Has The Pandemic Bolstered Online Fraud?
- Jun 17, 2021
- 4 min read
At first glance, recent reports indicating the number of online data breaches fell by 48 percent in 2020 might appear to be welcoming news—until you realize that over 37 billion private records were compromised in the process. Even more disturbing? One out of every four businesses faced at least seven separate attempts at security attacks last year, with the amount of ransomware intrusions occurring at a 100 percent higher rate compared to 2019.
The pandemic may have resulted in a previously unimaginable growth for the eCommerce industry, but online fraud found a safe haven in the rise of digital marketplaces during 2020. FBI statistics revealed some 791,790 cases of digital crime were reported in the US last year alone; a nearly 70 percent increase totaling losses in excess of $4.1 Billion. But it’s not just the frequency with which online fraud is committed. It’s the level of sophistication. While phishing and other forms of data breaches continue to be a persistent threat, there’s a new breed of fraudsters employing increasingly sophisticated tactics online, resulting in a 48 percent increase in successful digital retail fraud attempts.
Consumer Confidence and Online Retail
Security may always be one of the most critical factors for consumers in shopping online, but there’s a certain disconnect between business and consumer perception towards secure shopping. Fraud detection relies in no small part on recognizing and identifying routine shopping habits from return customers. Yet a recent poll from Experian indicated 95 percent of businesses believe they are accurately identifying their customers, while 55 percent of consumers don’t feel recognized during their online experience.
Online retail has suffered as a result of this lack of confidence, with a recent report from the American Customer Satisfaction Index indicating customer satisfaction with eCommerce businesses has declined by almost 5 percent between April and September of last year. While banks and credit card providers are continuing to scale and refine security protocols largely as a result of consumer reliance on eCommerce, over 4.8 million cases of identity theft and fraud were reported to the Federal Trade Commission in 2020. As digital retail moves forward in 2021, integrating more robust authentication solutions at all stages of the customer experience will prove critical in ensuring both customer privacy and trust in eCommerce.
Account Takeover Attacks and the Pandemic
Phishing may have accounted for almost half a million of the reported cases of digital fraud in the US during 2020, but online shoppers are becoming increasingly vulnerable to more sophisticated forms of account takeover attacks (ATOs) as a result of AI-driven automation. With a 282 percent increase in 2020, ATOs present a particular threat for digital retail due to their imperceptibility. Banks and merchant processors can frequently detect more common identity theft attempts, including an unusually high volume of purchases or inconsistent billing and delivery information. But many ATO attacks consist of minor purchases made through successful credit card skimming intrusions online. While each purchase may be minor, they’re conducted gradually over time in order to avoid detection, with few customers noticing an ATO has actually occurred.
Over 60 percent of all reported ATOs result in attacks on an eCommerce account, with digital security analysts Sift estimating an increase of 378 percent in ATOs for digital retailers since the start of the pandemic in a recent report. But the effect of ATO attacks are cumulative. According to the same report, 28 percent of US consumers would abandon a site or retailer altogether if their personal data was compromised despite 66 percent of shoppers indicating they aren’t currently utilizing any form of a password manager when shopping online.
Credential Stuffing, Automation, ATOs and Identity Fraud
According to a report from the Merchant Risk Council, ATOs were among the top three types of fraud reported by eCommerce businesses in 2019, resulting in a loss of at least $4 Billion. But it’s not high volume purchasers who are necessarily at risk. Identity spoofing and chargeback fraud are two of the most commonplace tactics in ATO strategies, with the vast majority of cases occurring to low purchase accounts. A recent index report from DataVisor reveals that 80 percent of those accounts have not been logged into for 30 days, while 65 percent have seen no activity for three months.
ATO fraud against low frequency user accounts has historically been conducted by credential stuffing, where attackers test databases and lists of stolen credentials against multiple accounts to identify matches. But despite the increased reliance on online shopping, many consumers still rely on the same password for multiple sites regardless of its strength. The result has led to an increase in automated ATO attacks, particularly among sites which don’t integrate two factor authentication processes. Online retail saw an estimated 11 percent success rate in ATO attacks resulting from automated high quality credential stuffing in the second half of 2020 as opposed to only 1.18 percent during the first half.
Surprisingly, one of the latest automated fraud threats isn't the result of ATOs. It’s the result of denial of inventory bots (also known as scalping bots), in which fake accounts established by third-party sellers automatically browse high demand product pages in order to make mass purchases only to be resold at inflated prices. A 2020 report from Javelin estimated that between 40 to 80 percent of both successful and unsuccessful retail login attempts are automated, with 60 and 70 percent of traffic to checkout pages being from malicious bots.
How Online Merchants Can Protect Customers From Online Fraud
Hold and review any unusually high velocity sales from repeat customers.
