Resources › How to Spot Common Scams

How to Spot Common Scams

Understanding the tactics scammers use is the first step to protecting yourself and your loved ones. Here are the most common scams, the red flags that give them away, and how to stay safe.

Phishing — Fake emails that steal your information

Phishing emails pretend to be from trusted organizations like your bank, the IRS, or a delivery service. They create a sense of urgency to trick you into clicking a link, downloading an attachment, or entering personal information on a fake website.

These emails have become increasingly sophisticated. Modern phishing attacks often copy a company's branding pixel-for-pixel and use domain names that look nearly identical to the real thing.

Red flags to watch for

  • Urgent language like "Your account will be closed in 24 hours"
  • Sender email address doesn't match the real company domain
  • Generic greetings like "Dear Customer" instead of your actual name
  • Links that go to a different URL than displayed (hover to check)
  • Unexpected attachments, especially .zip, .exe, or .html files

How to protect yourself

  • Never click links in unexpected emails; type the URL directly into your browser
  • Check the sender's full email address, not just the display name
  • When in doubt, contact the company directly through their official website

Smishing — Text message scams

Smishing uses text messages to lure victims. Common themes include fake package delivery notifications, bank alerts, toll payments, and messages claiming you've won a prize. The short links in texts are especially dangerous because it's harder to verify where they lead on a mobile device.

Red flags to watch for

  • Text from an unknown number claiming to be a company you use
  • Shortened URLs (bit.ly, tinyurl) that hide the real destination
  • Messages asking you to "verify" or "confirm" personal information
  • Requests for small payments (e.g., a $3.50 redelivery fee) to collect payment info

How to protect yourself

  • Don't click links in texts from unknown numbers
  • Check delivery status directly on the carrier's official website or app
  • Forward suspicious texts to 7726 (SPAM) to report them to your carrier

Tech Support — Fake virus warnings & support calls

These scams start with a pop-up alert, a phone call, or an email claiming your computer is infected or your account has been compromised. The scammer offers to "fix" the problem remotely, then charges hundreds of dollars for fake services or installs malware to steal your data.

Tech-support scams cost adults 60+ over $900 million in 2024.

Red flags to watch for

  • Pop-ups that lock your browser and show a phone number to call
  • Unsolicited calls claiming to be from Microsoft, Apple, or your ISP
  • Requests to install remote access software (TeamViewer, AnyDesk)
  • Payment demanded via gift cards, wire transfer, or cryptocurrency

How to protect yourself

  • Legitimate companies never call you unsolicited about computer problems
  • Close browser pop-ups using Ctrl+W or by force-quitting the browser
  • Never give anyone remote access unless you initiated the support request

Impersonation — Government & authority scams

Scammers impersonate the IRS, Social Security Administration, law enforcement, or other government agencies. They claim you owe money, your Social Security number has been compromised, or there's a warrant for your arrest. These scams rely on fear and authority to override your better judgment.

Red flags to watch for

  • Threats of immediate arrest, deportation, or legal action
  • Demand for payment via gift cards, wire transfers, or crypto
  • Pressure to act immediately with no time to think or verify
  • Caller ID showing a government agency number (these are easily spoofed)

How to protect yourself

  • Government agencies communicate primarily by postal mail, not calls or texts
  • The IRS will never demand immediate payment or threaten arrest over the phone
  • Hang up and call the agency directly using the number on their official website

Social Media — Scams targeting teens & Gen-Z

Social media scams target younger users through fake account suspension notices, fraudulent job offers, crypto giveaway scams, and phishing DMs. These scams exploit the platforms where younger people spend the most time and often impersonate influencers, brands, or the platforms themselves.

Red flags to watch for

  • DMs from "Instagram Support" or "TikTok Security" asking you to verify your identity
  • "Get rich quick" offers or crypto giveaways from celebrity accounts
  • Job offers that sound too good to be true or ask for upfront payment
  • Links that take you away from the platform to enter login credentials

How to protect yourself

  • Social media platforms never DM you asking for your password or personal info
  • If a deal or offer seems too good to be true, it almost certainly is
  • Enable two-factor authentication on all your social media accounts

Emotional Manipulation — Romance & grandchild scams

These scams exploit love and family bonds. Romance scammers build fake relationships online then ask for money. Grandchild scams involve a caller pretending to be a grandchild in an emergency who needs money right away. Both types target emotions to override critical thinking.

Red flags to watch for

  • An online relationship that moves fast, but the person always avoids video calls
  • A "grandchild" calling from an unfamiliar number in a crisis
  • Requests for money via wire transfer, gift cards, or cryptocurrency
  • "Please don't tell anyone" — secrecy is a hallmark of these scams

How to protect yourself

  • Verify by calling your grandchild back on their known phone number
  • Create a family code word that only real family members would know
  • Never send money to someone you haven't met in person

Reading about scams is a start. Practice makes it stick.

ScamDrill sends safe, simulated scams to your inbox so you — and the people you care about — learn to spot the real thing. Free for individuals.

Get started free →

Stay ahead of the scammers

Join our free newsletter for monthly scam-trend updates and practical tips to protect yourself and the people you care about.