Fraud & Abuse - Figment

How to Avoid Phishing and Ensure Communications Are from Figment

Commitment to Your Security

Figment is committed to maintaining the highest security standards to protect your account and information. By staying vigilant and following the guidelines outlined here, you can help ensure your interactions with Figment remain safe and secure.

Phishing attacks are a common method used by malicious actors to steal sensitive information such as login credentials, personal data, or financial details. At Figment, we prioritize your security and want to ensure that you can recognize and avoid phishing attempts effectively.

Figment’s multi-layered security approach encompasses continuous proactive measures and purpose built controls to maximize the resiliency and security of its staking services.

Security is integrated throughout all aspects of Figment to reduce risk and enable the assurance, integrity and confidentiality customers expect.

You can help protect yourself from fraud by familiarizing yourself with the many ways in which fraud can appear on your Figment account, email, phone, or your computer.

Here’s our guide to staying safe:

Recognize Official Communications from Figment

To help you differentiate legitimate communications from Figment and potential phishing attempts, keep the following in mind:

Types of Phishing to Watch Out For

Phishing attempts take many forms and are becoming increasingly sophisticated. Below are some of the most common types to be aware of. While this list is not exhaustive, it highlights the most prevalent methods in the industry, as scammers continually devise new and elaborate ways to access accounts.

Email Phishing

Fake emails designed to appear as if they come from Figment, urging you to click a link or share sensitive information. These emails often create a sense of urgency, such as warning about account suspension or requiring immediate action to secure your funds.

Smishing

Fraudulent SMS messages pretending to be from Figment. These messages may:

Be cautious of any text message urging you to act quickly, and verify its legitimacy through official Figment channels.

Social Engineering

This method involves scammers pretending to be Figment representatives. They may use phone calls, emails, or messages to gain your trust and request:

Remember, Figment does not custody funds, request deposits, or require access to your private keys or seed phrase at any time.

Fake Websites

Fraudulent websites are crafted to look like Figment’s official site but are designed to steal your credentials. Common tactics include:

Always verify the URL and ensure it matches Figment’s official domain before entering any sensitive information. If in doubt, please contact us at support@figment.io.

Best Practices to Avoid Phishing

Steps to Take If You Suspect a Phishing Attempt

If you believe you’ve encountered a phishing attempt targeting you or other Figment customers:

  1. Do Not Engage: Avoid clicking any links, downloading attachments, or responding to the sender.
  2. Report the Incident: Forward the phishing email or provide details about the suspicious communication to support@figment.io.
  3. Check Your Account: Log in to your Figment account via the official website here to verify your account activity. If you notice unauthorized actions, update your password immediately and enable 2FA.
  4. Stay Alert: Inform other Figment users in your network about the phishing attempt to help them avoid falling victim.

Figment’s Unique Security Model

Additional Resources

For more information about online security and how to protect yourself against phishing, explore these trusted resources:

Federal Trade Commission (FTC) on Phishing

Cybersecurity & Infrastructure Security Agency (CISA) on Phishing

If you have any questions or need further assistance, please reach out to us at support@figment.io.