Deceitful email hooks Finance should watch for in 2020
Despite all the warnings your finance staff hears about email scams, it’s all too easy for them to forget those warnings during a busy workday.
They’re cutting checks, answering customer queries, opening emails … and all of a sudden, a staffer realizes he just clicked on what could be a malicious threat.
A change in tactic
At most companies, CFOs and IT leaders actively work to keep staffers abreast of email scams and threats. So, why are scams still so easy to fall for?
Criminals aren’t sticking to just classic approaches, like fake wire requests from the CEO, to trick your finance staff into sharing private data or sending unauthorized payments. More and more, they’re using seemingly innocent email hooks and subject lines, found a new 2020 report from the security experts at Proofpoint.
Example: An A/P staffer may be automatically suspicious of an “urgent” payment request from an “executive” at their company. They’d be wary of clicking any links or opening any attachments. But if that same A/P staffer got a message with an “updated company policy or plan” from “HR,” they might not think twice about clicking a link or opening an attachment.
‘Most successful’ email hooks
In its report, Proofpoint assessed what kind of duplicitous email subject lines criminals used – and staffers actually fell for. Some of the most successful email hooks Proofpoint identified were:
- SharePoint document
- scanned from a Xerox Multifunction Printer
- dealer proposal
- updated building evacuation plan
- confidential document
- [first name], please add me to your LinkedIn network
- lost watch, and
- lost ring.
Given all the dispersed work and business disruption due to the coronavirus pandemic, it’d be good to bring this to your finance staff’s attention. Remind them criminals may try to get their guard down with “harmless” emails they wouldn’t think twice about opening. And share the list of most successful subject lines, so they get familiar with real-life examples of email hooks to look out for.
Free Training & Resources
White Papers
Provided by Personify Health
White Papers
Provided by UJET
Further Reading
Finance teams need to be checking expense reports and payment card bills in 2024 to prevent fraud. Employees who normally wouldn’t t...
Extortion attempts such as ransomware attacks are on the rise again. Companies may want to consider cyber insurance policies to protect the...
Hackers love attacking via email because of how easy it is to do. That’s why an ounce of email cyber security can prevent a ton of fr...
Compared to the rest of the world, the U.S. has lagged behind in rapid B2B payments technology, but that’s about to change. The Feder...
The Federal Trade Commission (FTC) just widened its crackdown of so-called junk fees that mislead the buying public. A proposed rule would ...
Check fraud is on the rise again. The U.S. Postal Service just alerted financial institutions that check fraud DOUBLED from 2021 to 2022. ...