Monday, June 30, 2025

Security Boulevard Logo

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Creators Network
    • Latest Posts
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming Webinars
    • Calendar View
    • On-Demand Webinars
  • Events
    • Upcoming Events
    • On-Demand Events
  • Sponsored Content
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
    • Techstrong.tv Podcast
    • TechstrongTV - Twitch
  • Library
  • Related Sites
    • Techstrong Group
    • Cloud Native Now
    • DevOps.com
    • Security Boulevard
    • Techstrong Research
    • Techstrong TV
    • Techstrong.tv Podcast
    • Techstrong.tv - Twitch
    • Devops Chat
    • DevOps Dozen
    • DevOps TV
  • Media Kit
  • About
  • Sponsor

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Security Bloggers Network 

Home » Security Bloggers Network » Digital Trust & Safety Roundup: ATO surges and BNPL fraud on the rise this holiday season

SBN

Digital Trust & Safety Roundup: ATO surges and BNPL fraud on the rise this holiday season

by Sift Trust and Safety Team on December 22, 2022

December is a busy month for most people, filled with travel, time with family, and gift-giving. This December, however, was a challenging one for many consumers and merchants, not only because rising costs and a shaky economy impacted consumer behavior, but also because of rapidly accelerating fraud. As we close out this holiday season and say goodbye to 2022, our Trust and Safety Architects examine the fraud activity that surged during this period and what to expect in the new year. 

Fraud trends this holiday season

While various types of fraud run rampant during the holiday season, some tactics have been especially prevalent this year. Our data shows a concerning spike in account takeover attacks (ATO) as well as a continuing threat to buy now pay later (BNPL), as usage of this alternative payment method grows. 

What’s more, automation and online collaboration on the dark and deep web has made it easier than ever for fraudsters to plan and execute their schemes at scale. 

Techstrong Gang Youtube
AWS Hub

“Online fraud is no longer the purview of a few technologically gifted hackers,” says Trust and Safety Architect Jeff Sakasegawa. “Today’s digital capabilities have made fraud accessible to increasing numbers of people around the globe. With the proliferation of Deep and Dark Web marketplaces, fraudsters can communicate, collaborate, and sell their services more easily than ever before.”

Sakasegawa outlines why these fraud attacks are so damaging and how merchants should prepare now and into the new year in PaymentsJournal.

ATO skyrockets during Black Friday/Cyber Monday 

As predicted by Sift fraud experts, account takeover attacks proved to be a significant threat during this shopping season, surging over 94% in November alone. The popular shopping weekend between Black Friday and Cyber Monday also saw a 71% spike in ATO, with loyalty programs and crypto bearing the brunt.

Explore more of the latest holiday fraud data in our infographic. 

Buy now, pay later fraud on the rise

Buy now, pay later (BNPL) has become a fraud target since it soared in popularity among consumers in recent years, but this season brought increased attacks, as the rate of BNPL payment fraud attacks rose 109% in November alone. Rising costs have led even more consumers to turn to BNPL during this time to ease the burden of paying for holiday gifts. Fraudsters have also been taking advantage of BNPL providers’ marketing tactics, targeting publicly announced retail partners.

“We find that fraudsters can specialize in certain merchants, and they know how to hit them to get purchases through successfully,” says Sift Trust and Safety Architect Brittany Allen. “That’s another use of materials these providers have created for good to help legitimate consumers that are being increasingly spun as a marketing tactic on the deep and dark web.”

See what else Allen had to say about rising BNPL fraud and what merchants can do to protect themselves in Fintech Nexus.

Sift’s final Digital Trust & Safety Index report of 2022 is live—download to see the latest fraud data and insights.

The post Digital Trust & Safety Roundup: ATO surges and BNPL fraud on the rise this holiday season appeared first on Sift Blog.

*** This is a Security Bloggers Network syndicated blog from Sift Blog authored by Sift Trust and Safety Team. Read the original post at: https://blog.sift.com/digital-trust-safety-roundup-ato-surges-and-bnpl-fraud-on-the-rise-this-holiday-season/?utm_source=rss&utm_medium=rss&utm_campaign=digital-trust-safety-roundup-ato-surges-and-bnpl-fraud-on-the-rise-this-holiday-season

December 22, 2022December 22, 2022 Sift Trust and Safety Team Account Fraud, account takeover, ATO, black friday, bnpl, buy now pay later, Chargebacks, cyber monday, Digital Trust & Safety, First-party fraud, fraud prevention, Holiday Fraud, payment fraud, trust and safety
  • ← How to Implement FinOps and Increase Your Kubernetes Cost Avoidance
  • 6 Examples of Discretionary Access Control (DAC) →

