Technologies
2022 Black Friday: Make Sure You Avoid All the Elaborate Scams
Scammers don’t take a break during the holidays. Learn what to watch for to protect yourself.

This story is part of Gift Guide, our year-round collection of the best gift ideas.
Black Friday arrives the day after Thanksgiving — which is Nov. 25 this year. It’ll be a day filled with deals on items like headphones and TVs, but with all that potential money flowing from customers to stores, cybercriminals are unfortunately looking to steal some of it.
Scammers work year round, but they turn up their efforts during the high-spending holiday season to exploit the spirit of giving.
The scams range far and wide — as retailers like Amazon, Best Buy and Walmart roll out deals over the holidays, fraudsters create elaborate websites to trick you into spending money on products you’ll never receive. You may receive text messages or emails claiming you’re eligible for a refund for an item you never purchased, just so thieves can get your credit card information. You might even be enticed into donating to a charity that provides homes for abandoned puppies — only to find out it doesn’t actually exist.
Scams come in all shapes and sizes, but there are always red flags to help spot them. Here’s what you need to know about Black Friday scams and how to avoid becoming a victim this holiday season.
For more about security and privacy this holiday season, check out how to protect yourself from identity theft, how to protect your phone app privacy, and the most common cryptocurrency scams.
Fake websites and fraudulent apps go ‘phishing’
In a phishing scheme, the goal is for hackers to get their hands on your personal information, like your credit card number, social security or account password. Pretending to be a large retail corporation, the fraudsters send out an official-looking email or text message, usually with a link to a fraudulent website designed to look just like a legitimate site.
Researchers at security firm Avanan discovered that hackers were sending out spoofed Amazon order notification emails. The email resembled your run-of-the-mill order confirmation, except that the order is false and the charge is significant.
Naturally, if you believe you’re being charged for a substantial amount, you would want to reach out to Amazon. But in this instance, if you use the link in the phishing email to get in contact, you’ll be redirected to a fake Amazon webpage with a false phone number to dial. If you call, the fraudsters won’t initially pick up, but they’ll soon call back, asking you to provide your card number, expiration date and CVV to «cancel the order.» And just like that, they’ve got your information.
These types of attacks are commonplace throughout the year, but expect a surge in messages claiming to be from Amazon, Best Buy, Walmart, Target or other large retailers during the holidays.
If you receive an email asking you to update your payment method or requesting other personal information, contact the company’s help desk to make sure the email is legit before you do anything else.
Other ways to identify a phishing email, according to the Federal Trade Commission and StaySafeOnline.org, include:
- The sender’s email address looks almost right but contains extra characters or misspellings.
- There are misspellings or bad grammar either in the subject line or anywhere in the body.
- They address you with generic terms («Mr.» or «Ms.» or «Dear Customer») instead of by name.
- The message warns that you need to take immediate action and asks you to click a link and enter personal details, especially payment information.
- The messages promise a refund, coupons or other freebies.
- The company logo in the email looks low-quality or just plain wrong.
Credit card skimming goes all-digital
You’ve seen it in movies. A hacker places an object over a card reader, disguised to look like part of the ATM, and then waits for people to swipe their cards. A day or week later, the thief takes the object — known as a skimmer — back and collects the mountain of stolen card information stored inside, which they can then use to make purchases, withdraw money and more.
Instead of using physical hardware to steal payment card numbers, hackers can insert malicious code directly on a website to do the same thing as traditional skimming, but with online payment information instead.
Regarding e-skimming incidents — sometimes called Magecart attacks after the name of the software used — Tim Mackey, principal security strategist for Synopsis, a digital security company, warns, «There isn’t an obvious way for the average person to be able to identify if or when a website has been compromised. The only potential tell-tale sign might be that the website itself doesn’t quite look ‘right.'»
Mackey suggests a few strategies you can can use to protect yourself:
- Don’t save your credit card information on retail sites.
- If possible use a third-party payment method like Apple Pay, Google Wallet or PayPal.
- Enable purchase alerts on all your credit cards.
- Disable international purchases on all credit cards.
- Only make purchases over your home network or cellular network, never on a public Wi-Fi where your payment could be intercepted.
Avoid the ‘Secret Sister’ gift exchange — it’s a pyramid scheme
Originating on Facebook, this sketchy gift exchange among internet strangers plays off the popular workplace practice of «Secret Santa,» a game where each person in a group buys a present for one other randomly selected group member, without the gift-giver revealing their identity.
Instead, in Secret Sister, it’s a pyramid scheme dressed up in holiday clothes, according to the Better Business Bureau. The «Secret Sister» exchange invitation promises you’ll receive about $360 worth of gifts after purchasing and mailing a $10 gift for someone else. A variation includes swapping bottles of wine. And there’s even «Secret Santa Dog,» in which you gift money to a «secret dog.»
