Back to All Attacks
Attack Details
Attack Date:
May 2, 2022
Employee Impersonation Payroll Diversion BEC Attack
Initial Email Content
Subject
Update Payment Information
Body
Hi [Recipient First Name],
I need your assistance, I want to update my account information on the payroll system. Kindly send me a direct deposit authorization form. I'd also like to know the pay date the change will go into effect
Thanks!
[Impersonated Employee Name]
[Impersonated Employee Title]
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an employee using an external compromised account to divert payroll deposits to a fraudulent account.
Analysis Overview
Tactic
External Compromised Account
Goal
Payroll Diversion
Impersonated Party
Employee - Other
Vector
Text-based
Theme
No items found.
Language