Categories: Tech

How crooks use skimmers, shimmers to steal your money at ATM

Have you ever had your debit card or credit card information stolen from an ATM? If you have, you may have fallen victim to a skimmer. Tiny devices used by fraudsters called “skimmers” can be attached to ATMs and used to steal data off of your debit or credit card magnetic strip.

There’s also an even smaller device called a “shimmer” that can be installed by fraudsters into an ATM that steals data from your credit or debit card chip if you have a newer chip-based card. If you’re worried about falling victim to skimmers and shimmers, your first line of defense is to understand what these things are and how to keep yourself safe.

CLICK TO GET KURT’S FREE CYBERGUY NEWSLETTER WITH SECURITY ALERTS, QUICK VIDEO TIPS, TECH REVIEWS AND EASY HOW-TO’S TO MAKE YOU SMARTER

Two examples of skimmers (Dubuque Police Department) (Kurt "CyberGuy" Knutsson)

How does a ‘skimmer’ work?

Skimmers are fake card readers that can be installed on top of legitimate card readers and steal data from every person who uses the card reader. These can be found on ATMs, gas pumps and nearly any other card reader device out in the public. Breaking into an ATM is no easy feat, so thieves typically put skimmers on top of the already-existing card reader.

Even more disturbing, though, is that these thieves will also place a hidden camera somewhere near the keypad of the card reader so that they can capture PINs. Some criminals even place false number pads to capture PIN codes, eliminating the need for a hidden camera.

MORE: TIPS TO FOLLOW FROM ONE INCREDIBLY COSTLY CONVERSATION WITH CYBERCROOKS

Example of hidden camera, skimmer and keypad overlay (FBI) (Kurt "CyberGuy" Knutsson)

How to spot a skimmer

Luckily, there are a few tell-tale signs to see if an ATM you are using has been corrupted by thieves with a skimmer. The first step to spotting a skimmer is to pay close attention to the color of the card slot. Typically, on most ATMs, the card slot and ATM will be the same color. If you notice that there’s a bulky, differently-colored card reader, there’s a pretty good chance it’s a skimmer. Skimmers are also installed over the original card reader, so you might notice some dried glue or adhesive around the card reader. Never use a card reader, whether at a gas pump or an ATM, if you suspect a skimmer device has been installed over the original card reader.

MORE: HOW TO FIGHT BACK AGAINST DEBIT CARD HACKERS WHO ARE AFTER YOUR MONEY

Beyond skimmers, beware of the rise in shimming

Skimming is less prevalent than it used to be, but you still should always inspect the card reader and keypad of an ATM before using it, in case a crook has installed a skimmer on it. This is especially pertinent if you are traveling abroad, where skimmers are frequently used by thieves in major tourist areas. However, as skimmers have declined, a new way to steal card data has become popular, called “shimming.”

Example of shimmer (Royal Canadian Mounted Police) (Kurt "CyberGuy" Knutsson)

MORE: GOT A CREDIT CARD FRAUD ALERT? HOW CROOKS SWIPE YOUR PAYMENT CARD DETAILS

What are shimmers?

Skimmers typically don’t work on chip-based credit and debit cards, called EMV cards, which offer a more robust set of security features, such as double encryption between the chip and the magnetic stripe on the back of your card. As you might expect, however, thieves adapt quickly and have developed a system called “shimmers,” which can be used to steal the data from your chip-protected card.

Shimmers are paper-thin devices with a microchip installed on them that are inserted by thieves into ATMs. You can’t see a shimmer from the outside like you can a skimmer, and once you insert your card into the affected ATM, the shimmer steals your card data off the chip, the same way a skimmer would steal your data from the magnetic stripe.

Example of shimmer (Royal Canadian Mounted Police) (Kurt "CyberGuy" Knutsson)

GET MORE OF MY SECURITY ALERTS, QUICK TIPS & EASY VIDEO TUTORIALS WITH THE FREE CYBERGUY NEWSLETTER – CLICK HERE

How to keep yourself safe from shimmers

Shimmers, as we just discussed, are impossible to see from the outside of an ATM or other pay terminal, but there are still a few easy ways you can keep yourself from crooks using shimmers.

Tip #1 – Avoid non-bank ATMs

ATMs that are found in bars, convenience stores and other public places fall victim to card skimmers and shimmers more frequently due to their lack of security features when compared with bank ATMs. Bank ATMs are always the safest to use.

Tip #2 – Utilize contactless payments

An easy way to keep yourself safe when using pay terminals is to use contactless payment systems, such as Apple Pay, Google Pay, Venmo and PayPal, with your phone instead of inserting your card.

Apple Pay (Apple) (Kurt "CyberGuy" Knutsson)

MORE: BEST IDENTITY THEFT PROTECTION SERVICES 2024

Tip #3 – Activate bank alerts on your cards

You can activate mobile alerts on your cards through your bank’s mobile app, which will alert you to any charges being made. This can help keep you safe by quickly identifying any fraudulent charges that need to be canceled.

Bank alert (Bank of America) (Kurt "CyberGuy" Knutsson)

MORE: HOW TO EASILY ADD YOUR CREDIT CARDS AND LOYALTY PASSES TO YOUR IPHONE

Kurt’s key takeaways

Even if you do everything right and go over every inch of an ATM, you, unfortunately, can still fall victim to a shimmer. Always remember, if you suspect you’ve been a victim or credit or debit card shimming and skimming, report any fraudulent transactions to your bank immediately. You won’t be held liable, and your money will be returned to your account. Try to avoid using non-bank public ATMs as much as possible, and when possible, opt to use a contactless payment method instead of inserting your card reader into a terminal.

What additional security measures do you think could be implemented to protect consumers from skimmers and shimmers? Let us know by writing us at Cyberguy.com/Contact.

For more of my tech tips & security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.

Ask Kurt a question or let us know what stories you’d like us to cover.

Answers to the most asked CyberGuy questions:

  • What is the best way to protect your Mac, Windows, iPhone and Android devices from getting hacked?
  • What is the best way to stay private, secure and anonymous while browsing the web?
  • How can I get rid of robocalls with apps and data-removal services?

Copyright 2024 CyberGuy.com. All rights reserved.

Share

Recent Posts

Controversy plagued UN agency that employed Oct. 7 terrorists facing new problems as country redirects funding

close Video Richard Goldberg testifies before the House Foreign Affairs Committee about UNRWA Richard Goldberg,…

26 minutes ago

Potential Vance Senate replacement travels to Mar-a-Lago as speculation on filling seat intensifies

One of the leading candidates to fill Vice President-elect JD Vance's Ohio Senate seat recently…

46 minutes ago

New report warns of growing national security threat to U.S. as China builds AI: ‘Significant and concerning’

FIRST ON FOX: A pro-tech advocacy group has released a new report warning of the…

46 minutes ago

DC violent crime dips 35% in 2024, reaches 30-year low: US Attorney

close Video Fox News Flash top headlines for December 20 Fox News Flash top headlines…

5 hours ago

2025 showdown: This Republican woman may become nation’s first Black female governor

EXCLUSIVE: Republican Lt. Gov. Winsome Sears of Virginia could make history next year as the…

5 hours ago

Were undercover sources from other DOJ agencies present on Jan. 6? Grassley, Johnson demand answers

EXCLUSIVE: Senate Republicans are demanding answers on whether confidential human sources from Justice Department agencies…

5 hours ago