59) Yeah.

Joe Patti (01:08) If you’ve been looking for a job in the past two years or so, you know that AI is all over the place. They’re generating the job requests. You’ve got to go through an AI before you even talk to a person and get anyone to look at your resume. You’ve seen that, right, Adam?

Adam Roth (01:22) yeah, it’s a little bit annoying. It’s like, why don’t you do the 10 minute online interview? Some of them are legitimate, but still, I don’t know how legitimate they are, even if they’re from reputable companies. I don’t know if I would put my time into an AI enhanced interview, but some of them are not good at all.

Joe Patti (01:42) Yeah, well, I personally don’t like the idea of talking to an AI and they supposedly grade you and do all sorts of stuff. Who knows how well it’s working? Who knows if anyone’s even looking at it? But you got to watch out for scams with this too. There are a couple things to be on the lookout for, and it’s so sad that this is happening. And a lot of this is for IT people because, well, you’ll see why. But a lot of it apparently targets IT people.

The first thing is that you’re not talking to someone who’s real.

You’re not talking to who you think you’re talking to. You’re talking to some scammer. know, impersonation online isn’t terribly difficult. People set up fake websites. They know the real names of the recruiters, both in company and outside the companies. You know, LinkedIn is a great tool for all that stuff. It’s all there for someone to just take, right?

Adam Roth (02:31) Well, you know, it’s funny you bringing that up as well, right? You know, I was showing something recently where where two people were out drinking and then Donald Trump showed up and it looks so legitimate. then I see online on LinkedIn, especially, you know, there’s these people that are showing how bad AI can be if you’re not careful and they have a side by side comparison of them and then some beautiful woman, they’re a guy.

some beautiful women, they’re speaking in their voice, the woman speaking in her voice, it’s enticing. And then you’re like, you’re thinking speaking to a woman, but really you’re speaking to a guy and it’s not the real video. And it can be vice versa. You don’t know who you’re speaking to.

You could be speaking to somebody who legitimately has a LinkedIn profile. Somebody’s copied that profile. You go to Google that person like, they’re real. And they’re talking to you in video, but they’re not really them.

Joe Patti (03:26) Yeah, well, we’ve been talking about the deepfakes for a long time, along with the general AI security stuff. But apparently, now have the ability to do these deepfakes, voice, end video.

in real time, which is just amazing to me. mean, yeah, yeah, that’s it in real time. And supposedly, even if they’re not perfect, it’s like if it’s a little glitchy or a little funny. Well, you know, they just say like, yeah, well, you know, your connection’s not great. But you know, the internet, that’s not perfect, that kind of thing.

Adam Roth (03:41) Yes, that’s we’re talking about.

I mean, I would tell everybody who’s listening to this. Usually that scam ends up like, we want to hire you, but we’re going to send you a computer and a desktop. You have to give us, you know, $800 as a deposit in order to get the computers and equipment that we need to work with. need to put a credit hold or you need to give us your information for the profiles. So we can do a background check. And what they’re really doing is opening up cards and accounts under you.

Joe Patti (04:25) Yeah, well, you’re right. Well, that’s the first problem is that it’s scary because to apply for a job very often, you’ve got to give over a lot of information. some places, it seems like what they want just keeps getting longer and longer. And be careful. mean, if someone says just for an interview or just to consider you, they want too much personal info, particularly if it’s anything someone can use to open a credit card account or anything.

Be very wary. And it’s tough because legitimate companies are asking for too much too, which is just annoying, but it becomes really dangerous with the fake ones.

Adam Roth (05:02) So full transparency, I see what we’re going to talk about a little bit is about malware delivery. And that’s always interesting, right? Hey, we need you to take this competency test, download the test, run it, and then take the test and we’ll get the results right away. Meanwhile, what they’re doing is they’re creating a shell into your computer and they’re downloading all your pertinent information, your cookies, your financial information, your passwords, cache, the memory, and they’re going to start going to town on it.

And it’s kind of ironic when my son wanted to take his test. He wanted to, he didn’t want to go into DMV. They make you download this app so that they can control your mouse and your keyboard and your camera. Yeah.

Joe Patti (05:44) Wait,

that’s New York DMV makes you download control software onto your computer? What?

Adam Roth (05:48) Yeah,

so like, but this is no different from any of these other, like if you want to take one of those like online, you know, certification tests, but you don’t want to go to the testing center, they have access to your camera, they have access to your keyboard, your mouse, and they’ll want to be able to see you sitting in front of the computer at all times. It’s not like regular Zoom software.

