Business email compromise
This was very popular early in 2017, and it was really successful. Business email addresses of some important people in an organization were being spoofed and the authority of that person used to get some sensitive information from targets. Attackers used to look up details of some companies and get email addresses of lower level employees working in the companies. It was important that they were low-level employees both for the sake of the attack and also for the exercising of authority to work. Attackers would just spoof the email addresses of the personnel in human resource departments and use them to request employees to send their copies of W-2 forms. The information in W-2 forms is somewhat sensitive, and it ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access