Protect Your Information

There cannot be enough said these days about protecting yourself and your electronics.  We have conditioned ourselves to the need to have access every minute, it seems.  But, do we really stop and think about safety and security when we are using free public WiFi?  Should we?

We should be very concerned when using free public WiFi because it is not secure, as the communications are not encrypted.  Without the use of encryption, accessibility is easy and convenient.  This opens the door up to technology being used that allows wireless computer communications within range of your device to see what you are doing, information you are passing along and your user names and passwords. You are helping the bad guys.  Is this personal information of so little importance to you? 

So, what is the answer?  Use VPN or Voice Protocol Network.  The use of a VPN encrypts and routes wireless communications to a secure channel for your computer to communicate.  Also, using secure websites – those with ‘https” indicates that it is a secure website.  Although, if you are accessing a website with ‘https’ via a VPN, your communication is secure. 

It is good practice to take as many precautions as you can to protect yourself and your information.  This is something we shouldn’t be lax about.  All you need is one little tidbit of you to get out before damage can be done. 

Medicare and its more than 60 million beneficiaries are under attack from scammers who want to disrupt the program. Their primary aim is defrauding Medicare itself.  Billions of dollars were lost in 2017 due to fraud, abuse and improper billing. You ask – how can this happen?  Their schemes target beneficiaries directly, steal identities or enlist Medicare participants as unwitting accomplices. 

Medicare fraud usually involves rogue health care providers or medical suppliers who bill the program for services, equipment or medication that they don’t actually provide, or else inflate the cost of those items. Some will even falsify a patient’s diagnosis to justify unnecessary tests, surgeries and other procedures or write prescriptions for patients they’ve never examined. Others use genuine patient information obtained through identity theft to create fake claims.

Here are some ways that fraudsters exploit the Medicare system:

  • Telemarketers Calls to participants with offers of free state-of-the-art braces to relieve joint pain. When received, only ordinary ankle or knee wraps (or nothing at all) is in the package, but Medicare gets a bill for thousands of dollars.
  • Disreputable home health care agencies try to sign people up for services that Medicare pays for but that they never receive.
  • Phony prescriptions or ordering unnecessary tests and procedures are another avenue of fraud.
  • Fraudsters telephoning people or being present at health fairs with offers of DNA tests to uncover cancer risks claiming Medicare will pay for the tests.  In reality, Medicare pays for genetic testing in only very limited circumstances.  So, the end result is the individual gets a hefty bill for the test.
  • Obtaining your Medicare number could result in Medicare being billed for phony prescriptions or unnecessary medical services.  This could result in denial of coverage for services in the future.

So, what should you look out for? 

  • Receiving robocalls offering free medical services or equipment if you provide your Medicare number. 
  • Advertisement for free services specifically for Medicare patients.
  • A health care provider claiming to be able to get Medicare to pay for services not normally covered.
  • Your Medicare Summary Notices listing claims from providers from whom you did not receive services.

What should you do?

  • Don’t accept offers for free medical services in exchange for your Medicare number.
  • Only share your Medicare number with trusted health care providers.
  • Keep track of medical appointments and services on a calendar and keep receipts.
  • Review your Medical Summary Notices.

And, whatever you do,

  • DON’T give personal information to anyone who calls out of the blue and claims to be from Medicare, even if your caller ID shows an actual Medicare phone number. Scammers use caller ID spoofing to mask their location.
  • DON’T talk to anyone who knocks on your door or approaches you in person and claims to represent Medicare or to be selling Medicare-covered supplies.
  • DON’T accept money or gifts to use the services of a medical provider or device supplier. Some swindlers use kickbacks and bribes to obtain Medicare information for phony claims.
  • DON’T be swayed by high-pressure tactics, such as a telemarketer’s threat that Medicare will declare you ineligible unless you accept the offer of a “free” brace quickly.
  • DON’T consent if someone asks to bill you for a DNA test or other service in the event Medicare declines to pay for it.

IRS scams and phishing, identity theft, this scam, that scam — What’s This World Coming To?

