American retailers have long waged a grinding battle against shoplifting, investing billions in security personnel, surveillance technology, and anti-theft hardware. Now, for the first time in several years, those efforts appear to be producing measurable results — but the victory is partial at best. New research from the National Retail Federation (NRF) reveals that while the average number of shoplifting and merchandise theft incidents has finally declined, the broader fraud landscape facing the retail sector is shifting in a more dangerous and harder-to-police direction, with phone scams alone surging 69% across the industry.
The NRF's findings represent a pivotal moment in how the retail industry must think about loss prevention. For years, the dominant narrative around retail crime centered on in-store theft — organized retail crime rings, opportunistic shoplifters, and inventory shrinkage eating into already thin profit margins. Retailers responded with locked display cases, anti-theft tags, increased floor staff, and enhanced cooperation with law enforcement. That pressure, sustained over multiple years, appears to have bent the curve on physical theft. The decline in shoplifting and merchandise theft cases, however modest, marks the first such improvement in a prolonged period, and it signals that the sector's physical security investments are beginning to yield returns.
Yet the NRF data deliver a sobering counterpoint: external theft and fraud cases are rising in aggregate, driven heavily by the explosion in phone-based scams. A 69% increase in phone scams is not a marginal statistical blip — it is a structural realignment of where and how criminals target the retail ecosystem. As physical store floors become more secured and monitored, bad actors are pivoting to the telephone, exploiting the human element that no security camera or inventory tag can address. These scams typically target retail employees or customers directly, using social engineering tactics to extract payment credentials, gift card codes, refund authorizations, or sensitive account information.
This behavioral shift among fraudsters reflects a well-documented pattern in financial crime more broadly: security investment in one channel tends to displace criminal activity toward the path of least resistance. The same dynamic played out in card payments when the rollout of Europay, Mastercard, and Visa (EMV) chip technology drastically reduced counterfeit card fraud at point-of-sale terminals, only to drive a significant spike in card-not-present fraud online. Retailers are now experiencing an analogous displacement — hardened physical environments pushing criminal ingenuity toward voice-based social engineering and remote manipulation.
Phone scams targeting retailers can take many forms. In common schemes, fraudsters impersonate corporate headquarters, vendor representatives, or even law enforcement, pressuring store-level employees into issuing fraudulent refunds, deactivating security protocols, or purchasing and reading out gift card numbers under false pretenses. The scale and low cost of operating such schemes — requiring little more than a prepaid phone and a convincing script — make them highly attractive to criminal networks, and the 69% jump reported by the NRF suggests these operations are expanding rapidly. Unlike merchandise theft, which requires physical presence and carries arrest risk, phone fraud can be executed remotely, across jurisdictions, and at volume.
The financial implications for retailers are significant. Gift card fraud alone has been estimated to cost the broader retail and payments industry hundreds of millions of dollars annually, and phone-initiated scams are a primary vector for that category of loss. For retailers operating on margins that frequently sit in the low single digits, a surge of this magnitude in one fraud category can quickly offset the savings achieved through reductions in physical shoplifting. The NRF data suggest that loss prevention strategies built primarily around in-store security infrastructure are now structurally incomplete, and that organizations which fail to invest equivalently in employee fraud awareness training, call verification protocols, and digital authentication risk trading one loss problem for another.
Payments and fintech infrastructure providers are increasingly being drawn into this challenge. Gift card issuers, payment processors, and digital wallet operators all sit at critical junctures in the fraud chain where phone scam proceeds are typically laundered or realized. Platforms that develop real-time behavioral detection, velocity controls on gift card activations, and friction-based interventions for high-risk telephony-initiated transactions will find a growing and urgent market among retailers seeking to close the gap exposed by the NRF's research.
What This Means for the Retail and Payments Industry
The NRF's data mark a turning point that demands a strategic response from retailers, their payments partners, and technology vendors alike. Progress on physical shoplifting is meaningful and real, but the 69% spike in phone scams demonstrates that fraud is an adaptive adversary — one that exploits success in one area by relocating to another. Retailers must treat fraud prevention as a dynamic, cross-channel discipline rather than a static security investment. Employee training, telephonic authentication standards, and coordination with payments infrastructure partners are no longer optional enhancements; they are foundational requirements for a threat environment that is clearly evolving faster than many organizations anticipated.
Written by the editorial team — independent journalism powered by Codego Press.