Back to All Attacks
Attack Details
Attack Date:
May 10, 2022

Executive Impersonation Employee Incentive Gift Card Request BEC Attack

Initial Email Content

Subject
Employee Incentive Programs.
Body

Hello [Recipient First Name]

Hope you don't have so much on your plate? Well in case you do, kindly
peg it. I want you to perform a confidential task for me urgently, let
me know if you are available and also reply back with your personal
phone number or your valid WhatsApp number so that i can brief you.

Best Regards,
[Executive Name]

Sent from my iPhone.

Attack Screenshots

No items found.

Malicious Artifacts

Additional Indicators of Compromise

Type

Description

No items found.

Attack Description

This text-based BEC attack impersonates an executive using a spoofed display name, a free webmail account, a cell phone number request, a WhatsApp number request, and an employee incentive theme to request the purchase of gift cards.

Analysis Overview

Tactic
Spoofed Display Name
Free Webmail Account
Cell Phone Number Request
WhatsApp Number Request
Goal
Gift Card Request
Impersonated Party
Employee - Executive
Vector
Text-based
Theme
Employee Incentive
Language