A Cuban resident in the United States recounted on TikTok how hackers accessed his Bank of America account, changed the password three times in real time, and attempted to drain it, all while he was on the phone with a bank representative.
Alexis Torres shared his testimony in a video published on July 9, where he recounted that upon returning from work, he received a notification that a transfer had been made from his savings account to his personal account for a significant amount of money.
When trying to log into your online account, the attackers changed the password in less than two minutes and locked you out of the system.
"We're not talking about my card being cloned at a gas station [...] they accessed my bank account," Torres clarified, dismissing the idea that it was the most common type of physical cloning fraud.
Torres called Bank of America after 11 PM. A representative provided him with a temporary password to access his account, but the situation worsened: while he was speaking with the agent, the attackers changed the password up to three times in total.
"They were in the system and they were taking me out," Torres described.
During the incident, he managed to transfer 3,000 dollars from his personal account to his savings account as a protective measure. The attackers tried to move "a large amount of money abroad," but the bank blocked those transactions. Torres confirmed that he did not lose any money.
The next day, he withdrew all his funds from Bank of America and announced that he would open an account at another institution. "I have been with Bank of America for eleven years since 2015, and I've never had any issues," he said, but added that he no longer trusts the bank because his data can be accessed from there.
Torres speculated that the access may have occurred through his iCloud account or Apple ID, and he recommended that his followers change those passwords regularly, at least every six months.
The type of attack described by Torres corresponds to the fraud known as account takeover, a rising trend in the United States. According to the FBI's annual report for 2025, this scheme generated approximately 4,700 complaints and losses of 359.7 million dollars that year. The typical mechanism involves stealing credentials through digital deceptions, SIM card swapping, or malicious programs, followed by changing the password to lock the account holder out and move funds before they can react.
Bank of America has been involved in several recent security incidents related to third-party providers. In 2024, a ransomware attack against Infosys McCamish Systems exposed information of 57,028 clients, including names, Social Security numbers, and account data, although the bank clarified that its own systems were not directly compromised.
The Cuban community in the United States has frequently been targeted by banking fraud. Previous cases include Zelle scams through deceptive calls, alerts regarding card cloning at gas stations, and fake agents operating in Miami. In 2025, several Cubans also began receiving bank alerts about their immigration status, which raised additional concerns about the security of their accounts.
"I have realized that nothing is safe here; hackers can infiltrate any account," Torres warned, urging his followers to share the video with family members who have accounts at Bank of America or any other bank.
Filed under: