Technology
Cheap Black Friday deals cost to your privacy
It’s the perfect time to pick up holiday gifts for your family and treat yourself to that pricey watch you wouldn’t splurge on otherwise.
Black Friday is a worldwide cultural and economic phenomenon today. It comes with much anticipation, great discounts and a shopping frenzy. Its success is such that it now lasts the whole month. But don’t let the excitement cloud your judgment.
The deals are enticing, but there are dangers lurking beneath the surface.
I’M GIVING AWAY A $500 GIFT CARD FOR THE HOLIDAYS
A woman shopping online on her laptop. (Kurt “CyberGuy” Knutsson)
The devil’s in the privacy policy
Particularly when it comes to online shopping, we give up personal data with every purchase. Information such as your email address, name and address is necessary to create an account or receive a delivery. And that’s fine as long as it’s used for these purposes only.
However, the fine print linked under “Privacy Policy” that you agree to at checkout often comes with a long list or, worse still, an unspecified number of third parties with which your data will be shared. Retailers often sell personal information and purchase histories to third parties, such as marketing companies and data brokers, who use it to build detailed consumer profiles. Once it’s out there, it’s very hard to remove your information from these third-party databases.
Arguably, this happens all the time, Black Friday or not. But with all the marketing strategies pushing us to buy quickly and buy more, we’re just less likely to pay attention.
A woman shopping online on her laptop. (Kurt “CyberGuy” Knutsson)
BEST WAY TO CONNECT YOUR NEW LAPTOP TO EXTERNAL DEVICES
The spam and scam aftershock, a post-Black Friday hiccup
The term “Black Friday” was originally coined in the 1950s by Philadelphia police officers to describe the chaos that ensued the day after Thanksgiving, when hordes of shoppers and tourists flooded the city.
After the shopping extravaganza of Black Friday, your inbox and phone may experience their own dark moments. A surge in spam is widely reported during the month of November. This unwanted communication can come from several sources.
First, from the online shops where you’ve left your email and phone number. Second, from all the companies that received your consumer profile, the ones listed (or not) in the fine print of the privacy policy. Third, from all the retailers you bought from in the past, including that one-time purchase of a kettlebell set three years ago (that you’d rather forget).
But that’s not all; Black Friday is a fiesta for hackers, too, and the perfect time for social engineering attacks! The urgency and excitement of Black Friday deals encourage you to let your guard down. You’re likelier to click on links or open attachments without checking the source. And less likely to notice that a phishing email pretending to be sent by a big retailer has sneaked into your inbox. Your data is being collected, shared and sold as you read this article.
A woman shopping online on her laptop. (Kurt “CyberGuy” Knutsson)
THE DANGEROUS INTERSECTION OF PEOPLE SEARCH SITES AND SCAMS
How to buy without being sold at the same time
Reading privacy policies every time you buy something isn’t realistic. If you’re ambitious, use the search function (Ctrl+F or Command+F) to find terms like “opt out,” “unsubscribe” or “do not sell” to quickly locate sections where you can limit data sharing. Depending on where you live, these options may simply not be available to you.
An easier solution is to use a disposable email address whenever you open an account for the sole purpose of making a purchase. Once you receive your order confirmation, you can disable it so that no further communication is sent your way. You can also use privacy-focused tools or browsers that block tracking cookies and prevent companies from collecting your data.
A woman shopping online on her laptop. (Kurt “CyberGuy” Knutsson)
5 SECRETS TO SHOPPING SMARTER ON AMAZON
8 tips to safeguard your email after Black Friday
As the dust settles from the shopping rush, it’s crucial to be proactive; here are eight essential tips to help you protect your email and personal information from the surge of spam and scams that often follow.
1. Create alias email addresses. An alias email address is an additional email address that can be used to receive emails in the same mailbox as the primary email address. It acts as a forwarding address, directing emails to the primary email address. An email alias address is a great way for you to stop receiving constant spam mail by simply deleting the email alias address. See my review of best secure and private email services here.