It’s a little bit more control. I think it’s a rootkit. My son claims they’re not rootkits anymore, but they used to be rootkits. They can get access to your whole entire computer to see that you’re not committing fraud. When you’re done, you uninstall it, but I don’t know. There’s remnants in there.

Joe Patti (06:32) You know, I’m

trying to remember, because within the past year, I actually got a certification, believe it or not. And I remember there was something special I had to do. And the guy was kind of a pain in the ass. like, he wants to see my desk, and he’s clearing all this out. He’s like, yeah. And he goes, what is that there? I’m like, dude, that’s my backup drive. I’m not throwing that out.

Adam Roth (06:44) Yes, use a mirror, turn your computer around.

Joe Patti (06:52) If I remember right, was something in the browser, I think. It was like a secure browser kind of software. So I don’t think I had to install anything. But be careful about installing stuff, because that’s why IT people get hit. Because sometimes these guys will say, we need to do a coding exercise. And you need to use our development environment or our testing sandbox or something. Yeah, that’s going to be malware.

Adam Roth (07:16) I’d be willing to,

I’m just saying, if you’re not downloading it for a reputable place, like the DMV, they’re not really gonna do anything to you per se. And I’m not saying it’s absolutely like a root kit, but at the end of the day, they have access to your cameras, they have access to your microphone, they have access to everything. So make sure you uninstall that. But the point I’m making is somebody might call you and say,

You have a new iPhone, it’s on its way. no, no, no, no, it’s not an iPhone. I never ordered it. Call this number to cancel it. You go to call a cancel. They go, hey, do a do a zoom with us to make sure we know who you are and you install software from them. And it might be browser based, but you got to be careful.

Joe Patti (08:00) Yeah, I will always be really wary about any time they ask you to install software. mean, I wouldn’t want to do it. Frankly, even if it’s a legitimate company, I don’t want some company software on my laptop. But people need work, and they’re willing to do stuff, and they’re willing to say, hey, you can see my camera and all that.

Adam Roth (08:14) Yes.

Joe Patti (08:17) Unfortunately, they get pressed to do some things that maybe they don’t want to do under optimal circumstances. And that’s unfortunate. But like Adam said, Adam, you’re totally right. It’s like it should be reputable software. Go and look it up. See if it’s real. Google it. See if there are any problems.

check it with AI if you want to be more modern. And like video conferencing, no one should be using bespoke video conferencing software. Zoom, Teams, whatever, get it off the legitimate site. There’s no need for anything else.

Adam Roth (08:49) And I’ve seen this also on LinkedIn and I don’t want to just keep them, you know, beating it to the ground. But there’s plenty of people who’ve actually posted on LinkedIn saying, I thought this was a legitimate company and they end up taking money from me or they end up installing something. Just be careful. And they start calling people out of who’ve done this. So you can be on LinkedIn. You can have somebody reaching out to you with 500 plus connections and they still might not be legitimate. So. If you don’t know who they are.

and they don’t have a phone number and they don’t have a regular location and they’re not in Glassdoor or LinkedIn, then be weary. But still, just because they’re in there doesn’t mean drop either fences either because they might be representing a company that they don’t really belong to.

Joe Patti (09:36) Yeah, and you’ve got to be careful. mean, some of the general rules that come up, they apply here like always. You don’t want to install software. Anyone who asks you for money, and we’ll see it again in more of the scams, but anyone who says, you’ve got to pay a fee to get an application in and do something, that’s a scam. Don’t do it. Don’t waste your time. Just some really basic things like that. If you can check someone out, I mean,

There are a lot of recruiters that are independent that are one person shops. They’re small. But at the same time, those people are known. They have references. You probably know someone in their network. Just ask, do you really know this person? Are they for real? You got to do what you can these days, unfortunately, because you may be really hurting for a job. I understand it.

get your identity stolen because you put some malware on your machine and now they’ve cleaned out your savings too. that hurts even more.

