Investment Scams Are Increasing

Criminals used the Covid-19 pandemic to target victims online, through impersonation scams, romance fraud and investment scams.

The UK’s Financial Conduct Authority (FCA) is warning people to beware of people posing as investment advisers and offering to help them set up new schemes via online meeting platforms. “Scams are increasingly sophisticated. Fraudsters can be articulate and financially knowledgeable, with credible websites, testimonials and materials that are hard to distinguish from the real thing." says the FCA.

They ask their victim to share the screen and enable remote access, which hands over control of their device and potentially, their bank account. 

Data from Action Fraud reveals consumers reported losses of more than £78 million between January-December 2020. Throughout 2020, consumers reported average losses of £45,242 each on average when investing with fraudsters imitating genuine investment firms. 

The data has been released as part of the FCA’s ScamSmart campaign, alongside advice to help investors avoid fake firms and protect their hard-earned cash. Around 2,100 cases were reported to the FCA since July 2020 and over £25m was stolen in the 15 months from January 2021. The FCA said the number of screen-sharing scams it had seen had risen 86% to 683 in the six months from July to December 2021 compared with 367 for the same period the year before.

Screen-sharing has become a familiar part of work life, as people use popular online meeting programs in their jobs. Remote access software is a legitimate tool for services like IT support to troubleshoot problems without being in the room. But scammers are increasingly hijacking this familiarity to lure victims into granting access to more than just a picture of their screen.

Most investment scams involve one or more of the following three elements:  

  • Promoting an investment opportunity that does not actually exist – the scammer then keeps the money.
  • Promoting an investment opportunity that does exist – the scammer takes your money rather than investing it.
  • The scammer pretends to represent a legitimate investment group  

The targets are then persuaded to grant the fraudsters control of their computer, by either expanding permissions or downloading remote access software, giving them direct access to online bank accounts. This also means they can install their malware which gives them full access at any time.

The criminals do this under the guise of being helpful, offering to set up a new investment scheme and monitor it. Mark Steward, Executive Director of Enforcement at the FCA, has said to the BBC: "Investment scams can happen over many months, but sharing your screen without making the proper checks can change everything in an instant." If scammers gain control of your computer, it gives them "access to your sensitive banking and investment information, the freedom to browse at their leisure, and the ability to take whatever details they want", Steward added.

If you’ve given your bank account details to a firm you think may be operating a scam, tell your bank immediately. 

To protect yourself against scams, it’s always best to seek the advice of an expert adviser before investing your money. Investing a little bit of time and money into getting trustworthy, expert advice could save you in the long run.

FCA:        NCA:       BBC:       Lloyds Bank:      Unbiased:     UK Finance:     Fraud!:   

You Might Also Read: 

Crypto Currency Fraud Costs £Millions:

 

« Threat Hunting Solutions
Bitcoin Tanks »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Directory of Cyber Security Suppliers

Directory of Cyber Security Suppliers

Our Supplier Directory lists 7,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

Infosecurity Europe, 3-5 June 2025, ExCel London

Infosecurity Europe, 3-5 June 2025, ExCel London

This year, Infosecurity Europe marks 30 years of bringing the global cybersecurity community together to further our joint mission of Building a Safer Cyber World.

KayHut

KayHut

KayHut is a young, innovative company engaged in cyber research and security solutions.

NTOP

NTOP

NTOP develop high-quality network traffic analysis and DDoS protection software used by small individuals as well by large telecom operators.

SecureBrain

SecureBrain

SecureBrain software and services help protect against Japanese-specific cybercrime and global internet security threats such as online fraud, phishing, drive-by downloads and malware attacks.

FraudHunt

FraudHunt

FraudHunt protects your website from account fraud, ad fraud, fraud clicks, and malicious bots.

OcuCloud

OcuCloud

OcuCloud protects businesses' valuable information in the cloud, preventing security breaches caused by employees and remote vendors.

Hub One

Hub One

Hub One is a leading player in digital transformation with expertise in broadband connectivity, business solutions for traceability and mobility, IOT in industrial environments and cybersecurity.

Vumetric Cybersecurity

Vumetric Cybersecurity

Vumetric is an ISO9001 certified company offering penetration testing, IT security audits and specialized cybersecurity services.

Grayshift

Grayshift

Grayshift is the leading provider of mobile device digital forensics, specializing in lawful access and extraction.

Viettel Cyber Security

Viettel Cyber Security

Viettel Cyber Security is an organization under the Military Telecommunication Industry Group, conducting research and developing information security solutions for domestic and foreign customers.

Stronger International

Stronger International

Stronger International provides expert cyber services and training to organizations and individuals to enhance IT and security knowledge.

Reaktr.ai

Reaktr.ai

Reaktr.ai is founded on the vision of using AI as a catalyst to propel industries into a future where we redefine what's possible. Fortify your cybersecurity defense with our AI-powered platform.

QFunction

QFunction

QFunction works within your existing security stack to detect anomalies and threats within your data.

Proton

Proton

Proton provides free encrypted email, calendar, drive, password manager, and VPN services. Building a better Internet.

Assurestor

Assurestor

Assurestor's singular focus is delivering leading cloud-based backup and disaster recovery designed to increase levels of IT resilience.

BlackSignal Technologies

BlackSignal Technologies

BlackSignal Technologies provides cybersecurity, digital signal processing and electronic warfare products to help DOD and IC agency customers counter near-peer threats and security challenges.

CRYPTIQ

CRYPTIQ

CRYPTIQ empowers businesses to navigate the ever-evolving cybersecurity landscape with confidence and clarity.