2. Use a password manager to consistently use complex passwords that you can change frequently.
3. Avoid opening attachments or clicking on links from emails unless you are sure they are from a trusted source. Scammers or hackers can easily change the name of the sender to make it look like it came from a legitimate organization such as Amazon or an individual. But if you click the email header, you will see the sender’s actual email address. By pretending to be a reputable organization, the crooks send urgent messages to make you click on links, reply or provide personal information in an attempt to fix a problem or claim a reward. If you click on a malicious link, then a scammer may be able to access your email and other personal data.
4. Have strong antivirus software on all your devices: The best way to protect yourself from having your data breached is to have antivirus protection installed on all your devices. Having good antivirus software actively running on your devices will alert you of any malware in your system, warn you against clicking on any malicious links in phishing emails, and ultimately protect you from being hacked.
WHAT IS ARTIFICIAL INTELLIGENCE (AI)?
Malicious links are often disguised as legitimate ones, but they can download malware onto your device without your knowledge. Malware is a type of software that can damage your device, steal your personal information, or give hackers access to your data. Hackers can then use your data for various purposes, such as identity theft, fraud or blackmail. This is why it is important to have antivirus software that can detect and remove malware before it causes any harm. Get my picks for the best 2024 antivirus protection winners for your Windows, Mac, Android and iOS devices.
5. Go directly to the official site where you have any accounts, such as your financial institution, to check if any changes or charges were made instead of clicking links in the email you received or responding to the email. This way, you can avoid falling for phishing scams and keep your account secure.
6. Limit the number of accounts or profiles you create with your personal email account.
7. Regularly scrub your personal information on the internet. You don’t want spammers to take your email and add it to their lists, do you? That would result in annoying and potentially dangerous messages flooding your inbox. To prevent that, you need to make sure your personal information is not exposed on the internet. While no service promises to remove all your data from the internet, having a removal service is great if you want to constantly monitor and automate the process of removing your information from hundreds of sites continuously over a longer period of time. Check out my top picks for data removal services here.
8. Using a VPN (Virtual Private Network) service can enhance your privacy by encrypting your internet traffic, making it harder for hackers and third parties to intercept your data, especially on public Wi-Fi. A VPN masks your IP address, helping to obscure your location and online activity. While VPNs don’t directly prevent phishing emails, they reduce the exposure of your browsing habits to trackers that may use this data maliciously. With a VPN, you can securely access your email accounts from anywhere, even in areas with restrictive internet policies. See my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android and iOS devices.
I’ve been scammed! What to do next?
If a scammer gets hold of your email address, they can use it to access your other accounts, send phishing emails to trick you into revealing your passwords or personal details, or even impersonate you to commit fraud or other crimes. This is why it is important to protect your email address from falling into the wrong hands and to act quickly if you suspect that it has been compromised. Below are some next steps if you find you or your loved one is a victim of identity theft.
1. If you can regain control of your accounts, change your passwords and inform the account provider.
2. Look through bank statements and checking account transactions to see where outlier activity started.
3. Use identity theft protection services to manage your personal information on and offline. Identity Theft protection companies can monitor personal information like your home title, Social Security Number (SSN), phone number, and email address and alert you if it is being used to open an account. They can also assist you in freezing your bank and credit card accounts to prevent further unauthorized use by criminals.
One of the best parts of using identity theft protections services is that it can include identity theft insurance of up to $1 million to cover losses and legal fees and a white-glove fraud resolution team where a U.S.-based case manager helps you recover any losses. See my tips and best picks on how to protect yourself from identity theft.
4. Report any breaches to official government agencies like the Federal Communications Commission.
5. You may wish to get the professional advice of a lawyer before speaking to law enforcement, especially when you are dealing with criminal identity theft, and if being a victim of criminal identity theft leaves you unable to secure employment or housing.
6. Alert all three major credit bureaus and possibly place a fraud alert on your credit report.
7. Run your own background check or request a copy of one if that is how you discovered your information has been used by a criminal.
If you are a victim of identity theft, the most important thing to do is to take immediate action to mitigate the damage and prevent further harm.
