Fraud Investigator | Cybersecurity Expert 🔍💻 | Exposing scams & tracking digital crime ⚖️| Fighting fraud with facts & tech. DMs are open for report🗣️=👨⚖️
While you're looking for love, scammers are looking for you. If your "perfect match" starts asking you to invest in CRYPTO, chances are they re trying to con you.
Keep your heart and your wallet intact by learning to spot this common scam
As InfraGard celebrates its 30th anniversary, the program is expanding its recruitment efforts to include a new focus on college students and recent graduates and introduce emerging professionals to InfraGard’s mission of protecting critical infrastructure. Bringing the next generation of talent into the #InfraGard community is an important step in sustaining strong public–private collaboration for years to come.
If you’re a student or new graduate interested in national security, critical infrastructure, or public–private partnership, consider applying to join the InfraGard network. You will gain connections to industry leaders as well as access to free educational webinars and networking/mentorship opportunities with professions working within critical infrastructure. Learn more and start your application at https://t.co/vD4Qwo5tIN. #FBI
ICE HSI special agents arrested Leonel Marcado-Jaimes, of Mexico, on N. Lawler Ave during an HSTF targeted operation in Chicago June 18.
HSI targeted Mercado Jamies on federal drug trafficking charges.
📍That’s why ICE was in the neighborhood. Remember, ICE makes TARGETED arrests of criminal illegal aliens. If you see an HSTF team in your community, there’s a very good reason for it.
🔎Mercado Jamies is a previously removed criminal illegal alien with drug trafficking and sexual assault convictions who snuck back into this country.
👉He’ll remain in federal custody and be deported again after he faces justice on the new charges.
Email is still one of the top ways hackers gain access to organizations or carry out fraud. That’s why strengthening email authentication and malicious content protections is one of Operation Winter SHIELD’s 10 Key Defenses.
Simple but powerful steps—like properly configuring and enforcing DMARC, SPF, and DKIM—can significantly reduce email spoofing by making it harder for criminals to send messages that appear to come from your domain. While these controls are not bulletproof and users must remain vigilant, strong implementation can dramatically limit attackers’ success. It’s also important to implement these technologies separately for incoming and outgoing mail.
Organizations should also use time-of-click link protection to catch malicious URLs in real time, quarantine or sandbox suspicious attachments, block macros in files downloaded off the internet, and restrict automatic external forwarding to reduce the risk of account compromise and data loss.
The importance of these steps was highlighted in a joint advisory warning that North Korean cyber actors were exploiting weak DMARC policies to disguise spearphishing emails as legitimate messages. Without properly configured protections, attackers can impersonate trusted senders. This makes their social engineering efforts far more convincing and dangerous.
Follow Operation Winter SHIELD at https://t.co/h6sbqQLtq8. Learn more about North Korean spearphishing efforts here: https://t.co/RiWsp4uZtw
Today, the #FBI, Europol and law enforcement agencies around the world executed a takedown of LeakBase, one of the largest cybercriminal platforms, seizing users’ accounts, posts, credit details, private messages and IP logs for evidentiary purposes. Together with our partners, we are sending a message that no criminal is truly anonymous online and removing an easy point of access to stolen information on American businesses and citizens.
The FBI will continue to defend the homeland by dismantling the key services that #cybercriminals use to facilitate their attacks. https://t.co/sAlBTORRG0
Derrick Van Yeboah, a Ghanaian national, pleaded guilty to stealing more than $10 million from victims through romance scams. He was a member of a criminal organization based in Ghana that preyed on vulnerable older men and women and stole, in total, more than $100 million from dozens of victims. The conspirators also engaged in business email compromises to deceive businesses into sending wire transfers. https://t.co/rtQ3v1R6rX
This week on Ahead of the Threat, the #FBI Cyber podcast, Amy Herzog, Vice President and Chief Information Security Officer at Amazon Web Services, joins Assistant Director Brett Leatherman for an expansive discussion on the importance of security fundamentals, using logging for both incident response and threat intelligence, and the FBI’s Operation Winter SHIELD. https://t.co/iEm6grmf1T
In this episode’s Top Three segment, AD Leatherman and Jason Bilnoski, the FBI’s Deputy Assistant Director for #cyber operations, discuss the coordination between law enforcement and industry in the recent takedowns of Leakbase and Tycoon 2FA, and how AI is changing the landscape for attackers and defenders.
