Unpaid invoices are one of the easiest ways hackers can trick you — here's what happened to me

woman holding phone and credit card after being hacked
(Image credit: Shutterstock)

In order for their attacks to be successful, scammers first need a way to get your attention and one of the easiest ways to dupe unsuspecting victims is with an unpaid invoice.

Scammers and cybercriminals alike often use unpaid invoices as a lure in their phishing emails due to how well they work. Whether you’re an employee or a small business owner, an unpaid invoice in your inbox is the kind of thing that demands your attention.

Phishing emails about unpaid invoices also often instill a sense of urgency to get users to open them. From here, the actual invoice may appear in the body of the email but it’s more likely to be included as an attachment which could also contain malware. Even if the attachment itself is harmless, many of these fake invoices do actually end up getting paid.

To give you a bit more insight into fake invoice scams and how they work, here’s a suspicious PayPal invoice I recently received in my own inbox.

Suspicious PayPal invoices

As I was checking my email earlier this week, I noticed there was an unpaid PayPal invoice in my inbox. Since I don’t use PayPal with my work email, I knew right off the bat that this was a scam but decided to investigate further.

An email from PayPal about an unpaid invoice

(Image credit: Tom's Guide/Google/PayPal)

The first thing I did was to check the sender’s email address to make sure that the message actually originated from PayPal. While email addresses can be spoofed, I knew that this was a legitimate message as I hovered over the “View and Pay Invoice” button to inspect the link and saw in the lower left corner of Google Chrome that clicking on it would take me to PayPal’s official website. 

A fake invoice for a $600 Bitcoin

(Image credit: Tom's Guide/PayPal)

I clicked on the link, which brought me to PayPal’s website. Once there, I found an invoice for $600 from a person whose name I had never even seen before. Inspecting the contents of the invoice closer shows that this $600 would get me one Bitcoin when an actual Bitcoin cost $22,933 at the time of writing. Unfortunately, somebody else might think this is a great deal and decide to pay the invoice only to find out later that they’d lost $600 and there never really was a Bitcoin.

A message from PayPal saying an invoice is no longer available

(Image credit: Tom's Guide/PayPal)

Out of curiosity, I decided to check on the invoice one more time after I received a reminder email from PayPal telling me that I still had one unpaid invoice. To my surprise though, the invoice itself had been deleted and was no longer available at all.

If you’ve received a similar unpaid invoice email from PayPal, the company explains at the bottom of the message that if you don’t know the seller, “You can safely ignore this invoice if you're not buying anything from this seller.” Likewise, PayPal won’t “ask you to call or send texts to phone numbers in an invoice.”

PayPal is one of the oldest and easiest ways to send money to friends and family. However, as it says in an FAQ on the company’s site, the only thing you need to send an invoice on the platform is an account. While certainly convenient, this makes it easy for scammers to send out fake invoices on PayPal with the hope that someone actually pays. Even if just one person does, the scammers behind this campaign — and others like it — have made a profit.

How to stay safe from fake invoice scams

A woman looking at a smartphone while using a laptop

(Image credit: Shutterstock)

Just like with other online scams, fake invoice scams can be avoided by keeping a cool head when checking your inbox. In a blog post, the email security company Armorblox lays out a few things to look out for.

Besides trying to instill a sense of urgency, the scammer responsible may ask for personally identifiable information (PII), which is another red flag. At the same time, they might ask for an outrageous sum of money instead of something more reasonable. However, the biggest tell that an invoice is fake is if it’s for something you didn’t purchase. This is why you should check the service mentioned in the email first instead of replying to the message, clicking on any links it may contain or opening any attachments.

From here, you also want to be on the lookout for poor spelling and grammar since many scammers target users in other countries. Likewise, if an invoice arrives from an online vendor you’re not familiar with, it’s likely a scam.

While the best antivirus software can keep you safe from malware and other online threats, it can’t protect you from letting your emotions get the best of you and paying an invoice for goods you didn’t purchase. If you do happen to pay such an invoice, you’ll be better off investing in the best identity theft protection as the scammers may also try to steal your identity now that they’ve ripped you off.

When in doubt, it’s always best to delete emails from unknown senders saying that you have an unpaid invoice as opposed to interacting with them. You also want to avoid calling any phone numbers in these emails as scammers could try to convince you to pay them or to give up your personal information over the phone.

Image
Read Next

Curious about the other tricks hackers use to scam you? This clever trick is often used to lead unsuspecting users to phishing sites.

Anthony Spadafora
Managing Editor Security and Home Office

Anthony Spadafora is the managing editor for security and home office furniture at Tom’s Guide where he covers everything from data breaches to password managers and the best way to cover your whole home or business with Wi-Fi. He also reviews standing desks, office chairs and other home office accessories with a penchant for building desk setups. Before joining the team, Anthony wrote for ITProPortal while living in Korea and later for TechRadar Pro after moving back to the US. Based in Houston, Texas, when he’s not writing Anthony can be found tinkering with PCs and game consoles, managing cables and upgrading his smart home. 

Read more
PayPal logo on iPhone
Watch out! Scammers are using this PayPal setting to take over your PC
A person typing on a computer while hackers use phishing to steal a file from their computer
Phishing: What is it, and how to avoid it
A hacker typing on a computer
FBI issues serious warning to iPhone and Android users — stop doing this ASAP
Man stressed at computer
How to avoid romance scams
A person typing on a computer while hackers use phishing to steal a file from their computer
It's Safer Internet Day – here are 5 tips to help you be safer online
An FBI agent typing on a computer
FBI issues warning to millions of Americans to avoid these websites that can steal your passwords and banking info
Latest in Online Security
A magnifying glass on top of the Steam logo in a web browser
Valve just pulled a malicious game demo spreading info-stealing malware from Steam
A man filing his taxes electronically on a laptop
AI-powered tax scams are here - how to stay safe from deepfakes, phishing and more this tax season
MacBook Pro 2023
New Mac attack is tricking users into thinking their computer is locked — how to stay safe
Hacker using a stolen social security card
Your Social Security number is a literal gold mine for scammers and identity thieves — here’s how to keep it safe
An open lock depicting a data breach
Half a million teachers hit in major data breach with SSNs, financial data and more exposed — what to do now
Green skull on smartphone screen.
Malicious Android apps with 60 million installs bombarding phones with ads and phishing attacks — how to stay safe
Latest in News
Apple Watch Series 10
Future Apple Watch models could get a surprising new feature — what we know
NYTimes Connections
NYT Connections today hints and answers — Monday, March 24 (#652)
NYT Strands on a cellphone
NYT Strands today — hints, spangram and answers for game #386 (Monday, March 24 2025)
iPhone 16 Pro vs iPhone 16 Pro Max in hand showing displays
Forget iPhone 17 — iPhone 18 could get this huge upgrade
The new Husqvarna iQ series robot lawn mower.
Husqvarna’s new robot mowers offer GPS for less
Rendered images of rumored foldable iPhone.
Foldable iPhone report just revealed key details — here's what we know