Fake invoice used to conduct $16,800 BEC attempt · Blog · Sublime Security
ID: ea1bf06f-1a09-5bcf-8643-8f1fbea4f7cf
STIX ID: report--ea1bf06f-1a09-5bcf-8643-8f1fbea4f7cf
Feed Name: Sublime Security Blog
Threat Score
Sublime's Attack Spotlight documents an active BEC campaign targeting CFOs and finance staff with highly personalized fake invoices (embedded and attached PDFs) and fabricated W-9s, leveraging VIP impersonation and fake forwarded threads to create urgency; detection signals include fake invoice/thread indicators, NLU-based BEC language detection, VIP impersonation markers, and recently registered sender domains, and the vendor reports detecting and preventing these attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
