Key takeaway

A professional-looking vacancy, interview or offer letter does not prove that a job is genuine. Sometimes obtaining your personal information, rather than immediately taking your money, may be the scammer's objective.

That Remote Job Offer Could Be an Identity Theft

Not every fake remote job is designed to make you pay a fee. Some fraudulent recruiters may be more interested in the personal information you hand over while applying, interviewing and completing what looks like normal onboarding.

Job applications naturally involve personal data. A CV may already reveal your full name, phone number, email address, location, education and work history; once someone posing as a recruiter gains your trust, they may ask for identity documents, banking details or other sensitive information.

The US Federal Trade Commission warns about fake recruiters who impersonate recognised employers, send official-looking interview invitations and offer letters, then push applicants to provide personal or financial information before a genuine interview or confirmed hire.

The recruitment process can look surprisingly real

The FBI has documented fake hiring schemes targeting applicants' personal information in which criminals spoof company websites, copy job openings, advertise on popular job boards and conduct false interviews while impersonating recruiters, HR staff and managers.

Some victims are subsequently sent employment contracts and asked for identity documents or direct-deposit information. That is what makes this form of fraud dangerous: several stages can resemble a legitimate recruitment process.

How fake employers target job seekers

The FBI has also published an official video explaining how criminals can pose as legitimate employers by spoofing company websites and publishing fake job openings to steal personal and financial information. The FBI explains how criminals can impersonate legitimate employers and use fake job listings to target job seekers.

Real examples show how convincing fake domains can be

The threat is not theoretical. In May 2026, the FBI identified websites spoofing FIFA ahead of the 2026 World Cup, including recruitment-themed domains such as:

`jobs-fifa[.]com` `fifa-hr[.]com` `fifa-careerhub[.]com` `fifa-hiring[.]com`

These addresses are deliberately shown in a non-clickable format and should not be visited.

The FBI said spoofed websites can be designed to collect information including names, home addresses, phone numbers, email addresses and banking details. A website containing a familiar company name alongside words such as “jobs”, “careers” or “HR” is therefore not proof that the organisation owns it.

Nigeria has experienced similar impersonation. NITDA previously warned Nigerians about a fake recruitment websiteinviting people to apply for vacancies the agency said it had never advertised.

Why ordinary information becomes more dangerous when combined

One detail may appear harmless, but the risk increases when several pieces are assembled into a profile.

Someone who knows your name, phone number, email address and employment history already has useful material for targeted phishing. Adding identity documents or banking details can make impersonation and financial fraud more serious.

Nigeria's ngCERT has warned about phishing campaigns targeting personal and banking information through email, SMS, WhatsApp and social media, warning that successful attacks can lead to financial loss and identity theft.

When should a request worry you?

A legitimate employer may eventually need sensitive information for payroll or formal onboarding. The important questions are timing, necessity and verification. Be cautious when banking or identity information is requested before a genuine interview and confirmed hire, when a recruiter uses an unrelated email domain, when the hiring process moves unusually fast, or when you are directed to a website that only resembles the employer's real site.

Verify the vacancy independently. Find the company's real website yourself, check its careers page and, if necessary, contact the organisation using contact information you obtained independently.

What if you already submitted sensitive information?

First, identify exactly what you disclosed. If you provided login credentials, change the affected password and enable multi-factor authentication. If banking information or an unauthorised transaction is involved, contact your financial institution promptly.

Keep copies of the vacancy, messages, email addresses and forms involved. Report the fraudulent listing to the platform where you found it and alert the genuine organisation being impersonated.

Our Recommendation

Treat every job application as an exchange of personal data, not merely an opportunity to send your CV.

A polished offer letter, convincing interview and familiar company logo can all be copied. Before providing increasingly sensitive information, independently verify the vacancy, company and person recruiting you.Sometimes the fake employer does not need your money. Getting you to complete the application and surrender valuable personal information may already be the scam.

Verification Links

FBI — Cyber Criminals Use Fake Job Listings to Target Applicants' Personal Information

Frequently asked questions

Is it suspicious if an employer asks for my bank details?

Not automatically. A genuine employer may require banking details for payroll after hiring. The concern is when financial information is demanded unusually early, particularly before a genuine interview or independently verified employment offer.

Can fake jobs appear on legitimate job websites?

Yes. The FBI has documented fraudulent vacancies being advertised through popular job boards, which is why finding an advert on a recognised platform does not eliminate the need to verify the employer.

Does HTTPS prove a recruitment website is genuine?

No. The FBI specifically warns that criminals can also use HTTPS, so the padlock or https:// alone should never be treated as proof that a recruitment website belongs to the company it claims to represent.

Reader discussion

Leave a comment

Comments cannot be edited or deleted after posting. Please review your comment before submitting.

No comments yet. Start the conversation.

Found an error, outdated step or safety concern? Contact the desk.