Schneier iconSchneierSep 3, 2026 ~2 min source read

Researchers Created a Fake Company to Study Employment Scams

A brief on a Schneier blog post that reports researchers built a sham employer to observe how fake-employee scams operate and how they embed in organizations.

Share this story

Send the public story page.

Useful takeaways from this story.

Researchers used a fabricated company as a controlled environment to study fake-employee recruitment and activity.

Commenters on the report highlighted techniques and risks such as long-term embedding, use of sandboxes, and targeting of desperate job seekers.

# What happened Bruce Schneier linked to a short report noting that researchers built a fake company to study fake-employee scams. The study created a controlled, deceptive employer presence to observe how scammers recruit, onboard, and act once they appear to be legitimate staff.

# Why they did it The stated purpose was to get direct visibility into fake-employee operations. By standing up a believable company, the researchers could see recruitment approaches, the onboarding process, and how malicious actors behave once inside a workforce-like environment.

# What the commentary adds

  • One commenter described the study as a "sandbox" approach and suggested that sandboxes can give deep visibility into attacker behavior. The comment emphasized the practical benefit of observing operations in a controlled setting.
  • Another commenter shared an anecdote about a development hire in a DeFi project who, according to that account, was joined by two foreign IT workers. The anecdote mentioned quick access to tools (syncing an account on a virtual desktop in the sandbox) and implied risks when geographic or identity signals are ambiguous.
  • A separate comment noted the human cost: many employment scams prey on people who are desperate for work, using misleading interviews or high-pressure sales tactics, including multilayer marketing schemes.

# How this connects to other coverage Related links and headlines collected alongside the post show a wider ecosystem of reporting and resources about job-related fraud:

  • Practical lists of common job-search scams and red flags to watch for during recruitment.
  • Technical variants of scams, such as fake CAPTCHA schemes, which repurpose familiar web patterns to trick users into running malicious code.

# Immediate, practical takeaways for readers

  • Treat unsolicited recruiter outreach and too-good-to-be-true job offers with skepticism. Verify company existence through multiple channels before sharing sensitive personal or technical access.
  • Watch for signs of deception during interviews: pressure to act quickly, requests to perform work before official onboarding, or requests to install or run unfamiliar software.
  • Employers should consider controlled testing and background verification for remote hires and contractors. The sandbox approach used by the researchers is one method to observe behavior before granting broader access, but it requires ethical and legal safeguards.
  • Job seekers should rely on trusted job boards, confirm contacts through official corporate channels, and avoid transferring funds, providing ID documents, or installing software without clear necessity and verification.

# Where to read more

More context around this story.

Loading more related stories...

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app