Technology by Design

Technology news, reviews, and how to keep your technology running fast and smooth!

  • Home
  • About TbyD
    • Who is TbyD
    • Why Choose TbyD?
    • 16 Things
    • Your Computer Guy
  • Products and Services
    • Business Services
      • Monthly Service Plans
        • Enterprise Service Plan
        • Business Service Plan
        • Personal Service Plan
      • Performance Analysis
      • Optimization
      • Core Security Solution
      • Managed Backups
      • Computer and Network Systems
      • Computer Setup
      • Domain Names
      • Email Services
      • Extended Warranties
      • Network Cabling Services
      • Security Camera Systems
      • Managed Spam Filters
      • VoIp Phone Systems
      • Websites
    • Services
      • Monthly Service Plans
        • Enterprise Service Plan
        • Business Service Plan
        • Personal Service Plan
        • Computer Setup
      • Core Security Solution
      • Managed Backups
      • Extended Warranties
      • Performance Analysis
      • Optimization
      • Network Cabling Services
      • Security Camera Systems
      • Managed Spam Filters
      • VoIp Phone Systems
    • Products
      • Computers
      • Servers
  • Testimonials
    • What Our Clients Say About Us
  • Blogs
    • ALERTS
    • FAQ
    • How To Videos
  • Newsletters
    • TechTips Newsletters
  • Reviews
  • Media
    • Email Red Flags
    • E-Books
    • Disaster Prevention Planning Kit
    • Free Reports
  • Contact Us
    • Contact Us
    • Quick Support

ALERT: FBI Warns About “Business Email Compromise”

January 28, 2015 by The T By D Team 1 Comment

FBI LogoThe FBI and Internet Crime Complaint Enter is warning about a new global email scam that is targeting companies working with foreign suppliers and/or businesses that regularly perform wire transfer payments.  Please send these people in your company a link to this blog post.  Up until December 1, 2014, this email had scammed over 2100 victims worldwide, with a total loss of over 214 million dollars.  The FBI is confident this amount will continue to increase.

 

The FBI calls it the

“Business Email Compromise” (BEC)

The FBI states “Victims may also first receive “phishing” e-mails requesting additional details of the business or individuals being targeting (name, travel dates, etc.).  Some victims reported being a victim of various scareware or ransomware cyber intrusions immediately preceding a BEC scam request.”

The intial phishing emails and/or ransomware attacks are used to drop keyloggers and trojans on the workstations of an employee.  With these credentials, they tunnel into the network and put keyloggers on C-level executive workstations.  After studying the traffic, the cybercriminal craft an email that is carefully and artfully spoofed, to look as legit as possible.

Your C-level executive receives a business email from an existing, well-known vendor who requests a wire transfer to a specific bank account.  The email looks legit, and it comes from a known, trusted business associate, and is about a recent delivery or transaction.

The wire transfers rapidly get forwarded and transferred several times, usually ending up in  Hong Kong banks (Chinese Cyber mafia).

There are 3 different versions of this scam, targeting different businesses, but the characteristics are the same:
  • Businesses and personnel using open source email are most targeted.
  • Individuals responsible for handling wire transfers within a specific business are targeted.
  • Spoofed e-mails very closely mimic a legitimate email request.
  • Hacked e-mails often occur with a personal email account.
  • Fraudulent email requests for a wire transfer are well-worded, specific to the business being victimized, and do not raise suspicious to the legitimacy of the request.
  • The phrases “code to admin expenses” or “urgent wire transfer” were reported by victims in some of the fraudulent email requests.
  • The amount of the fraudulent wire transfer request is business specific; therefore, dollar amounts requested are similar to normal business transaction amounts so as to not raise doubt.
  • Fraudulent emails received have coincided with business travel dates for executive whose emails were spoofed.
  • Victims report that IP addresses frequently trace back to free domain registrars.
How Do You Prevent CyberCriminals from Accessing Your Network?
  1.  Alert executives to this scam.
  2. Most of these scams start the same way – “phishing“ emails.  Make sure you (and your coworkers, colleagues, employees, etc) don’t click on any suspicious emails.
  3. Read the IC3 Alert in full, and apply their Suggestions For Protection.

 

Bugged by viruses, malware, ransomware?

Call 1-204-800-3166

For A Cyber-Extermination!

 

Filed Under: ALERTS, Featured

Trackbacks

  1. ALERT: FBI Public Alert - Technology by Design says:
    October 28, 2015 at 6:49 am

    […] […]

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Sign Up For The Monthly TechTips Newsletter!

* = required field
unsubscribe from list

powered by MailChimp!

Recent Posts

  • ALERT: Celebrity Death Scams
  • ALERT: Uber Hacked
  • ALERT: Netflix Email Scam
  • ALERT: Bad Rabbit
  • Scam – Reset Password Alert

Recent Comments

  • ALERT: New Ransomware Targets MS Office 365 Users - Technology by Design on Managed Backups
  • ALERT: FBI Warns Email Extortion Heating Up for Summer! - Technology by Design on ALERT: AshleyMadison Hack Blows Up
  • ALERT: Evil Android Trojan Empties Your Bank Account - Technology by Design on Definition: Phishing
  • ALERT: HTML Attachments - Technology by Design on Definition: Phishing
  • ALERT: New Ransomware Also Steals Your Bitcoins - Technology by Design on Managed Backups

Copyright © 2025 · Dynamik Website Builder on Genesis Framework · WordPress · Log in