Close Menu
geekfence.comgeekfence.com
    What's Hot

    Customer experience management (CXM) predictions for 2026: How customers, enterprises, technology, and the provider landscape will evolve 

    December 28, 2025

    What to Know About the Cloud and Data Centers in 2026

    December 28, 2025

    Why Enterprise AI Scale Stalls

    December 28, 2025
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook Instagram
    geekfence.comgeekfence.com
    • Home
    • UK Tech News
    • AI
    • Big Data
    • Cyber Security
      • Cloud Computing
      • iOS Development
    • IoT
    • Mobile
    • Software
      • Software Development
      • Software Engineering
    • Technology
      • Green Technology
      • Nanotechnology
    • Telecom
    geekfence.comgeekfence.com
    Home»Cyber Security»What are brushing scams and how do I stay safe?
    Cyber Security

    What are brushing scams and how do I stay safe?

    AdminBy AdminDecember 27, 2025No Comments6 Mins Read0 Views
    Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
    What are brushing scams and how do I stay safe?
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Have you ever received a package you never ordered? It could be a warning sign that your data has been compromised, with more fraud to follow.

    Phil Muncaster

    23 Dec 2025
     • 
    ,
    5 min. read

    A brush with online fraud: What are brushing scams and how do I stay safe?

    Global e-commerce sales are predicted to exceed $6.4 trillion in 2025. And a large share of these will come via marketplaces. But while they ostensibly offer convenience and safety for consumers and expanded reach for businesses, there is a darker side to the industry. In 2024, Amazon alone proactively blocked over 275 million suspected fake reviews, and took “enforcement actions” against thousands of individuals.

    This underground industry has grown to the point where everyday consumers might find themselves unwittingly conscripted into the creation of fake reviews. The bottom line is this: if an item turns up at your door that you have no memory of ordering, don’t ignore it. Read on to find out what it could mean.

    What’s a brushing scam?

    Brushing scams are a type of e-commerce fraud where a seller sends a package to an apparently random person’s address. The item is usually of low value and is not intended as a show of altruism. Rather, it’s an attempt by the seller to fraudulently inflate the product’s rating on e-commerce marketplaces.

    It works like this:

    1. A scammer gets hold of a list of names and mailing addresses — typically listed on cybercrime forums after data breaches, or via people search sites. They may even scrape this info from publicly available sources.
    2. The fraudster creates a fake buyer account on an e-commerce platform or marketplace where they sell their products.
    3. The fraudster uses the account to “buy” their product on that platform and ships the product to the victim’s address.
    4. The scammer uses the fake account to post a 5-star review, boosting (or “brushing up”) the item’s reputation and visibility.

    The first the victim usually hears about the scam is when they receive the unsolicited parcel.

    brushing-scam-example
    Source: Reddit

    What could it mean?

    Why would anyone mind receiving free goods through the post, even if they are cheap and lightweight? It’s not as harmless a scam as it seems. For one thing, the fact that you’re being targeted in a brushing scheme at all could mean that your personal data is being shared on the cybercrime underground. For another, the scammers might be testing your details are correct, in order to move onto a second stage, which involves more serious identity fraud.

    There are also more malign versions of the scheme where a QR code is included inside the package you receive. Scanning it will most likely take you to a malicious/phishing site designed to install malware or trick you into sharing more personal information.

    Finally, there’s an indirect cost related to such scams. They slowly and insidiously erode the trust consumers place in marketplace/e-commerce review systems.

    How do I know if I’ve been victimized?

    It shouldn’t take too much effort to work out if you’ve been singled out by brushing scammers. If you receive a low-value, poor quality item in the post that you have no memory of purchasing, this should be an immediate red flag. A vague or missing return address, and a possible QR code inside the package, are also warning signs.

    To double check, review your emails and any accounts you have with e-commerce/online marketplace platforms, to look for recently purchased goods. It’s worth also checking your bank accounts and credit reports for suspicious activity, as the scammers may have already moved on to the next stage of the scheme.

    What should I do if I receive a package?

    If you receive something in the post that you can’t remember ordering, minimize risk by taking the following steps.

