🦹♂️I recently fell victim to a personal vishing (voice phishing) scam.
I emphasize "personal" because this had zero impact on my business, as someone managing client data, I maintain strict security protocols and never share sensitive information.
Working in the crypto industry, I’m hyper cautious. I spot scam emails weekly, but this phone call caught me off guard. While the scammer only managed to get €26, her actual goal was to set up a direct debit for €500 per day.
I’m sharing this so you can avoid the same trap.
I was in the middle of switching energy providers when a scammer, impersonating MEO customer support, called me. She claimed my direct debit had failed and requested a quick payment via MB WAY to resolve it, followed by setting up a new direct debit. Transferring the €26 outstanding balance felt legitimate in the moment. However, the moment she asked me to send proof of the direct debit to a "Gmail address", the red flags went off🔻
✅Here are my key takeaways from this €26 lesson:
1⃣Verify the caller.
We are used to companies verifying our identity, but we rarely verify theirs. Going forward, whenever a provider calls, I will ask:
What was the amount of my last bill?
Which specific services do I have with you?
How long have I been a customer?
If they can't answer, I hang up.
2⃣Never authorize direct debits via MB WAY. Scammers use this method to bypass traditional bank safeguards and steal card details.
3⃣Reporting has its limits.
Within 10 minutes, I reported the scammer’s name, phone number, email, and company details to my bank, MEO, local police, and cybercrime authorities. Aside from an automated note from cybersecurity promising a follow-up that never came, nothing happened. Prevention really is your only real line of defense.
Stay sharp out there!