The Cloud Consultancy Europe Ltd.
+44 (0) 203 637 6667 [email protected]

business email compromise (BEC) campaign is using an email thread that pretends to have been forwarded by the boss in a bid to trick targets into handing over big sums of money.

Not only are BEC attacks one of the most lucrative forms of cybercrime – the FBI says they’ve cost victims a combined total of more than $43 billion in recent years – but they’re also one of the simplest to carry out because all attackers really need is an internet connection, an email account and perhaps some background research into their targets.

Often, BEC emails seem to be from a colleague or a boss, claiming that a wire transfer must be made quickly and quietly, with scammers hoping that generating a sense of urgency will be enough to trick the unfortunate target into making a bogus payment.

But with a little more nuance, BEC attacks have the potential to be more effective and harder for victims to spot – and that could prove very costly for businesses.

One of these more advanced BEC campaigns is designed to trick victims into thinking they’ve been forwarded an ongoing thread by their boss, asking them to deal with an invoice and make a payment – which is sent to an account run by the scammer.

The Cloud Consultancy provision, setup and manage SME Cyber Security services to protect your business. Click logo to find out more.

The campaign has been detailed by cybersecurity researchers at Abnormal Security, who describe it as a “a sophisticated new business email compromise attack” that combines vendor impersonation with executive impersonation.

Attacks are even personalized, using email spoofing and a claim that they’re from an actual executive of the company that the target victim works for.

And to make the attack look more convincing, it’s designed to look like it’s part of an ongoing thread, with the “boss” asking the victim to set up a financial transaction related to a business payment that is referenced in the forwarded email. But like the message from the “boss”, the forwarded request for an invoice is also fake, made up by scammers as part of the lure.