Kurt’s key takeaways
Navigating the world of online shopping during Black Friday can be a thrilling yet daunting experience. While the discounts are enticing, they often come with hidden costs — namely, your personal data. As you prepare your shopping list, consider utilizing tools to safeguard your information. These resources can help you maintain your privacy while enjoying the benefits of online shopping. Also, remember that post-Black Friday, you may find yourself inundated with spam and unwanted communications from retailers and third parties. Taking proactive steps now can save you from future headaches.
Have you ever experienced a data breach or privacy issue while shopping online? How did you handle it? Let us know by writing us at Cyberguy.com/Contact
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter
Ask Kurt a question or let us know what stories you’d like us to cover.
Follow Kurt on his social channels:
Answers to the most-asked CyberGuy questions:
New from Kurt:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
Amazon’s Echo Hub gets a customizable new look and Ring’s AI features
Amazon’s rolling out a free software update for Echo Hub devices that gives the home screen a much-needed update to the interface it launched with in 2024. It had already added Alex Plus AI support, but the new interface has a cleaner, fully customizable layout that fits more smart home info and controls on the screen than the previous version.
The Echo Hub is also getting access to Ring AI’s Video Search feature that lets you use natural language to search through your smart home camera footage, as well as Alexa Plus summaries of detected camera events.
These are the five new features Amazon highlighted for the Echo Hub:
Organize by r …
Read the full story at The Verge.
Technology
Grandparents are identity theft’s biggest payday
NEWYou can now listen to Fox News articles!
The FBI calls it a “distress scam.” It is also known as a grandparent scam. The scam works by making an older adult believe a grandchild is in serious trouble and needs money right away, often before a court date or legal deadline. Victims reported more than $5 million in losses to this type of fraud in 2025. The FBI’s Internet Crime Complaint Center also noted that reported losses likely show only part of what scammers actually stole.
The Federal Trade Commission found in August 2025 that some of the fastest-growing scams targeting older adults use fear and urgency to override good judgment. A caller may claim your bank account was hacked and say you need to move your money immediately to protect it. However, the money does not move to safety. It goes straight to the scammer.
HOW TO HAND OFF DATA PRIVACY RESPONSIBILITIES FOR OLDER ADULTS TO A TRUSTED LOVED ONE
AI voice-cloning tools have made these scams even more convincing. Scammers can use a birthday video, voicemail or social media clip to mimic a grandchild’s voice. Then they place the call. The voice sounds familiar, the emergency feels real and the request for bail money seems urgent. The FBI counted $352 million in AI-related scam losses among victims 60 and older this past year.
Join CyberGuy Live: Lock Down Your Phone in 30 Minutes (This Saturday, June 13, 10 am ET)
- Your phone holds your email, passwords, photos, banking apps and personal data. In this free, live online class, Kurt the CyberGuy will walk you step by step through simple phone security fixes you can do in real time. You’ll learn how to improve your privacy settings, spot the latest phone scams, use trusted security tools and walk away with a simple checklist to stay protected. Register here: CyberGuyLive.com
Scammers are using stolen personal data, AI voice cloning and urgent phone calls to trick grandparents into sending money. (ljubaphoto/Getty Images)
What makes grandparents worth targeting
The same three pieces of data are required for identity verification at most banks, brokerages, pension recordkeepers, and Medicare: date of birth, last four digits of a Social Security number, and a current mailing address. For most people in their sixties and seventies, all of those accounts are open.
Those three fields have turned up in breach after breach. The Conduent Business Services breach pulled names, SSNs, dates of birth, and home addresses for more than 25 million Americans from systems that process Medicaid records and employer health plans. Texas Attorney General Ken Paxton called it the largest data breach in U.S. history in February 2026.
Americans between 65 and 74 held a median net worth of $409,900 in 2022, according to the Federal Reserve’s Survey of Consumer Finances, more than ten times the median for adults under 35. The FBI found average losses of approximately $38,500 per victim among Americans 60 and older in 2025, nearly double the figure for younger filers.
Why elder fraud losses are often underreported
Older adults reported $2.4 billion in fraud losses to the Federal Trade Commission in 2024. However, the FTC’s December 2025 report to Congress estimated that real losses may have reached $81.5 billion that year. Most cases likely went unreported.