Adam Roth (10:28) Yeah,

I mean like we were talking about holiday scams in particular But like you said a lot of people are looking for jobs. They go on LinkedIn. They see an opportunity They upload their resume and they’re already kind of compromised, right? They they gave their phone number their email address while it’s Stuff that you know, you can’t really get online But you actually just giving it to an illegitimate recruiter is gonna do something with it and probably represent you somewhere else so

Anyway, the point I make what we’re making is you can never know 100 % including ourselves. Either one of us can get scammed. We’re not above that either, but we’re a little bit more I guess what’s the word? Paranoid so so with paranoia Comes a little bit more defense, but we’re just as capable as getting scammed as you are, but we try not to Great responsibility

Joe Patti (11:09) Paranoid.

With great paranoia comes great responsibility,

I guess.

Adam Roth (11:25) You want to

talk about the packaging, processing, scams now

Joe Patti (11:30) Yeah, the packaging processing things. mean, that one kills me. So what you want to describe that one?

Adam Roth (11:36) I mean, I’ve seen a lot of it. I mean, I think we’re talking about the same thing. Somebody ends up reaching out to you and they tell you that, you know, either one, we’re going to send a package to you. And is this what we’re talking about? then. Yeah, yeah, yeah. I mean, I’ve seen some of that. mean, I every once in a while I’ll send you in and I’ll chat, you know, the things that I get from people like, oh, it’s a job offer. I’m like, who the hell are these people?

Joe Patti (11:50) And it’s a job offer, we’ve to say. Someone offers you a job.

Adam Roth (12:06) They don’t even represent this and it’s funny. I know HR people I go back to people like is this really your company? No, we don’t have anybody representing us

Joe Patti (12:15) Yeah.

Well, you got to watch out, whenever someone out of the blue offers you a job, these days, that’s kind of dodgy. But when they offer you a job for really good money for really easy work, mean, come on. You’ve got to be really wary of that. And apparently, this reshipping or packaging processing, I had not heard of this. And I don’t want to be rude, but I’m

Adam Roth (12:17) Yeah.

Joe Patti (12:41) kind of surprised people fall for this, where you get this job, whether they solicit you or you answer a posting or something. And of course, because you’re getting a job, you’re going to give them a lot of personal information that they’ll use later. these guys, they will apparently send you items. They’ll have it shipped to you. And they’ll say, well, we want you to do quality control. Make it OK.

or whatever. We need or we can’t have things shipped to us directly for whatever reason and we want you to reship it to us. And very often it involves international stuff. I mean, if that just doesn’t scream fraud and laundering stolen goods, I don’t know what does.

Adam Roth (13:27) Yeah, and I know there’s a guy on the website forgot his name was a former NASA engineer and he actually Did this whole scam thing but what he did was he set these people up and put in glitter bombs. So Yeah, yeah So he so he actually targeted those type of people and then he put a GPS in there and he tracked the people He actually did some really good I guess I want to say

Joe Patti (13:40) the glitter bomb guy, yeah, he’s good. I saw that.

Adam Roth (13:54) Legal or or or detective work where he was able to detect some of these really big scam artists some of them in India some of them in the UK some of them in I think North Africa, but he actually targeted some of them and and they and some of the people really did live in New York City and New Jersey where they were involved in this scam So it was an international scam, but they send you packages you supposed to reship it you supposed to get the packages and drop it off as a be a courier and

It’s always shady.

Joe Patti (14:24) Yeah, and well, the glitter bomb guy, I actually didn’t see him doing the scam stuff. I saw him doing the glitter bomb where he’s getting porch pirates. And that was just funny, besides being cool. But yeah, this package scam is, yeah, you’re doing this stuff for them. And the scary thing is, you’ve got to be careful. Because if you go to the cops with it, or the company or whatever, they could accuse you of being involved in it and say, yeah, you’re just ratting out your accomplice before you get caught.

Adam Roth (14:29) Yeah.

Yeah.

Joe Patti (14:52) So that’s really bad too. And you know the nasty part of the scam is that makes people You know scared to report it

Adam Roth (15:00) Yeah, I mean, stick to I know people want to work, but stick to organizations that you can really find out that a legitimate like what Joe and I have done is if they have a legitimate website, supposedly you look at when they created that website. If the website was created in last year or two, be weary. Check on the New York state or New York City or whatever municipality you live in.

You see when they were incorporated where the LLC is where they really are situated See if they have a federal tax ID number, you know it’s it’s not always easy work to do but Any legitimate organization is gonna have attribution, but it doesn’t mean that you can’t be a startup either But if you were a startup, you know You should have some legitimate information should have some seed money in there’s there should be some

people invest in money in that company. should be some public media about it. It should be something.

