How One Email can be Fatal to Your Business
Scammers will use email or even text messages to trick you and your employees into sharing financial, customer, and account information with cybercriminals.?
How does this happen?
The issue is that the scammers seem credible since they’re impersonating trusted sources and high-level executives. As a result, your team members may not even have second thoughts about distributing sensitive personnel or corporate data.?
The emails are typically designed to look like they need a response, and appear to come from a company you regularly use, such as your online bank.
Even we have received scam emails that look official.
This came through to my email a while ago, all looks official and for a split second I thought, I can’t believe we let it expire.?
However, a quick hover over that official-looking 123 reg email shows that it goes off to another website, which looks like the official 123reg site, prompting me to sign and basically hand over our credentials to all things website.?
If this happened, we lose the keys to the kingdom. The attacker can log in, change your password initially for access, start the domain transfer process out (which is pretty much immediate for .co.uk domains these days), and once that’s lost, no more email, no more website.?
Scammers can create their own accounts, wait for emails to come from customers, send invoices, the attack surface is wide and open to them.?
领英推荐
And this is only one scenario. Below is another example where a scammer impersonated me and sent emails to my employee.
How to protect yourself from scam emails??
Never click on links from emails, always go independently to a browser and log in to the known good website.?
Check the sender - is it someone you know, are you expecting the email?
Use multifactor Authentication. This reduces the attack vector for the scammers.?
Learn how to spot phishing emails with quick and simple online courses. I recommend Usecure as it's affordable and comprehensive. For more information message me or click here.
The key takeaway is to try to ensure you don't fall for these types of attacks, when you do, it all can go wrong in a matter of seconds.
?