Review frequent changes in payment methods (particularly suspicious fund transfers), authorizing orders directly from returning customers.
Integrate two-factor authentication services during both login and checkout processes.
Use address verification services (AVS) to scan and review transactions for any inconsistencies.
Enable digital wallet payment options, allowing you to encrypt and tokenize sensitive purchasing data.
Utilize behavior analytic API tools to collect and monitor customer activity on your site.
Invest in adaptive software designed to recognize malicious bots and monitor unusually high levels of traffic from repeat IP addresses.




hitclubhitclub.com mình thấy bạn bè nói nhiều quá nên cũng bấm vào nghía thử cho biết. Mình không có chơi hay đọc kỹ gì đâu, chỉ lướt vài phút xem giao diện họ làm ra sao thôi. Ấn tượng đầu là nhìn khá nhẹ mắt, chữ không bị nhồi nhét nên kéo xuống cũng không thấy rối. Mấy phần thông tin được chia thành từng khối rõ ràng, kiểu nhìn cái là biết nó thuộc mục nào, không phải đoán. Mình cũng thích cái menu đặt dễ thấy, bấm qua lại giữa các trang khá nhanh, không phải mò mẫm tìm nút. Nói chung ai chỉ muốn vào xem nhanh thì ổn, vì bố cục chia khối gọn và menu…
https://xosoplus.mobi/du-doan-xsmb-win2888.html mình ghé thử vì đang rảnh, kiểu xem họ trình bày nội dung ra sao thôi. Vào trang thấy chia khối nhìn khá dễ chịu, không bị nhồi chữ một cục nên lướt nhanh cũng bắt được ý. Mình để ý cái mục lục đặt ngay đầu bài, bấm phát nhảy xuống đoạn cần xem luôn nên đỡ phải kéo mỏi tay. Mấy phần số liệu họ để dạng bảng cột nhìn gọn, mắt mình không bị loạn như vài trang khác. Nội dung cũng cập nhật theo ngày nên nhìn tiêu đề là biết đang nói tới ngày nào. Nói chung trải nghiệm đọc ổn, nhất là cách họ để mục lục đầu bài và các bảng thống…
https://xosoplus.mobi/xsmt-thu-4-xo-so-mien-trung-t4-cd59.html hôm trước mình tò mò bấm vào xem thử vì hay nghe mọi người nói mấy trang coi kết quả/dự đoán. Vào cái là thấy họ gom mục “XSMT Thứ 4” khá dễ hiểu, nên mình tìm đúng bài ngày 15/07/2026 nhanh hơn tưởng. Mình thích nhất là phần kết quả để dạng bảng giải nhìn gọn, kiểu G8 tới ĐB xếp thẳng hàng nên liếc cái là nắm được, không bị chữ số dính tùm lum. Trong bài cũng có nhắc giờ quay 17h15 cho Đà Nẵng với Khánh Hòa, đặt ngay chỗ dễ thấy nên khỏi phải đi lục thêm. Tiêu đề “Dự đoán XSMT 15/7/2026” nổi và bảng giải nằm ngay bên dưới trên trang.
https://nohu.business/ mình thấy bạn bè nhắc mấy lần nên bấm vào coi thử cho biết thôi. Không có ngồi đọc kỹ hay làm gì nhiều, chủ yếu lướt qua xem họ thiết kế trang thế nào. Ấn tượng đầu là nhìn khá nhẹ mắt, chữ không bị dồn dập nên kéo xuống cũng đỡ ngợp. Mình thích kiểu họ chia nội dung thành từng khối rõ ràng, nhìn phát biết chỗ nào là thông tin chính, chỗ nào chỉ là phần phụ. Cái thanh menu để ngay trên đầu nên chuyển qua lại nhanh, không phải mò mẫm. Lướt vài phút là quen tay rồi, nhất là mấy mục được gom gọn theo nhóm nên nhìn rất dễ theo dõi,…
https://rr88.delivery/ mình cũng kiểu nghe nhắc nhiều quá nên bấm vào xem thử cho biết thôi. Không có ngồi đọc kỹ hay làm gì đâu, chủ yếu lướt nhanh xem trang họ thiết kế ra sao. Vừa vào thấy giao diện khá sáng sủa, nhìn không bị rối, mấy phần nội dung được chia thành từng khối riêng nên kéo xuống vẫn dễ theo dõi. Mình thích nhất là cách họ trình bày thông tin dạng cột/bảng, nhìn qua là nắm được ý chính chứ không bị chữ chồng chữ. Với lại menu để ngay chỗ dễ thấy nên chuyển qua lại mấy mục khá tiện, khỏi phải mò lâu. Nói chung lướt vài phút là hiểu họ sắp xếp…