Joe Patti (15:59) Yeah, well, even if it’s a startup or first it’s a small company, which there’s there’s nothing wrong with that. I mean. They have to have some kind of connection, anyone legitimate, you know, again, there may be someone in your LinkedIn contacts who can vouch for them, even if, you know, mutual person, even if you don’t know them well, you can try them out, but those can get fake too. But, you know, if it’s something that’s local to you can ask, maybe you know someone who used to work.

in the place, any kind of connection you can make to validate it is really cool. But also just be on the lookout for this stuff. And the other thing is too, apparently, one of the things that they’ll do is they’ll ask you to sometimes front the money for the shipping. like, oh, well, we’ll reimburse you when it comes out. Don’t do that. That’s and scam too. Anytime for a job, you have to put your own money up.

Adam Roth (16:48) It goes without saying, yeah.

Joe Patti (16:53) That doesn’t work.

Adam Roth (16:54) And it goes without saying, don’t buy gift cards. That’s another story. don’t care what. Don’t even.

Joe Patti (16:59) Yeah, especially

if they’re shipping you gift cards and then you have to mail them off to a foreign country. That’s a bad sign, you know.

Adam Roth (17:06) Yeah,

so what else do we have, Joe? The Mystery Shopper? I love that one.

Joe Patti (17:25) Well,

yeah, the mystery shopper is interesting where we’ll describe the whole scam, but basically you’re paid to shop for a company as part of like a test or whatever, a test of customer service or of the business. And we’ll go into the whole scam. I had no idea. Apparently there is a real thing where companies, yeah, where companies will hire

Adam Roth (17:47) It is real thing.

Joe Patti (17:50) professional shoppers to go in and I guess test the experience and read companies and do that kind of thing. I had never heard of it.

Adam Roth (17:56) From what I know, it’s funny.

I’ve heard of it and what’s funny about it, truly is a third party company that’s doing it. Like, you know, like a major retailer might hire a smaller company to hire people to do it because they don’t want to have these people as employees. It’s seasonal. So company A, well-known company hires company B. Company B says, we’ll pay you X amount of dollars to do this or per diem.

You know, like you go to each location you go to and you fill out a form, we give you X amount of dollars. It might not seem legitimate, but it probably is. If it’s, if you could show some attribution, if the company’s been around for a while, but you never know, you gotta be careful.

Joe Patti (18:38) Well,

yeah, well, apparently there are some legitimate companies that you can research and see if they’re for real, although they’ve been spoofed too, apparently people impersonate them. So you got to make sure it really is the company. one of the first big indications, again, gets down to money. If they’re going to pay you like a ridiculous amount of money or even a decent amount of money, it’s not looking very good. Supposedly these mystery shopper things when we looked it up.

They pay like nothing. It’s terrible work. So, you know, if they’re paying you more than they pay like 10, 15 bucks per per thing. And if someone’s willing to pay you a couple hundred, that sounded a little scam like right there.

Adam Roth (19:17) Well, the other part to it is like, okay, we’re gonna we we’re gonna deposit the money. Just give us your checking account number and routing number, which a lot of us do. I give it to my utility companies and everything else to pay my bills. I don’t want to pay the credit card, so don’t pay the the credit card fee. So I put my routing number into my utility company and they take the money out. But, you know, these companies will tell you the same thing.

will deposit the money directly into your account, give us your routing number and your checking number because it’s legitimate when you’re doing direct deposit for your regular company and you never know they’re gonna just start writing checks against you and remove that money. They send it into another account, they delete that account, you can never get the money back.

Joe Patti (20:06) Yeah, that’s the thing. If you give away that number, the routing number and the account number that’s at the bottom of your checks, whatever, someone can make up fake checks. They can deposit money for you, but they can also withdraw money in many cases. And once it’s gone, they pull it overseas. And wired money, forget it, gone, done. But apparently what they’re also doing is, and you see, this makes it enticing too. say, don’t put any money up front. Don’t put any money up front. And then they say, no, but for this scam,

Adam Roth (20:25) Yeah.

