The rapid growth of digital financial services in Argentina brought convenience and speed to millions of users. Digital wallets and mobile home banking apps make people's daily transactions easier in a way that was unthinkable just a few years ago.
However, this widespread adoption of financial technology also expanded the ground for criminal organizations. Criminal gangs seek to seize other people's funds digitally. Online scams keep growing and phishing has become the main tool for stripping people of their assets in our country.
To gauge the scale of this problem, just look at the latest data from consulting firm D'Alessio IROL and CertiSur. Their annual digital security report shows that 43 percent of local users suffered some kind of hack or online scam.
This figure represents an alarming increase considering that just four years ago the indicator was in single digits, at 9 percent. In the intervening years the upward trend was constant in the country, with 31 percent in 2024 and 33 percent in 2025.
Official statistics from the National Public Prosecutor's Office confirm this worrying picture. The Specialized Cybercrime Prosecution Unit, headed by prosecutor Horacio Azzolin, reported that 34,468 complaints of computer crimes were filed last year.
This figure represented a 21.1 percent year-on-year increase compared to the previous period. Investigators highlight that online fraud tops the list, accounting for 63 percent of all reports received by the specialized prosecution unit.
The growth of these types of crime is linked to the professionalization of the gangs and the use of new technologies. The emergence of artificial intelligence tools allows scammers to refine their messages and identically mimic bank communications.
There are even attempts that use voice clones or AI-generated images of public figures to offer non-existent investments.
Social media and instant messaging services such as WhatsApp have become frequent contact channels for launching these scams.
How do online scams that impersonate banks work?
Bank impersonation scams, technically known as phishing, are based on manipulating the user's trust. The scheme begins when scammers send mass emails that appear to come from a legitimate financial institution.
The messages identically imitate the institution's corporate identity. They use official logos, institutional colors and designs that look genuine. Attackers seek to trigger a sense of urgency or fear in the victim so they act quickly and without thinking.
A common excuse in these fraudulent emails is an alleged account lock or a suspicious transfer that requires validation. To fix this supposed problem immediately, the message includes a link that redirects the user to a fake website.
This bogus website is an exact replica of the financial institution's official home banking login portal. When they enter, users see an interface identical to the usual one. This lowers suspicion and makes it easier for them to hand over their login details.
The technological trap also includes the use of security certificates that display the classic padlock icon in the address bar. Many people associate this padlock with an absolute guarantee that the page is legitimate, but in reality it only indicates that the connection is encrypted.
Scammers set up these certificates on their malicious domains to give their phishing platforms a false appearance of security. When the victim types their username and password into the duplicated interface, the criminals receive that information in real time.
When the bank account has two-factor authentication, the fake site displays an additional field. This screen asks for the one-time code sent by text message or the mobile token key.
The criminals, operating in parallel from the institution's real portal, enter the captured data to access the account. Within minutes, they make immediate and irreversible transfers to third-party accounts or request pre-approved loans that they divert right away.
What are the main signs for identifying a fraudulent email?
Despite criminals' efforts to imitate official communications, phishing emails always leave traces that give them away. The first checkpoint is the sender's email address.
Official banks use specific, proprietary domains that are duly registered with the financial system authorities. Scammers often use free email accounts or domains with subtle letter variations, a technique known in digital security as typosquatting.
It is essential to know the authorized email domains of the main banks in order to check the information you receive. Legitimate communications from Banco Provincia come from addresses ending in bpba.com.ar, bancoprovincia.com.ar, bancoprovinciamail.com.ar or prisma-mp.com. The Public Prosecutor's Office of the Province of Buenos Aires detailed these warnings on its website to raise public awareness.
For its part, Banco Galicia uses verified domains such as email.galicia.ar, mkt.bancogalicia.com.ar or bancogalicia.com.ar for its emails. If the email you receive comes from a different extension, you should immediately classify it as fraudulent.
Another obvious sign of fraud is the presence of external links that demand a quick redirection to other websites. Banks never include direct access links to their transaction portals in their regular informational emails.
If you hover the cursor over the link without clicking, you can preview the real destination address in the browser's bottom bar. In fake emails, this address shows strange server names that have nothing to do with the financial institution's infrastructure.