Find all episodes and transcripts 👉 https://t.co/aASpTxVPPo
When administrator privileges are widely shared and always available, a compromised account creates a bigger risk for your organization. An attacker who steals an employee’s credentials may already have high-level access or be able to quickly obtain it and move through your network.
That’s why Reducing Administrator Privileges is one of Operation Winter SHIELD’s 10 Key #Cyber Defenses. Limit administrator access to those who truly need it. Even then, admin privileges should only be used when necessary, with standard accounts used for everyday tasks.
Organizations should also require temporary (“just-in-time”) access from secure devices, restrict where admin logins are permitted, and monitor for new admin accounts and privilege changes.
These steps are critical to prevent attackers from gaining broad control. Our Akira ransomware advisory shows how frequently attackers can create new user accounts and add them to the administrator group, establishing a foothold in a victim’s environment.
Learn about Akira ransomware TTPs: https://t.co/BNYWeYzFOf. And follow the #FBI #OWS campaign at https://t.co/h6sbqQLtq8
Today the #FBI and @TheJusticeDept announced an international law enforcement operation that took down SocksEscort, a global malicious proxy service, seizing dozens of servers and domains and freezing millions of dollars in cryptocurrency. Criminals infected home and small business routers with backdoors, then sold access to use them in cyberattacks, causing millions in losses. @FBISacramento is investigating the case. https://t.co/Nwi5PgSWDJ
Today the #FBI released an advisory with indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) associated with AVrecon malware, which has targeted routers and other devices in over a hundred countries around the world, including the United States. Cybercriminals have compromised routers, installed AVrecon malware, and sold access to infected devices using the SocksEscort residential proxy service.
Find technical details and recommended mitigations 👉 https://t.co/q3otvSbx4m
Today the FBI released a #PSA on residential proxy networks, the risks they pose, and the steps the public can take to safeguard their devices. Cyber threat actors use residential proxies to hide their identities and locations by routing traffic through infected routers in homes and small businesses – facilitating cyberattacks, fraud, and other crimes.
Click for #FBI tips to protect yourself and your Internet of Things (IoT) devices like routers, TV streaming devices, digital picture frames, smartphones, and tablets: https://t.co/hmmbb3i5mD
The FBI and our partners have seized domains associated with BreachForums, a major criminal marketplace used by ShinyHunters, Baphomet, and IntelBroker to traffic stolen data and facilitate extortion.
This takedown removes access to a key hub used by these actors to monetize intrusions, recruit collaborators, and target victims across multiple sectors. It demonstrates the reach of coordinated international law enforcement operations to impose cost on those behind cybercrime.
🚨 New phishing trend: Fake "document signing" links that mimic DocuSign & Adobe.
They steal your login and signature authority in seconds.
👉 Always check the sender’s domain the real one ends with .docusign.com or .adobe.com.
#PhishingAlert#DigitalSafety
💰 Online investment scams are back this time with fake “crypto recovery experts.”
They promise to get your money back… and then steal what’s left.
🛑 No legit investigator asks for payment in crypto.
#ScamAlert#FraudAwareness#Cybercrime
If your bank texts you about a “locked account,” don’t panic pause.
Real banks never send clickable links in SMS.
🚫 Tap nothing.
✅ Open your banking app directly instead.
#OnlineScams#FraudPrevention#CybersecurityTips
⚠️ Scammers evolve daily. Their latest trick? Using AI voice cloning to imitate loved ones in distress calls.
✅ Always verify before you act.
🔍 Call the real person back never the number that called you.
#CyberSecurity#AIFraud#StayAlert
The FBI and our law enforcement partners are seeking your help locating 7 fugitives featured on the newly launched “Chicago Most Wanted" list. A product of the nationwide "Operation Summer Heat" initiative, each are alleged to have committed violent acts and are a threat to public safety. Report tips (even anonymously) to 1-800-CALL-FBI or https://t.co/YsyApSvbbb. Reward money may be available.
Learn more about Chicago's efforts to crush violent crime at: https://t.co/ClHoprV12H.
@ChomskyChannel@gentile_goy@Imposter_Edits Hello, I’m Robert Broberg a Fraud Investigator and Cybersecurity Expert focused on exposing scams and tracking digital crime.
If you or someone you know has been scammed online, or if you have any suspicion about an account on social media, I’d be glad to take a look.
The FBI has released a FLASH alert on the targeting of Salesforce platforms by the cybercriminal groups UNC6040 and UNC6395, which are responsible for a surge in data theft and extortion attempts. Click for indicators of compromise (IOCs) and protect your organization: https://t.co/CNCBWbMzMj