Unfortunately, bad math hasn’t stopped this scam from resurfacing year after year. If you fall for it, you’ll probably be out 10 bucks when you don’t receive any gifts in return. You might lose personal details too, because the scam involves sending your name, email address and phone number to people you’ve never met in person.
The Better Business Bureau recommends you deal with any request to become a Secret Sister by ignoring it — do not give your personal details to online strangers. You can also report the invitation to Facebook or whichever social network you were approached on.
Your donations might be going to a ‘faux charity’
During the holiday season, it’s not uncommon to give back to the community. In fact, nonprofit organizations typically see an increase during the fall. The last three months of the year make up 36% of all charitable giving during the year, according to Blackbaud Institute, which creates fundraising applications.
Unfortunately, scammers take advantage of this generosity to make a bundle for themselves.
The way these charity fraud scams typically work are by impersonating other successful charities. And it’s no wonder they work: The scammers come up with real-sounding charity names, create credible websites, run successful social media campaigns — and they’re persistent.
Scammers typically call you using local phone numbers, which give you a false sense of security. However, it’s incredibly easy to spoof an area code. Next they’ll make their pitch, and it’ll be a good one. It will tug at your heart-strings, but they’ll never actually specify how they’ll help. And they may even claim that you’ve made a donation before, and suggest that you make another, and that if you do, it’ll be tax-deductible. And it’ll all be a lie.
If you get a call from a charity and sense some red flags, the AARP and FTC suggest that you do the following:
- Do your research. Use a watchdog like CharityWatch to get more information about a charity and learn how credible it is. Or use Google.
- Pay close attention to the charity name and website. False charities like to mimic other popular charities. If it seems too close in name to another, it might not be real.
- Keep track of your donations. Even if you accidentally donate to a scammer, you need to ensure that the donation isn’t recurring.
- Don’t give away all your personal information. Of course it’s normal to provide your card information, but don’t do the same with your Social Security number or bank account number.
- Don’t make a cash donation. Unless you’re certain about a charity’s credibility, don’t give away cash, gift cards, or cryptocurrency.
For any charitable donations that you make, you can also use the IRS tax-exempt organization search tool to make sure that the charity you’re contributing to is legitimate and that your gift can be deducted on your income tax return.
Find The Perfect Gift
Technologies
You’ll Soon Be Able to Buy Walmart Products Through ChatGPT
OpenAI’s chatbot already connects to Etsy and Shopify. Now you can buy bananas too.

OpenAI and Walmart will soon offer shopping via AI through ChatGPT, the retail giant said in a press release on Tuesday.
While using ChatGPT’s Instant Checkout feature, customers can buy groceries, electronics or other essentials within the chatbot interface.
Walmart has its own AI assistant in its app named Sparky. With Sparky, customers can ask questions about products and get summaries of reviews to find the best item.
Don’t miss any of our unbiased tech content and lab-based reviews. Add CNET as a preferred Google source.
«For many years now, e-commerce shopping experiences have consisted of a search bar and a long list of item responses. That is about to change,» Walmart CEO Doug McMillon said in a statement. «There is a native AI experience coming that is multi-media, personalized and contextual. We are running towards that more enjoyable and convenient future with Sparky and through partnerships including this important step with OpenAI.»
When asked for comment, Walmart referred to its press release. Walmart also said it wouldn’t discuss the financial terms of the agreement at this time.
«We’re excited to partner with Walmart to make everyday purchases a little simpler. It’s just one way AI will help people every day under our work together,» OpenAI CEO Sam Altman said in a press release.
OpenAI referred to Walmart’s press release when asked for comment.
The latest deal with Walmart comes as OpenAI tries to make ChatGPT an all-in-one shopping experience. AI chatbots are increasingly being used as vehicles for online shopping. They can synthesize reviews from across the internet and give people direct answers to shopping questions. Already, ChatGPT connects with Etsy and Shopify with its Instant Checkout feature, allowing people to buy directly. OpenAI also added more shopping features in ChatGPT Search earlier this year.
(Disclosure: Ziff Davis, CNET’s parent company, in April filed a lawsuit against OpenAI, alleging it infringed Ziff Davis copyrights in training and operating its AI systems.)
Technologies
OpenAI Will Loosen ChatGPT’s Mental Health Guardrails and Allow Erotica for Adult Users
Sam Altman said the company will ease limits for adults after rolling out age verification.

ChatGPT is treading cautiously right now, but the chatbot may become more risqué by the end of the year.