An urgent tone and psychological pressure are two other signs that you are facing a digital scam attempt. Criminal gangs resort to threats of immediate service suspension, fines or loss of benefits to force a quick action.
This deliberate urgency seeks to switch off the recipient's critical thinking and push them into a state of panic. The communication guidelines of local banks prohibit the use of this kind of pressure language with their customers.
Finally, spelling mistakes, poor wording or problems in the message's graphic design confirm that it is fake. Many phishing campaigns are designed in other countries and use automatic translators that do not respect the local Rioplatense Spanish.
They often ask you to download attachments with suspicious extensions such as executables or compressed files. Financial institutions never send documents that require installation or enabling macros to solve operational problems.
What actions should you avoid completely if you receive a suspicious message?
When you receive an email or message that raises even the slightest suspicion, it is essential to be extremely distrustful. The first security rule is not to interact with any link or button contained in the body of the message. In this regard, the Central Bank published its list of preventive guidelines. Likewise, you can review the security tips prepared by the Secretariat of Domestic Trade on its official website.
If you need to log in to your home banking to check the status of your accounts, always do it manually. Type the financial institution's official address directly into your browser bar or use the official mobile app on your phone.
You must avoid downloading or running any file attached to the suspicious email. Many of these files contain remote access trojans or viruses designed to collect sensitive information from your devices.
Criminals use this malware to spy on your passwords and take full control of your computer or phone. Keeping your devices secure requires keeping your operating system up to date and having an active antivirus.
Under no circumstances should you disclose your security keys, passwords, PIN codes or dynamic token numbers through informal channels. These access credentials are personal, secret and non-transferable, and they are not needed for the bank to provide you with technical support.
No employee of a legitimate financial institution will ask you for this information by phone or online to complete a procedure. If someone contacts you with this request, you should end the conversation immediately because you are facing fraud.
Another thing you should avoid is publicly posting transaction-related complaints, questions or claims on social media. Criminal gangs scan public comments on banks' official accounts looking for dissatisfied customers.
Once they detect the complaint, they contact the customer directly through fake profiles that pretend to belong to customer service. In these cases, they play the role of the fake good Samaritan to win your trust and ask for confidential data with the promise of solving your problem.
Likewise, you should not reply to messages warning about alleged errors when making money transfers to your bank account. This is a growing scheme in which criminals try to guide you over the phone to go to an ATM or use your app.
The goal is for you to generate and hand over a token code, or to carry out reversal operations that actually transfer your savings. Any procedure involving movements of funds must be verified exclusively through the bank's official channels.
How should you react if you fell into the trap and your account was drained?
If, despite your precautions, you fall victim to an online scam, a quick response is essential to limit the financial damage. The first mandatory step is to contact your bank or digital wallet through their 24-hour emergency phone lines.
You should request the immediate lock of your home banking user, the deactivation of your debit or credit cards and the suspension of your token. Demand a written claim number to formally record that you do not recognize the transactions.
At the same time as you notify the bank, it is highly advisable to change the passwords of all your key digital services. This includes the passwords for your personal email accounts, your social media profiles and your associated financial apps.
Carry out this change from a secure device other than the one you were using when the scam occurred. This way, you prevent scammers from keeping control if your main device is infected with spyware.
Preserving digital evidence is another essential step to support your subsequent criminal and civil claim. Do not delete any text message, phishing email, WhatsApp chat or phone call records related to the incident.
Take high-resolution screenshots showing the real sender of the email or the scammer's phone number. You should also keep the details of the transactions, including the destination CBU or CVU numbers of the transfers. This information is the raw material for the prosecution's investigators.
With all the evidence gathered, you should file a criminal complaint with the justice system immediately. In Argentina, you can send an email with a detailed description of the case to denunciasufeci@mpf.gob.ar to start the formal process.
You can also go to your local police station or the prosecutor's office on duty, which are required to take your complaint free of charge. Starting criminal proceedings allows investigators to request quick measures to freeze funds with the financial platforms.
If your bank's response is not satisfactory, you should escalate your claim to the government's oversight bodies. You can file an official complaint with the National Consumer Protection Directorate online and free of charge.
The Central Bank provides channels for unresolved claims to mediate between users and banks. BCRA Communication A 7996 sets a 60-day period to dispute debits from immediate pull transfers, with the institution required to refund within three business days.
Source:iProfesional