Techstrong TV

Click full-screen to enable volume control
Watch latest episodes and shows

Tech Field Day Events

Upcoming Webinars

Securing Vibe Coding: Addressing the Security Challenges of AI-Generated Code
How to Spot and Stop Security Risks From Unmanaged AI Tools

Podcast

Listen to all of our podcasts

Press Releases

GoPlus's Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

GoPlus’s Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

C2A Security’s EVSec Risk Management and Automation Platform Gains Traction in Automotive Industry as Companies Seek to Efficiently Meet Regulatory Requirements

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

Zama Raises $73M in Series A Lead by Multicoin Capital and Protocol Labs to Commercialize Fully Homomorphic Encryption

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

ThreatHunter.ai Halts Hundreds of Attacks in the past 48 hours: Combating Ransomware and Nation-State Cyber Threats Head-On

Subscribe to our Newsletters

ThreatLocker

Most Read on the Boulevard

N. Korean Group BlueNoroff Uses Deepfake Zoom Calls in Crypto Scams
‘IntelBroker’ Hacker Arrested for Wave of High-Profile Data Breaches
Fortanix Adds Dashboard to Better Prioritize Remediation Efforts for PQC Era
Abstract Security Adds Data Lake to Reduce Storage Costs
NIST’s CURBy Uses Quantum to Verify Randomness of Numbers
AI vs. AI: How Deepfake Attacks Are Changing Authentication Forever
Cybersecurity Snapshot: U.S. Gov’t Urges Adoption of Memory-Safe Languages and Warns About Iran Cyber Threat
Best SAST Solutions: How to Choose Between the Top 11 Tools in 2025
The Hacktivist Cyber Attacks in the Iran-Israel Conflict
Bankers Association’s Attack on Cybersecurity Transparency

Industry Spotlight

Russian Throttling of Cloudflare ‘Renders Many Websites Barely Usable’
Cloud Security Cybersecurity Data Security Featured Industry Spotlight Mobile Security Network Security News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Social Engineering Spotlight 

Russian Throttling of Cloudflare ‘Renders Many Websites Barely Usable’

June 30, 2025 Jeffrey Burt | 1 hour ago 0
WhatsApp BANNED by House Security Goons — But Why?
Application Security Cloud Security Cyberlaw Cybersecurity Data Privacy Data Security DevOps Endpoint Featured Governance, Risk & Compliance Humor Incident Response Industry Spotlight Mobile Security Most Read This Week Network Security News Popular Post Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threats & Breaches Vulnerabilities 

WhatsApp BANNED by House Security Goons — But Why?

June 24, 2025 Richi Jennings | Jun 24 0
Scattered Spider Targets Aflac, Other Insurance Companies
Cloud Security Cybersecurity Data Privacy Data Security Featured Identity & Access Industry Spotlight Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Social Engineering Spotlight Threat Intelligence 

Scattered Spider Targets Aflac, Other Insurance Companies

June 22, 2025 Jeffrey Burt | Jun 22 0

Top Stories

NIST’s CURBy Uses Quantum to Verify Randomness of Numbers
Cloud Security Cybersecurity Data Privacy Data Security Featured Identity & Access Mobile Security Network Security News Security Awareness Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threat Intelligence Threats & Breaches 

NIST’s CURBy Uses Quantum to Verify Randomness of Numbers

June 29, 2025 Jeffrey Burt | Yesterday 0
‘IntelBroker’ Hacker Arrested for Wave of High-Profile Data Breaches
Cloud Security Cybersecurity Data Privacy Data Security Featured Identity & Access Mobile Security Network Security News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight Threat Intelligence Threats & Breaches 

‘IntelBroker’ Hacker Arrested for Wave of High-Profile Data Breaches

June 28, 2025 Jeffrey Burt | 1 day ago 0
Abstract Security Adds Data Lake to Reduce Storage Costs
Cybersecurity Featured News Security Boulevard (Original) Social - Facebook Social - LinkedIn Social - X Spotlight 

Abstract Security Adds Data Lake to Reduce Storage Costs

June 27, 2025 Michael Vizard | 3 days ago 0

Security Humor

Randall Munroe’s XKCD ‘Interoperability’

Randall Munroe’s XKCD ‘Interoperability’

Download Free eBook

7 Must-Read eBooks for Security Professionals

Security Boulevard Logo White

DMCA

Join the Community

  • Add your blog to Security Creators Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: [email protected]

Useful Links

  • About
  • Media Kit
  • Sponsor Info
  • Copyright
  • TOS
  • DMCA Compliance Statement
  • Privacy Policy

Related Sites

  • Techstrong Group
  • Cloud Native Now
  • DevOps.com
  • Digital CxO
  • Techstrong Research
  • Techstrong TV
  • Techstrong.tv Podcast
  • DevOps Chat
  • DevOps Dozen
  • DevOps TV
Powered by Techstrong Group
Copyright © 2025 Techstrong Group Inc. All rights reserved.
×