That gap makes identity theft harder to stop. A fraudulent wire from a pension account may never alert a bank. A new credit account opened with stolen information may not reach the victim until it appears on a credit report. By then, weeks may have passed since the application was approved.
Account protections worth setting up
Scammers move fast, so it helps to set up account protections before anything goes wrong. These steps can give banks, brokerage firms and family members more ways to spot trouble early.
1) Add a trusted contact to brokerage accounts
Brokerage accounts have a protection option many account holders never activate: a trusted contact designation. Under FINRA Rule 4512, brokerage firms must ask for a trusted contact when you open or update an account. A trusted contact can be a family member, attorney or accountant. The firm can contact that person if it suspects financial exploitation or cannot reach you. However, that person cannot trade, withdraw funds or view your account balances. FINRA, the SEC and the North American Securities Administrators Association asked investors in August 2025 to contact their firm and add one. You can name more than one trusted contact. You can also change the designation at any time.
SOCIAL SECURITY ADMINISTRATION PHISHING SCAM TARGETS RETIREES
Families can help protect older adults by adding trusted contacts, verifying urgent calls and blocking online Social Security changes. (Kurt “CyberGuy” Knutsson)
2) Ask about holds on suspicious withdrawals
Under FINRA Rule 2165, brokerage firms can place a temporary hold on disbursements when they reasonably believe financial exploitation may be happening. That hold can last up to 55 business days. In January 2026, FINRA proposed extending the window to 145 business days. Ask any firm holding a pension, brokerage or annuity account about its policy on disbursements after an address change.
3) Verify urgent calls before sending money
When a caller claims a grandchild is in trouble or a federal agent needs immediate action, hang up. Then call back using a number you already have, not the number in the message. The FTC found that 41% of older adults who reported losing $10,000 or more to impersonation scams in 2024 said a phone call was the initial point of contact. That makes one simple habit especially important: verify the story before you act.
4) Block online changes to Social Security
Social Security lets you block electronic and automated telephone access to your account record. Once blocked, no one can change your direct deposit information or mailing address online or through the automated phone system. After that, any changes must go through a live SSA representative at 1-800-772-1213 or a field office visit. FINRA also operates a free Securities Helpline for Seniors at 844-574-3577, Monday through Friday, 9 a.m. to 5 p.m. ET.
Identity theft recovery is harder on your own
Even strong account protections may not catch every scam attempt. That is why identity theft monitoring and recovery support can help families respond faster when personal information gets exposed or misused.
Some identity theft protection services monitor dark web marketplaces, data broker sites and people-search sites for exposed Social Security numbers, addresses and other personal information. If fraud happens, recovery support may help contact creditors, file disputes with the three credit bureaus and organize the documentation needed to restore an identity.
OUTSMART HACKERS WHO ARE OUT TO STEAL YOUR IDENTITY
Older Americans remain prime targets for identity theft because scammers can exploit exposed Social Security numbers, birth dates and addresses. (Kurt “CyberGuy” Knutsson)
Some plans also include identity theft insurance for eligible recovery costs, such as lost wages and legal fees.
No service prevents every misuse of an older adult’s identity. However, family monitoring and fraud resolution can shorten the time between when theft happens and when you or someone in your family acts on it.
See my tips and best picks on Best Identity Theft Protection at Cyberguy.com
Kurt’s key takeaways
Grandparents have become a prime target because scammers know where the money is and how to create panic fast. A familiar voice, a stolen Social Security number or a fake emergency can turn one phone call into a devastating loss. The best defense starts before the call comes. Add trusted contacts to financial accounts, block online Social Security changes, verify urgent requests through a number you already know and talk openly with family about scam warning signs. Identity theft protection can also help spot exposed personal information and speed up recovery if fraud happens. No family can stop every scam attempt. However, a simple plan can give older adults more time, more backup and a better chance of keeping their money safe.
