Connect with us

Technology

Sextortion scams evolve with Google Maps images to intimidate victims

Published

on

Sextortion scams evolve with Google Maps images to intimidate victims

Scammers often rely on fear to steal your hard-earned money. No matter the scam, whether it’s a Microsoft call scam or government impersonation, they all attempt to scare you by claiming that something is seriously wrong with you or your devices and that only they can fix it. The latest sextortion scams targeting many in the U.S. are no exception.

These bad actors contact you via email, claiming to have compromising photos or videos of you in private situations, and demand money to delete them. What’s new is that these scammers now include images of your home to make their threats seem more convincing.

I’ve received emails from many people sharing how these scammers targeted them. Below is a breakdown of the evolved sextortion scam and tips on how to stay protected.

GET SECURITY ALERTS, EXPERT TIPS – SIGN UP FOR KURT’S NEWSLETTER – THE CYBERGUY REPORT HERE

Illustration of a scammer at work (Kurt “CyberGuy” Knutsson)

Advertisement

How the scam works

It starts when you get an email from a scammer claiming they recorded you while you were watching adult content. They use your name and include a photo of your house or a nearby street to make it seem real.

The scammer claims to have installed a spyware called “Pegasus” on your phone and has access to everything you watch. Pegasus is a spyware developed by NSO Group, a company that sells it only to government agencies and law enforcement. 

It’s super expensive and highly unlikely that a random scammer would have access to it. Even if they did, stalking people watching adult content wouldn’t be worth their time. Plus, if they have installed the spyware on your phone, they won’t need to ask you to send money.

Once the scammer has you scared, they offer to delete the so-called footage and pretend you never existed if you pay them. They usually include a QR code for a cryptocurrency wallet and ask for Bitcoin as payment. One email I saw from a victim mentioned a ransom of about $2,000.

I’ve attached a portion of the email the victim got below. I’ve blurred out any personal info to protect their identity, but you can still check out the text.

Advertisement

Actual sextortion scam email (Kurt “CyberGuy” Knutsson)

HERE’S WHAT RUTHLESS HACKERS STOLE FROM 110 MILLION AT&T CUSTOMERS

How do scammers know your location?

The image of your home might make the scam look real, but it’s probably just a trick. One possible reason they have that info is a data breach. Your address might have been leaked in a breach and ended up on the dark web. Scammers could have gotten hold of it and used Google Maps to find a picture of your house. Another reason could be that you put up a listing for something online, like a rental or sale ad. If you’ve shared your address publicly in an online listing, scammers might have found it that way.

Google Maps vehicle that captures images (Kurt “CyberGuy” Knutsson)

MASSIVE FREE VPN DATA BREACH EXPOSES 360 MILLION RECORDS

Advertisement

Protect your privacy: Blur your house on Google Maps

Google Maps is how they get access to images of your house. But you can blur your house on the platform and prevent scammers from fearmongering. You’ll need to do this from a computer since the blurring feature isn’t available in the Google Maps app on iOS or Android. Follow these steps to learn how:

  • Go to maps.google.com and type your home address into the search bar at the top-right.
  • Click on the photo of your house that shows up.
  • You’ll see a Street View image of your place. Click Report a Problem in the bottom-right corner.
  • Adjust the view so that your home and anything else you want to blur is inside the red and black box using your mouse.
  • Select the option to blur your home from the choices given.
  • Hit Submit, and Google will review your request and blur your house if they think it’s necessary.

Google Map-blurred home (Kurt “CyberGuy” Knutsson)

4 additional steps to stay protected from sextortion scams

Here are four additional steps you can take to stay protected from sextortion scams:

1) Be cautious with personal information: Avoid sharing personal information like your address, phone number or other sensitive details online. Be mindful of what you post on social media and other platforms.

2) Watch out for red flags: Scammers are mostly bluffing. For instance, the Pegasus software they claim to be using is a lie. Stay informed about common scams and how they work. Knowing what to look out for can help you recognize and avoid potential threats.

3) Change passwords: If the email includes a password, make sure you are not using it anymore, and if you are, change it as soon as possible. ON ANOTHER DEVICE (i.e., your laptop or desktop), you should change your passwords for all your important accounts, such as email, banking, social media, etc.

Advertisement

You should do this on another device to ensure that if the scammer actually has access to your device, they aren’t recording you setting up your new password. And you should also use strong and unique passwords that are hard to guess or crack. You can also use a password manager to generate and store your passwords securely. Changing passwords should be a part of your general cybersecurity hygiene, even if you’re not affected by a data breach.

4) Use personal data removal services: Consider investing in personal data removal services that specialize in continuously monitoring and removing your personal information from various online databases and websites. 

I mentioned above that scammers most likely got access to your address through a data breach. A data removal service can help you remove all this personal information from the internet. Check out my top picks for data removal services here.

