Weโre doing more things digitally, from banking to shopping to accessing government services. All of that brings convenience into our lives โ but also the need to protect our data toย avoid digital fraud.ย ย
Hackers and scammers are constantly coming up with sophisticated new schemes, making it harder to tell whatโs real or fake, or which messages are genuine and which are part of phishing scams. (According to an Interac study, 96 per cent of Canadians failed to identify the safest way forward when presented with a phishing scam.)
No wonder people are feeling worn down by repeated fraud and scam attempts.
Here are 11 data security tips to help you avoid falling prey to online scams:
1. Never share your email account password
Aim to create ugly passwords. What does that mean? When you ensure your password follows best practices โ so itโs a minimum length of eight characters, with a combination of upper- and lower-case letters and at least one number and one special character โ the result is a password that doesnโt look so easy on the eyes. (For example, rather than simply โjaysfan,โ come up with something more like J@yzFan*92.)
2. Donโt click on phishing links that lead you to sign in to your email or your online banking
If you receive an email or text message you werenโt expecting and itโs prompting you to log in to your online banking or accept funds through an online money transfer, donโt click on the link. It could be a phishing scam. Contact the sender through another channel to find out if the notification is legitimate. If you think the notification is a scam masquerading as an Interacโฏe-Transfer transaction, forward the email to phishing@interac.ca so our fraud team can investigate it.
3. Avoid sharing personal identifiable information online
The more hackers know about you, the easier it can be for them to scam you. So avoid sharing personal identifiable information online. You can learn more here about how hackers use the web and social media to piece together information about you โ everything from your carโs make and model to your petsโ names (the article can help you tidy up any breadcrumbs youโve left for potential hackers).
Also beware online trivia games that ask you to share your birthday, your motherโs maiden name, or similar identification questions.
4. Set up two- (or multi-) factor authentication on email accounts
Multi-factor authentication is a method for proving you are who you say you are using at least two verification factors. For example, you may set up an account so it requires you to enter a password to log in, as well as a single-use code that arrives via text message (if you have the code, it proves you are in possession of the phone number associated with the account.) If your email provider doesnโt have a two-factor authentication process, consider switching to an email provider that does.
5. Donโt use the same passwords for online banking or email accounts that you use to access your social media sites
You donโt want to be in a situation where a hacker gets access to all of your accounts just by obtaining one password. Itโs important to not only use different passwords for each site or service, but also to change those passwords regularly. How to keep them all straight? Try using a password manager โ thatโs an app that lets you securely keep track of your passwords.
6. Regularly update your devices to make sure youโve got all the latest data security enhancements
Software updates, including updates on the operating software of your phone can include new security measures. Also, donโt forget to check your device for malware if you notice suspicious activity.
7. Never click on any links you werenโt expecting
If you receive a deposit or online money request notification by text or email that you werenโt expecting, donโt open it. Contact the (supposed) sender through another channel and ask them whether the transaction is legitimate.
8. Make sure you enter the email address or SMS (phone) number correctly when sending an online money transfer
Part of keeping your money secure is making sure it ends up going to the right place. When youโre sending money with Interac e-Transfer, double-check youโve got the right information for the recipient before you confirm it. If thereโs a mistake, the funds could end up in the wrong hands.
9. Be sure you know who you are sending the online money transfer to, and that they are a trusted person or vendor
Online money transfers are used to transact with people, businesses and other parties you know and trust. When you receive a request for money, beware. Once again, messages that arrive unexpectedly are a big red flag, especially when theyโre asking for money.
10. Choose a strong security question
If your email has been hacked, scammers can intercept any message you receive, including money transfers. That means, if you donโt have Interac e-Transfer Autodeposit set up, you need to make sure your security question is strong (That means no more โWhat colour is the sky?โ).
A good security question is one where the answer cannot be easily guessed โ for example, โWhat is your momโs middle name?โ or, โWhat is the secret password I gave you?โ Itโs a good idea to agree on a shared secret security question before sending theโฏInteracโฏe-Transfer transaction.
11. If youโre using security questions to send an online money transfer, make sure youโre not sending the password answers through your email
To be safe, communicate security-related information through a different channel (like a voice phone call).
When inputting the information to send money using Interac e-Transfer, itโs important not to use the memo field to share the answers to security questions. This would enable an email hacker to answer the question. It would be like locking up your goods in a box and then leaving the key on top.
Finally, keep in mind that hackers can try searching online for the answers to your security questions.
Thatโs why โWhatโs my petโs name?โ isnโt a very secure question: If youโve posted about your pet somewhere (and who hasnโt?), then hackers would be able to answer the question.
More fraud prevention and cyber security tips
Set up Interac e-Transfer Autodeposit for an extra layer of digital security
Interac e-Transfer Autodeposit is a feature that enables you to receive money without having to set up a security question and answer โ the funds automatically and directly go to your bank account following a routine fraud check by your financial institution. With Autodeposit set up, you can avoid the risk of having your funds intercepted by fraudsters who may have access to your email account, because the funds are directly deposited into your bank account with no additional steps needed.
Practise the โThree Ssโ โ Stop, Scrutinize, Speak up
Whenever you think you may be a target for a scam, Interac advises taking a โThree S approach,โ meaning you Stop before acting on an unusual message or request; Scrutinize the situation carefully; and Speak up if you have been targeted byโฏreporting it to the Canadian Anti-Fraud Centre.
Canadians are a first line of defence in preventing online fraud and have an important role to play when it comes to protecting themselves and their identity online. Armed with confidence, awareness, and the right information, you can do your part to protect your data from digital fraud.
Protect yourself against digital fraud by performing a digital security self-check.