How to prevent digital scams

Fraud attempts can come through email, phone calls, text messages, social media, fraudulent websites, or when shopping and conducting transactions online. Understanding the most common types of scams and taking basic security precautions can help protect your personal information and accounts.

How digital scams may occur

Phishing

Phishing messages are designed to appear as though they come from banks, companies, or government agencies. They aim to persuade recipients to click a link or download a file in order to steal personal information or install malicious software.

Smishing

Smishing messages can be delivered via SMS, WhatsApp, or other messaging services. They often impersonate an institution, company, or government agency to request personal information, send links, or persuade recipients to carry out a transaction.

Vishing

Through vishing calls, scammers may pose as a representative of a bank, e-wallet provider, government agency, or company to request personal information, passwords, or security codes.

Unauthorized SIM swap

SIM swapping occurs when scammers attempt to obtain a duplicate of a person’s phone line in order to access bank apps or e-wallets and take control of their accounts.

Fake loan or benefit offers

A loan, prize, cashback offer, or other benefit may be used as a pretext to request personal information, ask for a transfer, or direct individuals to a fraudulent website.

Before proceeding, the offer should be verified directly with the institution or provider through its official channels.

Alleged transfer errors

If someone claims to have made a transfer by mistake and asks for the money to be returned, first it should be verified in the account that the funds were actually credited before taking any action.

No links or information provided by the person who initiated the contact should be used.

Fake representatives or help desks

Someone may impersonate a representative of a bank, e-wallet provider, company, or government agency to instruct individuals to perform certain actions or to request personal information.

No transactions should be carried out through ATMs, mobile apps, or online banking while communicating with someone claiming to be a representative.

If in doubt, the communication should be ended to contact the institution directly through its official channels.

Fake websites, profiles, or advertisements

Fraud attempts may also involve websites, social media profiles, advertisements, or other content designed to mimic the identity of banks, companies, or government agencies.

Before entering any information or completing a transaction, individuals should make sure they are using the official website, app, or account.

Warning signs

It is important to be cautious when a communication:

– requests passwords, login credentials, verification codes, or banking information;

– creates a sense of urgency or pressure to act immediately;

– asks the person to make a transfer or return money;

– instructs the person to use an ATM, mobile app, or online banking service while on a call;

– includes links to unknown websites or web addresses designed to resemble official ones;

– offers loans, prizes, cashback, or other benefits through unverified channels;

– asks the person to install apps or software to provide remote assistance.

How to protect information and accounts

1. Be wary of requests for personal or financial information

Do not act under pressure in response to promises of prizes, alleged cashbacks, unexpected benefits, threats, or financial offers received through unverified channels.

2. Avoid links received in messages

If in doubt, access the bank’s, company’s, or government agency’s official website by typing the web address directly into your browser or by using its official app.

3. Do not share passwords or verification codes

Do not provide usernames, passwords, codes received by email or text message, or images of documents through unverified support channels.

4. Use strong passwords

Use a different password for each app or e-wallet.

Passwords should be strong and should never be shared with others. It is also advisable to avoid saving passwords in your browser.

5. Enable two-factor authentication

Whenever available, enable a second authentication factor for bank apps, e-wallets, and other services.

6. Avoid insecure connections

Avoid using public Wi‑Fi networks when conducting sensitive transactions, and disable Bluetooth, Wi‑Fi, or NFC when they are not in use.

7. Protect your phone

Set up a passcode or biometric authentication, and avoid displaying sensitive notifications when the screen is locked.

If you suddenly lose mobile service, contact your mobile carrier to verify whether a SIM replacement or transfer has been requested. If unauthorized activity is confirmed, change your passwords immediately and report the incident.

8. Review app permissions and keep devices up to date

Disable access to your location, camera, or microphone when those permissions are not necessary.

Keep your operating system, browser, and applications up to date, and use up-to-date security tools.

Keep in mind

Neither the Board nor the officials of the BCRA offer or promote investment platforms.

The BCRA does not request passwords, login credentials, or banking information by phone, email, text message, or social media.

If you use online investment platforms

Before using an online investment platform, it is advisable to:

  • – research its reputation;
  • – make sure the platform is registered with the National Securities Commission, where appropriate;
  • – use a strong, unique password;
  • – avoid saving your password in your browser;
  • – enable two-factor authentication;
  • – access the platform only from your own devices;
  • – set up login and logout notifications.

If you receive an investment offer by email, verify the sender’s identity before opening any links or attachments.

Never share verification codes received by email, text message, or any other communication channel.

If you sell products online

To help reduce risks, it is advisable to:

  • – use reputable sales platforms with security features;
  • – access the platform only from your own devices;
  • – avoid saving passwords in your browser;
  • – enable account access notifications;
  • – verify that a payment has been credited before shipping a product;
  • – confirm any alleged payment or transfer directly in your own account before issuing a refund.

If a buyer claims that a transfer was made by mistake, always verify that the funds have actually been credited to your account before returning any money.

What to do in the event of a suspected fraud

If you notice a suspicious or unauthorized transaction, contact your bank or financial service provider immediately through its official channels to:

  • – report what happened;
  • – block access to your accounts, if necessary;
  • – suspend or cancel cards;
  • – make a formal complaint.

You may also report the incident to the Specialized Cybercrime Unit (Unidad Fiscal Especializada en Ciberdelincuencia, UFECI):

Address: Sarmiento 663, 6th floor, Autonomous City of Buenos Aires

Phone: (+54 11) 5071-0040 / 0041

Email: denunciasufeci@mpf.gob.ar

Submitting a claim for fraud or scam