Back to All Attacks
Attack Details
Attack Date:
May 10, 2022
Executive Impersonation Payroll Diversion BEC Attack
Initial Email Content
Subject
Requisition
Body
Hi [Recipient First Name],
I would like to modify my account on file for Direct Deposit and would want the change to take effect for my current paycheck what are the requirements .
Thanks
[Executive First Name]
Sent from iPhone
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an executive using a spoofed display name and a maliciously registered domain to divert payroll deposits to a fraudulent account.
Analysis Overview
Tactic
Spoofed Display Name
Maliciously Registered Domain
Goal
Payroll Diversion
Impersonated Party
Employee - Executive
Vector
Text-based
Theme
No items found.
Language