Back to All Attacks
Attack Details
Attack Date:
May 3, 2022
Executive Impersonation W-2 Theft BEC Attack
Initial Email Content
Subject
[Recipient First Name]
Body
[Recipient First Name],
Do you have a moment? I need you to send me the 2021 W-2 (PDF) and earnings summary of all employees. I need these via email immediately for a quick review.
Thanks,
[Executive Name]
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an executive using a personalized email subject, display name spoofing, and a maliciously registered domain to steal employee W-2s..
Analysis Overview
Tactic
Personalized Email Subject
Spoofed Display Name
Maliciously Registered Domain
Goal
W-2 Theft
Impersonated Party
Employee - Executive
Vector
Text-based
Theme
No items found.
Language