Back to All Attacks
Attack Details
Attack Date:
May 19, 2022
Employee Impersonation Payroll Diversion BEC Attack
Initial Email Content
Subject
DD Update [Impersonated Employee Name]
Body
Good morning,
Please i will need your assistance in updating my banking details for payroll. I'm now with another bank and i do not want to lose my next paycheck.
I have my new bank details to take effect next payroll.
Kindly advise.
Regards,
[Impersonated Employee Name]
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an employee using a spoofed email address, a personalized email subject, and a free webmail account to divert payroll deposits to a fraudulent account.
Analysis Overview
Tactic
Spoofed Email Address
Personalized Email Subject
Free Webmail Account
Goal
Payroll Diversion
Impersonated Party
Employee - Other
Vector
Text-based
Theme
No items found.
Language