WORLD’S LARGEST STOLEN PASSWORD DATABASE UPLOADED TO CRIMINAL FORUM

Kurt’s key takeaway

Scammers use fear and deception to trick you into giving up your hard-earned money. By understanding how these sextortion scams work and knowing what to look out for, you can better protect yourself from falling victim. Remember, most of these scammers are bluffing and rely on exploiting your fears. Keep your personal information secure, be cautious about what you share online and always verify the legitimacy of any threatening messages you receive. If you encounter a scam, report it to the appropriate authorities and take steps to secure your accounts and devices. 

Advertisement

Have you ever encountered a similar scam or any other type of scam? How did you handle it? Let us know by writing us at Cyberguy.com/Contact.

For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.

Ask Kurt a question or let us know what stories you’d like us to cover.

Follow Kurt on his social channels:

Answers to the most asked CyberGuy questions:

Advertisement

New from Kurt:

Copyright 2024 CyberGuy.com. All rights reserved.

Advertisement

Technology

Surprise, surprise: Silksong wins Steam’s Game of the Year

Published

on

Surprise, surprise: Silksong wins Steam’s Game of the Year

Valve has announced the winners of the 2025 Steam Awards and, unsurprisingly, Hollow Knight: Silksong, took home the Game of the Year honors. It was also given the “Best Game You Suck At” award, which, I’m not sure if that’s a good thing or not. Given the relentless fawning over Silksong since its release in September, an event that nearly brought the entire digital video game distribution system to its knees, that it would win Game of the Year felt like something of a forgone conclusion.

The Best Game on Steam Deck was awarded to Hades II (an award we’d already unofficially granted it). The mechanics of Hades lend it to being played in short bursts, and the stylized graphics scale down well. Silent Hill f won the Outstanding Visual Style award and, while there’s no denying it’s a gorgeous title, I can’t help but feel like Dream BBQ, with its uniquely hallucinatory visuals, got robbed. Check out the full list of winners and nominees here at the Steam Awards 2025 landing page.

Continue Reading

Technology

University of Phoenix data breach hits 3.5M people

Published

on

University of Phoenix data breach hits 3.5M people

NEWYou can now listen to Fox News articles!

The University of Phoenix has confirmed a major data breach affecting nearly 3.5 million people. The incident traces back to August when attackers accessed the university’s network and quietly stole sensitive information.

The school detected the intrusion on Nov. 21. That discovery came after the attackers listed the university on a public leak site. In early December, the university disclosed the incident, and its parent company filed an 8-K with regulators.

The scope is large. Notification letters filed with Maine’s Attorney General show 3,489,274 individuals were affected. Those affected include current and former students, faculty, staff and suppliers.

Sign up for my FREE CyberGuy Report

Advertisement

Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter.

DATA BREACH EXPOSES 400,000 BANK CUSTOMERS’ INFO

The University of Phoenix data breach exposed sensitive personal and financial information tied to nearly 3.5 million people. (Kurt “CyberGuy” Knutsson)

What happened and how attackers got in

According to the university, hackers exploited a zero-day vulnerability in Oracle E-Business Suite. This application handles financial operations and contains highly sensitive data.

Based on the technical details shared so far, security researchers believe the attack aligns with tactics used by the Clop ransomware gang. Clop has a long track record of stealing data through zero-day flaws rather than encrypting systems.

Advertisement

The vulnerability tied to this campaign is tracked as CVE-2025-61882. Investigators say it has been abused since early August.

What data was exposed

The university says the attackers accessed highly sensitive personal and financial information. That includes:

  • Full names
  • Contact information
  • Dates of birth
  • Social security numbers
  • Bank account numbers
  • Routing numbers

This type of data creates a serious risk. It can fuel identity theft, financial fraud and targeted phishing scams.

700CREDIT DATA BREACH EXPOSES SSNS OF 5.8M CONSUMERS

Stolen University of Phoenix records could be used by criminals to launch targeted phishing and identity theft attacks.  (Kurt “CyberGuy” Knutsson)

Nearly 3.5 million people affected

In letters sent to affected individuals, the university confirmed the breach affects 3,489,274 people. If you are a current or former student or employee, watch your mail closely.

Advertisement

These notifications often arrive by postal mail, not email. The letter explains what data was exposed and includes instructions for protective services.

We reached out to the University of Phoenix for comment, and a rep provided CyberGuy with the following statement: 

“We recently experienced a cybersecurity incident involving the Oracle E-Business Suite software platform. Upon detecting the incident on November 21, 2025, we promptly took steps to investigate and respond with the assistance of leading third-party cybersecurity firms. We are reviewing the impacted data and will provide the required notifications to affected individuals and regulatory entities.”

Free identity protection is now available

The University of Phoenix is offering affected individuals free identity protection services. These include:

  • 12 months of credit monitoring
  • Identity theft recovery assistance
  • Dark web monitoring
  • A $1 million fraud reimbursement policy

To enroll, you must use the redemption code provided in the notification letter. Without that code, you cannot activate the service.