    • Double check it’s not a gift by asking your household/friends/family if they’ve ordered anything in your name recently.
    • Don’t scan any QR codes that may be dispatched inside the parcel
    • Check no money has left your bank account and/or new credit lines haven’t been opened in your name
    • Ensure you have multi-factor authentication (MFA) set up on your online banking/credit card accounts
    • Enable MFA on all online shopping and email accounts
    • Report the fraud to the relevant marketplace (eg Amazon). Most should have a dedicated place to report brushing fraud
    • Don’t bother trying to return the item to sender. It’s yours to keep, if you want to

    How do I stay safe from brushing scams?

    There are steps you can also take to stop brushing scams from even targeting you. It all goes back to what personal data of yours is available to the fraudsters.

    Granted, there’s not much you can do if an organization you do business with gets breached, spilling your details. But there are identity protection services you can use which scan the dark web for potentially compromised information. Some of them are available as part of a general home security package. If you find that any accounts have been compromised, change your passwords immediately. It’s also worth putting a credit freeze in place to block any attempts to use your name in order to run up debt on new cards.

    As scammers also harvest data from the public web, it’s important to get into good privacy habits. That means minimizing what you share on social media, locking your accounts down so only friends can view your posts, and remove any personal details like home addresses, birthdates and phone numbers.

    Finally, reduce the likelihood of scammers getting your details from data brokers, by opting out on “people finder” sites like BeenVerified, Spokeo, and TruthFinder. It will require a bit of work, and you will likely need to revisit these sites every few months to repeat the process, but is worth the extra effort.

    Brushing scams are just one of many ways fraudsters weaponize your personal information against you. Unfortunately, mitigating this risk is not a case of “one and done”. You’ll need to maintain continuous vigilance over your digital world. Ultimately, it’s the price we pay for access to the services we love.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    How Russia’s Largest Private University is Linked to a $25M Essay Mill – Krebs on Security

    December 28, 2025

    Black or Scrambled Phone Screen? Here’s How to Spot a Hacked vs Broken Phone

    December 26, 2025

    Closing the gap: bitsIO wins Splunkie Award for data and AI-powered nonprofit solutions

    December 25, 2025

    Google Online Security Blog: Further Hardening Android GPUs

    December 23, 2025

    Not all CISA-linked alerts are urgent: ASUS Live Update CVE-2025-59374

    December 22, 2025

    Iranian Infy APT Resurfaces with New Malware Activity After Years of Silence

    December 21, 2025
    Top Posts

    Understanding U-Net Architecture in Deep Learning

    November 25, 20258 Views

    Microsoft 365 Copilot now enables you to build apps and workflows

    October 29, 20258 Views

    Here’s the latest company planning for gene-edited babies

    November 2, 20257 Views
    Don't Miss

    Customer experience management (CXM) predictions for 2026: How customers, enterprises, technology, and the provider landscape will evolve 

    December 28, 2025

    After laying out our bold CXM predictions for 2025 and then assessing how those bets played out…

    What to Know About the Cloud and Data Centers in 2026

    December 28, 2025

    Why Enterprise AI Scale Stalls

    December 28, 2025

    New serverless customization in Amazon SageMaker AI accelerates model fine-tuning

    December 28, 2025
    Stay In Touch
    • Facebook
    • Instagram
    About Us

    At GeekFence, we are a team of tech-enthusiasts, industry watchers and content creators who believe that technology isn’t just about gadgets—it’s about how innovation transforms our lives, work and society. We’ve come together to build a place where readers, thinkers and industry insiders can converge to explore what’s next in tech.

    Our Picks

    Customer experience management (CXM) predictions for 2026: How customers, enterprises, technology, and the provider landscape will evolve 

    December 28, 2025

    What to Know About the Cloud and Data Centers in 2026

    December 28, 2025

    Subscribe to Updates

    Please enable JavaScript in your browser to complete this form.
    Loading
    • About Us
    • Contact Us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2025 Geekfence.All Rigt Reserved.

    Type above and press Enter to search. Press Esc to cancel.