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Is enough being done to stop scammers from using AI voices and stolen data to target grandparents? Let us know by writing to us at Cyberguy.com
Sign up for my FREE CyberGuy Report
- Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
- For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com – trusted by millions who watch CyberGuy on TV daily.
- Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.
Copyright 2026 CyberGuy.com. All rights reserved.
Technology
A warrantless wiretap law is about to expire — but surveillance networks aren’t actually ‘going dark’
Congress has failed to pass a three-week extension of Section 702 of the Foreign Intelligence Surveillance Act (FISA), with the House voting 218-198 against reauthorizing the controversial warrantless wiretapping authority through July 2nd. After a short-term extension earlier this year, the spying program now appears set to lapse for at least a week. This is the nightmare scenario FISA’s proponents have been warning about — but it doesn’t actually mean the US has lost its surveillance capabilities.
Proponents of a clean extension claim a lapse will hinder intelligence agencies’ efforts to thwart potential terrorist attacks, with surveillance networks “going dark”. Sen. Tom Cotton (R-AR) stressed the importance of reauthorizing Section 702 ahead of the World Cup. House Speaker Mike Johnson (R-LA) has said even a brief lapse would be disastrous. “Democrats in the Senate are playing political games right now with the lives of Americans,” he told reporters Wednesday. “It’s a very dangerous situation.”
In March, the FISA court recertified surveillance under Section 702 until 2027. The Brennan Center for Justice notes that a lapse won’t allow telecom companies to flout requests to hand over communications information to the NSA and other spy agencies. In 2008, after Yahoo failed to comply with a Section 702 request during a lapse, the FISA court ruled that the directives issued under Section 702 are effective while the certification is in place — even in the event of a lapse.
“The phrase ‘going dark’ is significantly misleading,” Andrea Sawka Fiegl, the senior policy director for media and technology at Common Cause, said on a Tuesday press call. Fiegl added that companies don’t choose whether they participate in surveillance under Section 702. If they don’t comply after being served with a directive, they face fines starting at $250,000 a day.
“The ‘going dark’ framing is basically a pressure tactic designed to strip Congress of its leverage to negotiate reforms by creating this false binary,” Fiegl said. “There is ample time for Congress to consider and pass reforms.”
Among those reforms are a warrant requirement for queries involving US persons, including so-called “backdoor searches” in which intelligence agencies identify a foreign target with ties to a US person, and then search that person’s communications, thus granting them access to their desired US target. Reformers also want to prohibit intelligence agencies from buying Americans’ data from private brokers to get around warrant requirements.
“Every day that Section 702 is in effect without reforms is a day that Americans’ rights are under threat,” Sen. Ron Wyden (D-OR) said in a statement Wednesday night, after Senate Republicans blocked his request for a five-week extension of Section 702 with new transparency requirements. “If there is going to be an extension of these authorities, there needs to be some guardrails or at least some transparency that would allow Congress and the American people to understand the abuses that have taken place and the need for reforms.”
Though President Donald Trump and Republican leaders in both chambers have called for a clean reauthorization of Section 702, there’s bipartisan appetite for reform — and a handful of Republican holdouts stand in the way of a clean reauthorization. Most Democrats — even some who have supported reauthorization in the past — have objected to a clean extension due to Trump’s appointment of Bill Pulte as acting director of national intelligence.
-
Lifestyle4 minutes agoL.A. Affairs: Dating an L.A. braggart taught me a lesson in positive self-talk
-
Politics11 minutes agoHouse Democrats ask new ICE director to roll back policy limiting oversight visits
-
Science14 minutes agoWarning of cuts to medical services, L.A. health officials ask state for emergency funds
-
Sports19 minutes agoCommentary: Cameron Brink is trying to navigate a fouled-up situation
-
World29 minutes agoNigeria killed more than 13,000 ‘terrorists’ in past year, president says
-
News56 minutes agoWhich billionaire said they learned a ‘significant lesson’ this week? The quiz knows
-
Los Angeles, Ca2 hours agoFire breaks out under roller coaster at Six Flags Magic Mountain
-
Detroit, MI3 hours ago
Mayor Sheffield absent from People Mover board during alleged wrongdoing