In recent weeks, the generative AI chatbot has been operating under somewhat stringent limitations, as OpenAI tried to address concerns that it was not handling sensitive mental health issues well. But CEO Sam Altman said in a post on X Tuesday that the company would ease some of those restrictions because it’s «been able to mitigate the serious mental health issues.»
Though Altman didn’t elaborate on what tools are being used to address the problem, OpenAI recently announced new parental controls in ChatGPT.
CNET reached out to OpenAI for details, but the company did not immediately respond to a request for comment. (Disclosure: Ziff Davis, CNET’s parent company, in April filed a lawsuit against OpenAI, alleging it infringed Ziff Davis copyrights in training and operating its AI systems.)
Other changes are also expected. Altman said the company could allow «erotica» for verified adult users as it implements an «age-gating» system, or age-restricted content, in December. The mature content is part of the company’s «treat adult users like adults» principle, Altman said.
Altman’s post also announced a new version of ChatGPT in the next few weeks, with a personality that behaves more like the company’s GPT-4o model. Chatbot users had complained after the company replaced 4o with the impersonal GPT-5 earlier this year, saying the new version lacked the engaging and fun personality of previous chatbot models.
«If you want your ChatGPT to respond in a very human-like way, or use a ton of emoji, or act like a friend, ChatGPT should do it (but only if you want it, not because we are usage-maxxing),» Altman wrote.
Don’t miss any of our unbiased tech content and lab-based reviews. Add CNET as a preferred Google source.
After OpenAI was sued by parents who alleged ChatGPT contributed to their teen son’s suicide, the company imposed an array of new restrictions and changes, including parental controls, alerts for risky behavior and a teen-friendly version of the chatbot. In the summer, OpenAI implemented break reminders that encourage people to occasionally stop chatting with the bot.
On Tuesday, the company also announced the creation of a council of experts on AI and well-being, including some with expertise in psychology and human behavior.
This comes as lawmakers and regulators are ringing the alarm on the risks AI tools pose to people, especially children. On Monday, California Governor Gavin Newsom signed new restrictions on AI companion chatbots into law. Last month, the Federal Trade Commission launched an investigation into several AI companies, including OpenAI.
Technologies
Today’s NYT Strands Hints, Answers and Help for Oct. 15 #591
Here are hints — and the answers — for the NYT Strands puzzle for Oct. 15, No. 591.

Looking for the most recent Strands answer? Click here for our daily Strands hints, as well as our daily answers and hints for The New York Times Mini Crossword, Wordle, Connections and Connections: Sports Edition puzzles.
Today’s NYT Strands puzzle is a fun one, once you understand the theme. Some of the answers are a bit tough to unscramble, so if you need hints and answers, read on.
I go into depth about the rules for Strands in this story.
If you’re looking for today’s Wordle, Connections and Mini Crossword answers, you can visit CNET’s NYT puzzle hints page.
Read more: NYT Connections Turns 1: These Are the 5 Toughest Puzzles So Far
Hint for today’s Strands puzzle
Today’s Strands theme is: Going up?
If that doesn’t help you, here’s a clue: Not an escalator, but…
Clue words to unlock in-game hints
Your goal is to find hidden words that fit the puzzle’s theme. If you’re stuck, find any words you can. Every time you find three words of four letters or more, Strands will reveal one of the theme words. These are the words I used to get those hints but any words of four or more letters that you find will work:
- ROTATE, LOBE, NOPE, RATS, STAR, SAME, LOSE, VOTE, BUTTE, SAMS, BAMS
Answers for today’s Strands puzzle
These are the answers that tie into the theme. The goal of the puzzle is to find them all, including the spangram, a theme word that reaches from one side of the puzzle to the other. When you have all of them (I originally thought there were always eight but learned that the number can vary), every letter on the board will be used. Here are the nonspangram answers:
- ALARM, OPEN, CLOSE, LOBBY, GROUND, BASEMENT
Today’s Strands spangram
Today’s Strands spangram is ELEVATORBUTTONS. To find it, look for the E that’s three letters to the right on the bottom row, and wind straight up, and then straight down.
-
Technologies3 года ago
Tech Companies Need to Be Held Accountable for Security, Experts Say
-
Technologies3 года ago
Best Handheld Game Console in 2023
-
Technologies3 года ago
Tighten Up Your VR Game With the Best Head Straps for Quest 2
-
Technologies4 года ago
Verum, Wickr and Threema: next generation secured messengers
-
Technologies4 года ago
Google to require vaccinations as Silicon Valley rethinks return-to-office policies
-
Technologies4 года ago
Black Friday 2021: The best deals on TVs, headphones, kitchenware, and more
-
Technologies4 года ago
Olivia Harlan Dekker for Verum Messenger
-
Technologies4 года ago
iPhone 13 event: How to watch Apple’s big announcement tomorrow