irs

The IRS has warned people to be on the lookout following what it termed “a surge of new, sophisticated email phishing scams.”

According to the IRS, taxpayers saw many more phishing scams in 2018 and recorded a 60 percent increase in bogus email schemes that seek to steal money or tax data.

“The holidays and tax season present great opportunities for scam artists to try stealing valuable information through fake emails,” said IRS Commissioner Chuck Rettig. “Watch your inbox for these sophisticated schemes that try to fool you into thinking they’re from the IRS or our partners in the tax community. Taking a few simple steps can protect yourself during the holiday season and at tax time.”

Tax-related phishing scams reported to the IRS declined for the prior three years until a surge in 2018, the agency said. More than 2,000 tax-related scam incidents were reported to the IRS from January through October, compared to approximately 1,200 incidents in all of 2017.

One recent malware campaign used a variety of subjects like “IRS Important Notice,” “IRS Taxpayer Notice” and other variations, the IRS said. The phishing emails, which use varying language, demands a payment or threatens to seize the recipient’s tax refund.

The most common way for cybercriminals to steal money, bank account information, passwords, credit cards or Social Security numbers is to simply ask for them. Every day, people fall victim to phishing scams or phone scams that cost them their time and their cash.

Phishing attacks use email or malicious websites to solicit personal, tax or financial information by posing as a trustworthy organization. Often, recipients are fooled into believing the phishing communication is from someone they trust.

A scam artist may take advantage of knowledge gained from online research and earlier attempts to masquerade as a legitimate source, including presenting the look and feel of authentic communications, such as using an official logo.

These targeted messages can trick even the most cautious person into taking action that may compromise sensitive data. The scams may contain emails with hyperlinks that take users to a fake site. Other versions contain PDF attachments that may download malware or viruses. Some phishing emails will appear to come from a business colleague, friend or relative.