Scammers are creative.  Must be nice not to have anything else to do but come up with new ploys to intimidate and steal from law-abiding citizens.  The elderly are particularly vulnerable in these ploys and so easily fall prey to the scams.  Here are a couple of new ways people have gotten creative:

You get a call that talks about health insurance.  If you listen to the scheme that they can get you better insurance for a lower price, you are then asked to press 1 to speak to an agent.  When you press 1, you may not be directed to a legitimate representative but to a scammer. 

You receive a call from law enforcement stating that a warrant has been issued for your arrest due to your failing to appear for jury duty.  Surely, if you received the notice that you were called for jury duty you would remember.  Don’t fall for this call.  If you have doubts as to being called for jury duty, contact your county clerk’s office. 

A call stating that your Social Security Number has been compromised or that there is an enforcement action against you.  You will be asked to verify your Social Security Number and from there, the scammer will use your SSN to commit crimes.  If in doubt, call your local Social Security Administration office, not the number provided in the robocall.

Medicare fraud is becoming more common.  You get a message from a pain center because someone at your number requested information about medical equipment.  You may qualify for the equipment at a reduced or no cost to you.  You need only press 1 for more information. 

As you can see, scammers are creative.  Don’t buy into the robocalls.

One might think that since April 15 has passed, so has the season for tax scams. Think again. There is no season for tax scams. They occur 365 days a year. 

The IRS has reported a couple of new variations of tax-related scams. 

They call one of them the SSN HUSTLE.  In this scam, the scammer claims to be able to suspend or cancel a Social Security Number. This is similar to the IRS impersonation scam.  Don’t return calls to robo-call voicemails. And, if you answer a call like this, hang up. Or, if you are inclined to say something, tell them to send it in writing. 

Another scam is that of a fake tax agency. And, this you do get in writing. The claim is that you have delinquent taxes and that there is a lien against you or that your property will be levied upon. This scam can be very confusing because it looks legitimate and to be from the IRS.  If you receive such a mailing, do not call the number that may be in the notice. Call the IRS at 800-829-1040

Stay alert. 

Phone scams continue and you should remember that the IRS does not leave a pre-recorded, urgent or threatening message.  Don’t rely on caller ID as these can be fake.

If in doubt, call the IRS at 800-829-1040.

The same goes for email phishing scams. The IRS does not contact taxpayers by email.  Most contacts from the IRS come through the US Postal Service regular mail. Only in special circumstances will the IRS call or visit a home/business. These visits are usually only after other communications have not been successful.

If you think that you may have received an email that appears to be from the IRS that is fraudulent, report it by sending it to phishing@irs.gov. Don’t reply to the email. 

REMEMBER, the IRS will not call you to demand immediate payment and ask for financial information. They will not threaten to bring in law enforcement.

If you receive something that appears to be a scam and you are having a guilty conscience because you do owe or may owe taxes, contact the IRS directly.  Don’t fall prey to a scam. YOU should initiate contact with the IRS by calling them at 800-829-1040.

Don’t be a victim. Outsmart the scammers.

I know you keep hearing about online security and soon you will say, if you haven’t already, that I am like a broken record.  But in today’s world, one cannot be too safe or secure. 

Cookies on the internet are tiny files that are transferred to your computer from websites you visit.  This is a way that websites and online services collect and use information about you.  Some websites will have a popup message that the site uses cookies and you can allow or block the cookies from being used. However, each web browser has a different process for enabling cookies. 

When you are connected to the internet via Wi-Fi, there is a vulnerability which exists.  To be more secure, consider installing a virtual private network (VPN) that will work in conjunction with your web browser to encrypt all information as it leaves your computer or mobile device. 

Passwords – how many do you have?  Are they simple or complex?  Would it be likely someone could easily find out your password?  Skip the numeral sequence or repetition, abc’s, your name, the name of a family member, etc.  The best passwords include numbers and letters – both upper and lower case as well as a symbol or two.  Think of a catchy phrase or sentence that you like and recreate it.  For example – “I like to go to the seashore” could be “Ilk2go2cshore!”.  Get creative. 

When you are shopping online, make certain that the website address is secure with “https” being displayed at the beginning of the website address.  If there is only “http”, then the site may be a bogus website designed to look like the site you are attempting to log into.  If the address doesn’t have the “https”, close your browser, reopen and manually type in the website you are attempting to find. 