Joe Patti (20:37) They’ll send people a check. They’ll send you a check for a couple hundred, couple thousand bucks, whatever. And they say, use this money to go and buy, go and buy this stuff, whatever. And of course you go and buy it and you ship it to them most likely, right? So they do that, but then like the check ends up being bad. And you’re like, so how does the check, how is the check bad, but they still rob you. Well,

What happens when you deposit a check apparently, and I had heard of this before, is the check doesn’t necessarily clear for a while. And I’ve seen this too. If you go and like cash a check, at least at my bank, when I go and cash a check, which doesn’t happen very often, believe me, I can’t remember the last time, you go, what they do is they give you the cash, but they actually take it out of your account and give it to you. And then a couple of days later, when the check clears,

Adam Roth (21:26) Of course you check, yeah.

Joe Patti (21:30) They credit your account. So I think this is something very similar here. It’s like you say, I got this check from this company. They deposit it, you can pull it out and do stuff, but you know, really you’re using your own money. And then when that check doesn’t clear, you know, you ain’t ever getting that back.

Adam Roth (21:46) Well, I think what

happens is, and I’ve done this even recently where I’ve taken a check and I’ve cashed it against my account for cash. But if you have a really good checking account and you have a really good history, they’ll immediately credit you for most checks. So if it’s a thousand dollar check, give them the check, it immediately gets deposited in your account. And if they find out like,

X amount of days later that is not a legitimate routing number and not a legitimate whatever it is then that money gets reversed and they pull it out of your account you can go negative and What some of these scammers do is they hey, we’ll send you a check $4,000 buy what you got to buy just send us back the difference and And then you end up sending the money back and then the check gets reversed and you have no money

Joe Patti (22:27) Yeah.

Yeah, exactly. It’s not good. And you know…

Don’t let them, once they get into your bank account, I mean, that’s it because you not only can lose your money, but if your account manages to go negative, you can owe the bank money, your credit can get destroyed. And you know what, that’s a terrible thing. If you’re looking for work, people are doing credit checks now. And if they hear about that, that can be a problem that could impact you getting a job. And then of course, this again is another one where you look like an accomplice.

And if you go to the police and you tell them, hate to say it, but if you go to the cops and say, yeah, this guy paid me to buy a bunch of gift cards and then scratch him off and send him photos and email him photos of the numbers, the cops are going to be pretty suspicious that you’re in on it. So you’ve got to be super, super careful. But again, that’s part of the scam that you’re afraid to report it.

Adam Roth (23:26) I would also say when you’re going shopping for the holidays, I always tell this to everybody. Do not use your debit card. Don’t use your debit card. For many reasons. One, even if they’re a legitimate place, I’ve seen this and this happened to family members. Like you go to buy something for $227, they made a legitimate mistake. They put down $2,270.

Joe Patti (23:37) That’s the debit card thing again. Yes.

Adam Roth (23:54) They put a zero or the decimal in wrong place. That money gets taken out of your account. Then you have to turn around and ask them to reverse it and have to close it out. At the end of the day, they’re pouring a sale system and the money gets deposited or might get held for a day or two days. You might need to pay your rent. Don’t use your debit card if you don’t have to. Use a credit card. It’s easier to manage, especially if it’s a card company that will be more

shopper friendly, more consumer friendly.

Joe Patti (24:23) Yeah, we’ve talked about that before and also about my preference for tap to pay on the phones. I like that a lot too. That’s a good thing to have. All right, the last scam is another one. It’s really nasty. mean, this one really bothers me because it’s not only a scam, but it really manipulates people and plays on psychology, which I don’t like. So this is the Gamify job scam.

Adam Roth (24:28) Yeah.

Joe Patti (24:48) And this one is just crazy. Apparently, this has become very popular in the past few years.

So again, you’ll get solicited somehow. And supposedly they say, we need you to do some of these tasks that are really simple. They’re really simple. They’re really ridiculous. There’s not much to do. And you’re like, that’s easy money. social media content, rating stuff, stuff like that. And you’re like, I can sit there and make easy money while I’m watching TV or whatever. They’re not doing much.

But there are two things. The first is apparently they often pay you in cryptocurrency and anything that involves you being paid in cryptocurrency, be very careful right there because got nothing against cryptocurrency, but most companies will pay you if you’re an employee with money. you know, I have yet to traditional money.

Adam Roth (25:37) Well, wait, wait. Traditional money. Traditional money.

Joe Patti (25:42) Put it this way, again, I don’t wanna besmirch the crypto stuff, but I have not yet encountered a lot of employers that pay in crypto. Is that fair?

