Banking online? Watch your statement like a hawk. Nearly 2 million people had their checking accounts raided in the past year, and most of them were paying bills and shopping online, according to Gartner, Inc. All that info allows tech-savvy criminals to skim your cash. "You have two choices," says Aviva Litan, who headed Gartner's study. "You can stop all of your online activity and withdraw from society, or you can be your own police. That's more practical." Here's what to do:

Never answer an e-mail from your bank or credit-card issuer, because the vast majority of those e-mails are fake, even though they look real.

If you get e-mail from what you think is, say, Citibank, asking you to verify your password (yeah, right), call Citibank directly. Or go to the Citi Web site yourself--though not by clicking on the e-mail-embedded link.

Read your statements right away, and carefully. You have 60 days to report suspicious checks or withdrawals if you want the bank to investigate false charges.

Use a credit card instead of a debit card for online transactions. Debit cards don't have the same anti-fraud controls or protections as credit cards. Most banks will remove fraudulent debit-card charges, but that can take so long you'll have bounced a mortgage check or two before it gets straightened out.