Back to All Attacks
Attack Details
Attack Date:
Jun 29, 2022
Executive Impersonation Aging Report Theft BEC Attack
Initial Email Content
Subject
Status of Payment
Body
Hi [Recipient First Name],
Kindly email me the latest A/R report. You are to include the following on the report, Invoice number, Invoice due date, Payment terms, Client name or ID, Aging Bucket, Client Contact Name and AP Email.
I need to review them.
Regards,
[Executive First Name]
Sent from my iPhone
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an executive using a spoofed display name and a free webmail account to request a copy of an aging report.
Analysis Overview
Tactic
Spoofed Display Name
Free Webmail Account
Goal
Aging Report Theft
Impersonated Party
Employee - Executive
Vector
Text-based
Theme
No items found.
Language