:

FBI: AMERICANS LOST $388M TO CRYPTO ATM SCAMS IN 2025

SECURITY DESK1 MIN READ
TUE, MAY 19, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The FBI reports that Americans lost over $388 million to scams involving cryptocurrency ATMs in 2025. The losses highlight growing fraud risks as crypto kiosks become more prevalent across the country.

Cryptocurrency ATMs, also called Bitcoin ATMs or crypto kiosks, have become targets for scammers seeking to exploit users unfamiliar with digital asset transactions. The 2025 figure represents a significant financial impact on victims, many of whom are directed to these machines by scammers posing as legitimate businesses or government agencies. Common tactics include romance scams, investment fraud, and impersonation schemes that pressure victims into purchasing cryptocurrency at physical kiosks. Once funds are transferred to a crypto wallet, transactions are typically irreversible. The FBI advises consumers to verify requests for cryptocurrency payments through independent channels and avoid sending digital assets to unknown parties. Users should be particularly cautious of unsolicited contact claiming to represent government agencies or established companies. As crypto ATM networks expand, law enforcement agencies continue tracking these fraud patterns and working with operators to improve security measures and user protections.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

PaperCut has released a second emergency security update for its NG and MF print management software after researchers discovered bypass methods for the initial fixes. The vulnerabilities are currently being exploited in the wild.

1H AGOSecurity Desk

A 68-year-old has been sentenced to over six years in prison in the U.K. for operating an illegal IPTV service that generated £980,812 ($1.3 million) over three years.

4H AGOIndustry Desk

A detailed analysis examines how the internet has shifted toward predatory practices, drawing significant engagement from tech community members on Hacker News with 227 points and 120 comments.

5H AGOIndustry Desk

A critical vulnerability in the popular GiveWP WordPress donation plugin allows unauthenticated attackers to execute arbitrary commands on hosting servers. The maximum-severity flaw requires immediate patching.

5H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.