Adam Roth (25:53) It’s fair, but I know there are people out there these days who are saying I no longer want to get paid in traditional currency I want to get paid in crypto and they are getting paid in crypto or I mean I have several crypto accounts I want to be careful but at the same time you’re 100 % right if somebody’s asking you to pay you in crypto They probably want to know what your crypto account information is so that they can try to possibly remove your money from your crypto account Be very weary

Joe Patti (26:20) Yeah, you gotta watch out for that

too.

Adam Roth (26:21) It’s really no different from your routing number and your account number if they’re asking for your crypto deposit information They might be trying to target you to see whether or not you have a crypto account And and the most important thing I think that we need to understand is Whatever you’re using wherever you’re managing whatever you’re doing always use 2fa or MFA multi-factor or two-factor authentication because

If somebody’s going to try to target you and you don’t have the multi-factor authentication, but you do have a password and username, if they go, like they might turn around and go, they like, go to, Hey, we went to go deposit money in your crypto account. do me a favor. You might’ve got a pop-up on your authentication, even with 2FA or MFA. Can you give me the pin number so we can deposit the number? Don’t ever give you a pin number. Don’t ever give you MFA to anybody.

Joe Patti (27:11) Yeah.

Adam Roth (27:15) Not even your sister’s brother’s father’s mother’s uncle.

Joe Patti (27:18) Yeah, well, it’s always worth saying use MFA for everything online. And we really should do a show just on protecting your crypto wallet, which is a whole other world. But hopefully now that I’ve gotten some hateful comments about crypto from those people, we can move on to the actual scam, which is, and this is just crazy to me. They make it like a game where you got to get to the next level. Like the more you do, you get to the next level and the next level.

And you like keep making money for all of this. But then they throw in this thing and I had to have this explained to me. A lucky order or a merge test or something that sounds lucky. Well, the truth is the lucky thing is very unlucky

where they take money out of your account. You’re accumulating all the money you’re making in this little account with the crypto. And then they take it out and say, but you’re going to make that back because you’re going to get double points for this next set of tasks or something like that. And when you get to the next level, we’re going to put that in plus some. And then the real scam comes when they say,

Okay, but you can’t have a negative balance, so until you fill it up, you gotta put your own money in there. And that’s…

Adam Roth (28:29) know nothing about that one. I’m reading it

now. I know nothing about that scam. But the good news is that every year with the holidays is always new and exciting scams to look out for.

Joe Patti (28:39) Yeah, there are. you know, they’re really not. Yeah, they’re exciting. They’ll get your blood going, but not in a good way. That’s the of excitement you want to avoid.

You know, when it comes to these scam episodes, we know that a lot of our listeners and viewers are, well, are cybersecurity people and IT people who frankly probably know a lot of this stuff or have heard about some of it. But please share it with your family and friends, with people who probably don’t know it because, know, some of these things that seem really obvious to me and Adam and maybe to you too, are not so obvious. And the only proof

of it is that it’s working and people keep doing it and people keep falling for it. So please, whether it’s sharing this or just telling people, please spread the word. Do a public service. That’s why we’re doing this, right, Adam?

Adam Roth (29:29) Yeah, and of course to have our panel at the Security Cocktail Con, we’ll talk about the different holiday scans as one of the panels.

Joe Patti (29:39) Yeah, absolutely.

All right, Adam. So that’s four scams. And you know, that’s as much as I can take. This just gets too upsetting with too many of these things. We want to talk about positive stuff for people, but people need to know about this.

Adam Roth (29:53) So I think it’s more like

the 12 days of Christmas the eight days of Hanukkah and the four scams of the holidays

Joe Patti (30:00) or scams in the holidays. Well, unfortunately, these were only job scams, and there were a lot more holiday scans. We have our previous episodes, too, that you can take a look. And many of them are classics that just keep going,

Adam Roth (30:14) Yeah, if there’s a scam that we didn’t discuss let us know and put it in the comments we would love to edit on to the next episode or Publish it in our social media

Joe Patti (30:26) Yeah, we’ll be free to share too. You know, we said share, we can also. And if you’ve heard about any variations of these that we haven’t covered or any other aspects of it, please let us know because they’re changing all the time. These guys are so creative. They literally spend all day trying to figure out new ways to trick people and it’s hard to keep up.

Adam Roth (30:48) So happy holidays everybody.

Joe Patti (30:50) That’s right, happy holidays, stay safe, and we’ll see you soon. Thanks for listening.

Adam Roth (30:55) Thank you guys.

Share This Episode