Bitcoin Blackmailers Attempted to Steal $25,000 From My Dad's E-Trade Account
A cautionary tale about a new type of financial fraud.
What's a "bitcoin blackmailer"? This is a title the Federal Trade Commission has appointed to the internet hackers that threaten to seize money or reveal unflattering details about someone's personal life unless they receive gobs of bitcoin.
And while the media tends to cover these bad actors when they demand millions in bitcoin after hacking major companies like Colonial Pipeline, they're also targeting everyday consumers like my dad.
Here's how it all played out in my father's case. Specifically, it was a push message from his E-Trade account that said his full investment in Apple stock had been sold.
He had not requested any such sale, but when he logged into his account, his fears were confirmed: Someone had broken into his account over the weekend and placed a sell order on his Apple stock to occur on Monday morning.
Now, when you sell a stock, it usually takes a few business days to process.
The cash from the liquidated stock then appears in your account, at which point you can transfer it to an external bank account.
Luckily the transaction in my father's account was still pending when he found out, and the hacker had not yet linked an account to wire the money.
My father immediately called E-Trade and the company was able to abort the transaction.
Then came some strange emails. The fraudster sent multiple emails to my dad throughout the day suggesting that he'd hacked his account and wanted more. "Sorry in advance…," they said. "I have access to Amazon and some of your banks.
I have your routing number and bank account number. We'll just take [your money] the good way. What if you give me 5000$ payment in bitcoin. I promise not to sell your important bank data."
The FTC says these types of messages demanding bitcoin in exchange for not violating your life are growing in number. To avoid falling prey, here are some steps you can take today.
Never respond to emails or texts requesting passwords
These phishing scams, where fraudsters send seemingly legit messages asking for personal information, are what often lead to financial fraud.
You may receive an email that appears to be from your bank, the IRS or another institution asking you to click on a link and update your password or login to retrieve an important message related to your account.
Be sure to check the sender's email address and any links to verify the legitimacy of the sender. If the IRS or your bank needs important information from you, they probably won't email or text.
In my dad's case, he recalled an email from "Amazon" asking him to update details for a recent order. He hadn't recognized the order, but figured my mother must have placed it since they share an account. When he clicked on the email, he was asked to enter his username and password. Unfortunately, he did.