Beware - Black Friday online shopping scams are here now

password manager security
(Image credit: Passwork)

Although Black Friday isn't due for another couple of days, cybercriminals aren't holding back from trying to take advantage of the upcoming shopping spree. 

Cybersecurity researchers from Bitdefender have carried out a wide range of recent analysis, and found numerous scams trying to take advantage of gullible shoppers.

The most popular method seems to be a phishing campaign luring people with huge discounts on designer bags and sunglasses, and then stealing their credit card information, when victims submit this information on specially-crafted landing pages.

Fake surveys, fake sunglasses

Besides fake Louis Vuitton bags, victims are also lured in with fake gift cards from Amazon and Home Depot, worth as much as $1,000, as well as fake surveys promising people major rewards, such as Pixel phones and Samsung Galaxy S21 phones. In some cases, the researchers have also spotted fake PayPal vouchers, too.

With the vouchers and surveys, the victims are invited to complete the task, and then - should they win the award (and they always do, regardless of the answers) - all they need to do is pay the shipping cost, which the fraudsters claim to be around $5.

To make this payment, they’re also required to give away all the credit card information, including the expiry date and the CVV number. So, not only will the victims make a small donation to the fraudsters in ignorance, but they will have also given them access to their accounts, which they can then clear out.

Just as with any other holiday, Black Friday is a major event for fraudsters, and Bitdefender’s researchers are urging customers to be extra careful when on the hunt for great offers. 

“Don’t fall for the impressive discounts that sound too good to be true,” they say. Even if you receive an offer that looks absolutely legitimate, do not click on the link provided, but rather visit the page directly, to make sure you’re not being redirected to a malicious landing page. 

TOPICS

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Two characters exchange Christmas gifts in Christmas at the Golden Dragon
Christmas shopping scams – how to stay safe
A man falling into a mobile phone screen.
Safer Internet Day: how to avoid online scams and stay safe online
Concept art representing cybersecurity principles
Cybercriminals cashing in on holiday sales rush
A person using a smartphone with an ecommerce website showing on a laptop.
Tech deals in 2025: navigating ‘ghost’ discounts and fake reviews
A light pink gift box with blush pink bow, red hearts and confetti on a pastel pink background.
How to spot Valentine’s Day scams - stay safe on this most special day with our security tips
Google Pixel Scam Detection warning
Common internet scams and how to avoid them
Latest in Security
An American flag flying outside the US Capitol building against a blue sky
The FCC is creating a security council to bolster US defenses against cyberattacks
Image depicting hands typing on a keyboard, with phishing hooks holding files, passwords and credit cards.
Microsoft warns about a new phishing campaign impersonating Booking.com
Ransomware
Microsoft uncovers sleuthy new XCSSET MacOS malware campaign
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Meta warns of worrying security flaw hitting open source type software
Hand holding smartphone and scan fingerprint biometric identity for unlock her mobile phone
Passwordless authentication continues to grow, with biometrics helping push adoption
Data leak
Hacked Tata Technologies data leaked by ransomware gang
Latest in News
Stress
Complexity of IT systems could be increasing security risks for businesses
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
CEOs think they might lose their jobs if they can't deliver on AI
Tony Hawk's Pro Skater 3+4
From Ace of Spades to Them Bones, Tony Hawk's Pro Skater 3+4's soundtrack is already looking excellent
An AMD Radeon RX 9070 XT made by Sapphire on a table with its retail packaging
AMD describes its recent RDNA 4 GPU launch as 'unprecedented' and promises restocking the Radeon RX 9070 XT as 'priority number one'
The Google Gemini logo against a black background.
I tried Gemini's new AI image generation tool - here are 5 ways to get the best art from Google's upcoming Flash 2.0 built-in image upgrade
An image of the Samsung Galaxy S25 Ultra from a hands-on event
Samsung Galaxy S26 Ultra could resurrect an intriguing camera feature