You enjoy online shopping. Which is better to use?  A credit card or a debit card?  It is safer to use a credit card because if there is a problem with your purchase or the merchant, you can call the credit card issuer and file a dispute.  Your liability is limited to usually $50.00 and most credit card companies will most likely waive that.  Using a debit card does not provide you with the ability to file a dispute. 

If you don’t use social media, you avoid the risks associated with it.  If you do, don’t post a photo where you are looking directly at the camera.  The picture could be used to forge a passport or driver’s license.  Also, don’t post photos showing that you are traveling.  Wait until you get home to post pictures or information about your trip.  Posting while traveling could be a temptation for someone to break into your home. 

Just as you lock the doors to your home or car, take steps to be secure on the internet. 

It is so nice to meet you. 

But, you ask, how did we meet? 
I don’t recall meeting you.  Is my memory fading?

Maybe your memory is fading, but I really don’t care about that.  Let me tell you some ways that I may have met you. 

  • Have you entered contests and provided your name, address, age? 
  • Do you fill out survey forms that disclose your information, perhaps from a hotel, restaurant, website where you purchased something? 
  • Have you completed a warranty card for a new appliance, a car, tires, a computer, mobile phone? 
  • Do you toss your mail that has your name, address, perhaps account number or other information without first shredding the same?
  • Have you been named in an obituary for a loved one who recently passed? 
  • Are you a social media person? 
  • Do you live in the United States?

If you answered affirmatively to any of these questions, identity thieves may have gained access to your personal information, AND, the more you share in these areas, the more vulnerable you are.  Even if you trust sites and companies, by providing information to them, your information could be compromised if they experience a data breach.  Posting vacation pictures on social media can invite potential break-ins at your home. 

It may seem like we are broken records – if you know what that phrase means – but PLEASE, PLEASE be cautious with the information you share.  Look for trouble and you won’t find it; don’t look for trouble and it could find you.

Summer is around the corner and whether you are shopping online to get ready for a vacation or relaxing while on vacation and decide to indulge, BE AWARE!  Your financial information, tax information and Social Security number could be at risk. 

Cybercriminals want to turn stolen data into quick cash. They do this by draining financial accounts, charging credit cards, creating new credit accounts or even using stolen identities to file a fraudulent tax return for a refund.

Here are seven steps for taxpayers the IRS has provided, which can be followed to help protect their accounts and their money:

  • Avoid unprotected Wi-Fi. Unprotected public Wi-Fi hotspots may allow thieves to view transactions.  Think about hotel rooms, free Wi-Fi in restaurants and other public places.
  • Shop at familiar online retailers. Generally, sites using the “s” designation in “https” at the start of the URL are secure. User can also look for the “lock” icon in the browser’s URL bar. That said, some thieves can get a security certificate, so the “s” may not always vouch for the site’s legitimacy. Beware of purchases at unfamiliar sites or clicks on links from pop-up ads.
  • Learn to recognize and avoid phishing emails. Thieves send these emails, posing as a trusted source, such a financial institution or the IRS. The criminal’s goal is to entice users to open a link or attachment. The link may take users to a fake website that will steal usernames and passwords. An attachment may download malware that tracks keystrokes.
  • Keep a clean machine. This applies to computers, phones and tablets. Taxpayers should use security software to protect against malware that may steal data and viruses that may damage files.
  • Use passwords that are strong, long and unique. Experts suggest a minimum of 10 characters but longer is better. People should also avoid using a specific word in the password. They should also use a combination of letters, numbers and special characters.
  • Use multi-factor authentication when available. This means users may need a security code, usually sent as a text from a financial institution or email provider to a mobile phone. People use this code in addition to usernames and passwords.
  • Encrypt and password-protect sensitive data. If keeping financial records, tax returns or any personally identifiable information on computers, this data should be encrypted and protected by a strong password.

Be a savvy shopper – not only by looking for deals on items you want to purchase but also by keeping your information secure. 

Data thieves don’t take a break.  EVER.  They are always working.  One might say they are workaholics. 
 
The most common way for cybercriminals to steal money, bank account information, passwords, credit cards and Social Security numbers is to simply ask for them. Every day, people fall victim to phishing scams or phone scams that cost them their time and their cash.

