โ† Back to Case File

Protection Guide

COMPREHENSIVE SECURITY HARDENING โ€ข BUCK VAUGHAN

A

Immediate Protection

๐Ÿ›‘ Stop All Contact

  • โ€ข Block Florence's phone number(s)
  • โ€ข Do not respond to texts, calls, or emails
  • โ€ข Screenshot everything before blocking

๐Ÿ”’ Freeze Outbound Transfers

  • โ€ข Call bank: request wire-transfer hold
  • โ€ข Require in-person verification for wires
  • โ€ข Disable Zelle/Venmo if linked to the account

๐Ÿ“ฑ Secure Your Phone

  • โ€ข Enable SIM lock / PIN with carrier
  • โ€ข Change voicemail PIN
  • โ€ข Enable 2FA on email and bank apps

๐Ÿ“‹ If You Shared Info

  • โ€ข Shared wire info โ†’ Tell bank NOW, new account numbers
  • โ€ข Shared SSN โ†’ Credit freeze (Equifax, Experian, TransUnion)
  • โ€ข Shared login credentials โ†’ Change passwords everywhere
B

Banking Security Hardening

Wire Transfer Lock

Require in-person branch visit with photo ID for all outbound wire transfers. Most banks offer this upon request.

Positive Pay

An anti-fraud service where the bank matches checks presented for payment against ones you've issued. Alerts on mismatches.

ACH Block / Filter

Blocks unauthorized ACH debits. Only pre-approved originators can debit your account electronically.

Dual Control for Wires

Require two authorized individuals to approve any wire transfer. Prevents single-point compromise.

Transaction Alerts

Enable email/SMS alerts for all transactions above $0. Get instant notification of any account activity.

Daily Balance Monitoring

Check account balances daily for 90 days. Report ANY unrecognized transaction, no matter how small.

C

Digital Identity Protection

๐ŸงŠ Credit Freeze (All 3 Bureaus)

  • โ€ข Equifax โ€” 800-685-1111
  • โ€ข Experian โ€” 888-397-3742
  • โ€ข TransUnion โ€” 888-909-8872
  • โ€ข Freezes are FREE. They prevent new accounts from being opened in your name.

๐Ÿ”‘ Enable 2FA Everywhere

  • โ€ข Email (Gmail, Outlook, etc.)
  • โ€ข Bank accounts & investment accounts
  • โ€ข Social media (LinkedIn, X, etc.)
  • โ€ข Cloudflare, hosting, domain registrar
  • โ€ข Use authenticator app, NOT SMS when possible

๐Ÿ” Password Reset

  • โ€ข Change passwords for email, bank, and any financial service
  • โ€ข Use unique passwords per service (no reuse)
  • โ€ข Use a password manager (e.g., 1Password, Bitwarden)

๐Ÿ“Š Monitor Credit Reports

  • โ€ข annualcreditreport.com โ€” free weekly
  • โ€ข Watch for new accounts you didn't open
  • โ€ข Watch for hard inquiries you didn't authorize
D

mensofgod.com Platform Security

โ˜๏ธ Cloudflare Hardening

  • โ€ข Review and rotate API tokens
  • โ€ข Enable Bot Fight Mode
  • โ€ข Set Security Level to "High"
  • โ€ข Enable Browser Integrity Check
  • โ€ข Review Access Logs for unauthorized requests

๐Ÿ“ Intake Form Protection

  • โ€ข Add CAPTCHA to all contact/intake forms
  • โ€ข Disable auto-reply with sensitive info
  • โ€ข Log and review all recent form submissions
  • โ€ข If Florence came through a form, block that IP/email

๐Ÿ“ง Email Security

  • โ€ข Verify SPF, DKIM, DMARC records in DNS
  • โ€ข Review email forwarding rules (scammers add auto-forwards)
  • โ€ข Change email password, enable 2FA

๐ŸŒ DNS Monitoring

  • โ€ข Review all DNS records in Cloudflare
  • โ€ข Look for unauthorized subdomains
  • โ€ข Enable DNSSEC if not already enabled
E

Future Scam Recognition

Red flags to immediately recognize and stop future fraud attempts:

๐Ÿšฉ Unsolicited check arrives by mail or FedEx
๐Ÿšฉ "Deposit this and wire me the difference"
๐Ÿšฉ Urgency โ€” "Do it today" / "Time-sensitive"
๐Ÿšฉ Requests wire transfer or cryptocurrency
๐Ÿšฉ Overpayment โ€” check is for more than expected
๐Ÿšฉ Person found you online / unsolicited contact
๐Ÿšฉ Asks for banking details (routing, account #)
๐Ÿšฉ Check comes from unexpected state or entity
๐Ÿšฉ "Investment opportunity" tied to a check
๐Ÿšฉ Cannot meet in person / avoids video calls
๐Ÿšฉ Claims to be a business but no verifiable presence
๐Ÿšฉ "Don't tell anyone" / secrecy pressure

6-Step Verification Protocol (For Any Future Check)

  1. NEVER deposit a check from someone you haven't verified independently
  2. Look up the issuing bank on FDIC BankFind
  3. Call the bank at the BankFind number โ€” NOT the number on the check
  4. Ask the bank to verify the check number, amount, and payee
  5. Wait for the check to FULLY CLEAR (not just "available") โ€” most checks take 5-10 business days
  6. "Funds available" โ‰  "Check verified." Banks release funds before verifying. If the check bounces, YOU lose the money.
F

RWA / Digital Asset-Specific Threats

As an RWA tokenization platform operator, Buck faces specific fraud vectors including:

Fake Investment Offers

Scammers impersonate investors or partners to gain trust, then redirect funds. Always verify identity through independent channels before any transaction.

Check-to-Wire Conversion

This exact scam. A fraudulent check is sent; victim is told to wire "proceeds" or "excess." The check bounces after the wire is sent and cannot be reversed.

Social Engineering via Platform

Attackers identify targets through public websites, LinkedIn, SEC filings, or DAO registrations. Your public profile is your attack surface.

Compromised Intermediaries

Fake law firms, escrow agents, or title companies. Always verify through state bar associations and official registries.

G

Your Legal Rights

Regulation E (Electronic Fund Transfers)

Limits liability for unauthorized electronic fund transfers if reported within 2 business days (max $50). After 2 days, up to $500. After 60 days, unlimited loss.

Regulation CC (Funds Availability)

"Available" does NOT mean "verified." Banks must make funds available within set timeframes, but a check can still bounce AFTER funds are released. You are liable for the difference.

UDAP (Unfair/Deceptive Practices)

Federal and state laws protect against unfair, deceptive, or abusive practices. Filing complaints with FTC, CFPB, and state AG creates a record for enforcement.

Crime Victims' Rights Act (18 U.S.C. ยง 3771)

As a fraud victim, you have the right to: be reasonably protected, timely notice of proceedings, confer with the attorney for the government, full restitution.

Emergency Quick Contacts

โš ๏ธ Legal Notice

This guide is for informational and documentation purposes only. It does not constitute legal, financial, or cybersecurity advice. Consult with appropriate professionals for your specific situation.