This attack fits a larger Clop campaign

The University of Phoenix breach is not an isolated case. Clop has used similar tactics in past campaigns involving GoAnywhere MFT, Accellion FTA, MOVEit Transfer, Cleo and Gladinet CentreStack.

Advertisement

Other universities have also reported Oracle EBS-related incidents. These include Harvard University and the University of Pennsylvania.

The U.S. government is taking notice. The U.S. Department of State is now offering a reward of up to $10 million for information linking Clop’s attacks to a foreign government.

Why colleges are prime targets

Universities store massive amounts of personal data. Student records, financial aid files, payroll systems and donor databases all live under one roof.

Like healthcare organizations, colleges present a high-value target. A single breach can expose years of data tied to millions of people.

MAKE 2026 YOUR MOST PRIVATE YEAR YET BY REMOVING BROKER DATA

Advertisement

Affected University of Phoenix students and staff should act quickly to monitor accounts and protect their identities. (Kurt “CyberGuy” Knutsson)

Steps to stay safe right now

If you believe you may be affected, act quickly. These steps can reduce your risk.

1) Watch for your breach notification letter

Read it carefully. It explains what data was exposed and how to enroll in protection services.

2) Enroll in the free identity protection

First, use the redemption code provided. Because Social Security and banking data are involved, credit monitoring and recovery services matter. Even if you do not qualify for the free service, an identity theft protection service is still a smart move.

In addition, these services actively monitor sensitive details like your Social Security number, phone number and email address. If your information appears on the dark web or if someone tries to open a new account, you receive an alert right away. As a result, many services also help you quickly freeze bank and credit card accounts to limit further fraud.

Advertisement

See my tips and best picks on how to protect yourself from identity theft at Cyberguy.com

3) Use a data removal service

Because this breach exposed names, contact details and other identifiers, reducing what is publicly available about you matters. A data removal service can help remove your personal information from data broker sites, which lowers the risk of targeted phishing or fraud tied to the stolen University of Phoenix records.

While no service can guarantee the complete removal of your data from the internet, a data removal service is really a smart choice. They aren’t cheap, and neither is your privacy. These services do all the work for you by actively monitoring and systematically erasing your personal information from hundreds of websites. It’s what gives me peace of mind and has proven to be the most effective way to erase your personal data from the internet. By limiting the information available, you reduce the risk of scammers cross-referencing data from breaches with information they might find on the dark web, making it harder for them to target you.

Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com

Get a free scan to find out if your personal information is already out on the web: Cyberguy.com

Advertisement

4) Monitor financial accounts daily

Check bank statements and credit card activity for unfamiliar charges. Report anything suspicious immediately.

5) Consider freezing your credit

A credit freeze can stop criminals from opening new accounts in your name. It is free and reversible. To learn more about how to do this, go to Cyberguy.com and search “How to freeze your credit.” 

6) Be alert for phishing attempts and use strong antivirus software 

Expect more scam emails and phone calls. Criminals may reference the breach to sound legitimate.

The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.

Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com

Advertisement

7) Secure your devices

Keep your operating systems and apps up to date, as attackers often exploit outdated software to gain access. In addition, enable automatic updates and review app permissions to prevent stolen personal data from being combined with device-level access and causing further harm.

Kurt’s key takeaways

The University of Phoenix data breach highlights a growing problem in higher education. When attackers exploit trusted enterprise software, the fallout spreads fast and wide. While free identity protection helps, long-term vigilance matters most. Staying alert can limit damage long after the headlines fade.

If universities cannot protect this level of sensitive data, should students demand stronger cybersecurity standards before enrolling? Let us know by writing to us at Cyberguy.com

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report 

Advertisement

Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter. 

Copyright 2025 CyberGuy.com.  All rights reserved.

Advertisement
Continue Reading

Technology

LG announces new UltraGear evo gaming monitors with AI upscaling

Published

on

LG announces new UltraGear evo gaming monitors with AI upscaling

LG unveiled a whole new line of gaming monitors ahead of CES on Friday. The UltraGear evo line are all high-end monitors covering a range of technologies, but united by 5K resolution and AI upscaling.

The three flagships under the new branding are the 39GX950B, the 27GM950B, and the 52G930B. The first number in the model name indicates the size. The rest of the letters and numbers, well, I’m sure they mean something to someone.

The 39-inch GX9 is an ultrawide 21:9 5K2K dual-mode OLED screen. It can run at its full resolution at 165Hz, or jump to 330Hz for fast-twitch games at WFHD. The 27-inch GM9 uses “New” MiniLEDs, which promise to deliver brighter images compared to OLED, without the blooming often associated with MiniLEDs. Lastly, the 52-inch G9 is an absolutely massive curved display that delivers a 12:9 panoramic view at 240Hz in its native 5K2K resolution.

The GM9 model is particularly interesting since LG makes the panels for Apple’s Pro Display XDR, and word is that the monitor is finally getting a long-overdue update in the near future.

All three monitors will be on display at CES next month, but there’s no word on pricing or availability just yet.

Advertisement
Continue Reading

Trending