Here are a few steps taxpayers can take to protect against phishing and other email scams. When reading emails, people should:

  • Be vigilant and skeptical. Never open a link or attachment from an unknown or suspicious source. Even if the email is from a known source, the recipient should approach with caution. Cybercrooks are good at acting like trusted businesses, friends and family. This even includes the IRS.
  • Double check the email address. Thieves may have compromised a friend’s email address. They might also be spoofing the address with a slight change in text. For example, using narne@example.com  instead of name@example.com.  Merely changing the “m” to an “r” and “n” can trick people. Look closely.
  • Remember that the IRS doesn’t initiate spontaneous contact with taxpayers by email to ask for personal or financial information. This includes asking for information via text messages and social media channels. The IRS does not call taxpayers with aggressive threats of lawsuits or arrests.
  • Not click on hyperlinks in suspicious emails. When in doubt, users should not use hyperlinks and go directly to the source’s main web page. They should also remember that no legitimate business or organization will ask for sensitive financial information by email.
  • Use security software to protect against malware and viruses found in phishing emails. Some security software can help identity suspicious websites that are used by cybercriminals.
  • Use strong passwords to protect online accounts. Experts recommend the use of a passphrase, instead of a password, use a minimum of 10 digits, including letters, numbers and special characters.
  • Use multi-factor authentication when offered. Two-factor authentication means that in addition to entering a username and password, the user must enter a security code. This code is usually sent as a text to the user’s mobile phone. Even if a thief manages to steal usernames and passwords, it’s unlikely the crook would also have a victim’s phone.
  • Report phishing scams. Taxpayers can forward suspicious emails to phishing@irs.gov.

(a reprint from an IRS notice)

Taxpayers should protect their personal and financial data from criminals who continue to steal large amounts of information. Thieves use the data to file bogus tax returns and commit crimes while impersonating the victim.

All taxpayers should follow these steps to protect themselves and their data.

Keep a secure computer. Taxpayers should:

  • Use security software that updates automatically. Essential tools for keeping a secure computer include a firewall, virus and malware protection, and file encryption for sensitive data.
  • Treat personal information like cash; don’t leave it lying around.
  • Give personal information only over encrypted and trusted websites.
  • Use strong passwords and protect them.

Avoid Phishing and Malware. Taxpayers should:

  • Not respond to emails, texts or calls that appear to be from the IRS, tax companies and other well-known businesses. Instead, verify contact information about companies or agencies by going directly to their website.
  • Be cautious of email attachments. Think twice before opening them.
  • Turn off the option to automatically download attachments.
  • Download and install software only from known and trusted websites.

Protect personal information. Taxpayers should:

  • Not routinely carry a Social Security card or other documents showing a Social Security number.
  • Not overshare personal information on social media. This includes information about past addresses, a new car, a new home and children.
  • Keep old tax returns and tax records under lock and key.
  • Safeguard electronic files by encrypting and properly disposing them.
  • Shred tax documents before trashing.

Taxpayers should forward IRS-related scam emails to phishing@irs.gov. They can report IRS impersonation telephone calls at www.tigta.gov.

More Information:

Tis the season. . . .

For a risky time for people and their sensitive data.  Online shopping, impostors posing as charities seeking donations, spam, robocalls, tax scams, . . . .

What can you do to protect your information?  The IRS encourages people to review some simple steps to protect their data and protect their tax returns during filing season.  What are these simple steps?

  • Use strong security software
  • Use strong passwords
  • Don’t share your passwords
  • If you get a call from someone alleging to be from the IRS, HANG UP. Don’t buy into their scam.
  • Watch your emails for suspicious mail.
  • When using the internet, use “HTTPS” rather than “HTTP”. What’s the difference?  The “S” stands for secure and means that all communications between your browser and the website are encrypted.

The IRS is launching a special Twitter handle called @IRSTaxSecurity to share the latest scam and security alerts that routinely increase during tax season. Taxpayers can follow @IRSTaxSecurity. The Summit partners encourage people to share security information using the #TaxSecurity hashtag.

Do what you can to protect yourself from becoming a victim.

Capehart Blogs

Subscribe to Blog Updates

Choose the blogs and newsletters you would like to receive.

Categories