Social Engineering

Business Email Compromise

8 min read

BEC attacks caused $2.7 billion in losses in 2022. These sophisticated attacks target businesses with wire transfer and invoice fraud schemes.

Common BEC Types

CEO FraudAttacker impersonates executive requesting urgent wire transfer
Invoice FraudFake invoice from "vendor" with attacker's bank details
Account CompromiseReal employee email used to request payments
Attorney ImpersonationPretends to be lawyer handling confidential matter
Data TheftHR impersonation requesting W-2 or payroll data

Red Flags

Prevention Controls

If Compromised
  1. Contact your bank immediately
  2. File FBI IC3 complaint
  3. Preserve all evidence
  4. Engage incident response

December 2024