url.us.m.mimecastprotect.com Payment Fraud Emerges as Global Security Threat, Impacting Millions Weekly
Article Content
- •Over half of the global population targeted weekly by payment scams.
- •Estimated global losses from APP fraud reached £329 billion in 2025.
- •UK Finance reported £1.28 billion stolen in the UK last year due to payment fraud.
The Royal United Services Institute (RUSI) reports that over half of the global population is targeted by payment scams each week, with authorised payment fraud (APP) now classified as a significant global security threat. In 2025, losses from APP fraud reached an estimated £329 billion, with criminals profiting at levels comparable to the illicit drug trade. The report highlights a 54% increase in fraud-related Interpol notices since 2024. APP fraud disproportionately affects low and middle-income countries, risking financial inclusion gains. In the UK, two-thirds of APP fraud schemes originate overseas, prompting calls for coordinated international responses. UK Finance reported that £1.28 billion was stolen in the UK last year due to payment fraud, with social media platforms being a major vector for these scams. The report urges tech firms to take stronger action against fraudulent advertising practices.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…