CEO Fraud hits B.C. lawyers for $2 million

Stu Sjouwerman | Aug 9, 2019
CEO Fraud Checklist

Two B.C. law firms were targets of so-called social engineering frauds causing almost $2 million in real estate and investment funds to be wired to people other than clients the firms believed they were sending money to.

In one case, a client had received instructions for a fund transfer in person. Before the transfer, though, the firm received an email purportedly from the client. It was, however, from the fraudster and directed the firms to wire funds to a different account.

The client never received the funds as the lawyer sent the funds to the fraudster's account. In this case, the email address used by the fraudster was identical to that used by the client.

The second firm redirected over $1.5 million in investment funds held in trust for a corporate client raising capital in a securities transaction.

As in the first case, the firm originally received payment instructions from the corporate client. And, before wiring the funds to the client, the firm received an email, purportedly from the client but actually from the fraudster, directing that the funds be wired to a different bank account. Usually, these criminals get into the email servers by sending phishing attacks, so that they can monitor the transactions and jump in at the right moment.

Once again, funds were sent to the fraudster and not received by the client. In this case, the email address used by the fraudster was identical to that used by the client, except for one letter.

The law society suggests lawyers, clients and other businesses can protect themselves in various ways against CEO Fraud:

  • Any time a payment is imminent, assume that a hacker is also aware. Any client's or lawyer's email account can get hacked allowing a fraudster to perpetrate a social engineering fraud on the lawyer;
  • Establish due diligence protocols for transferring funds and ensure all staff receive training and adhere to them; and
  • Be aware that scammers can replicate firm and company websites.

Story at: https://www.squamishchief.com/email-fraud-hits-b-c-lawyers-for-2-million-1.23908460


CEO-Fraud-Pages.jpg

CEO Fraud Prevention Manual Download

CEO fraud has ruined the careers of many executives and loyal employees. Don’t be next victim. This brand-new manual provides a thorough overview of how executives are compromised, how to prevent such an attack and what to do if you become a victim.

Click Here To Download The Manual

PS: Don't like to click on redirected buttons? Copy and paste this link in your browser:

https://info.knowbe4.com/ceo-fraud-prevention-manual

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.