Phishing for Christmas

Foley Hoag LLP - Security, Privacy and the Law
Contact

As the Wall Street Journal noted yesterday, banks are being deluged with phishing attacks.  These attacks are especially fierce around the holiday season, when more personnel are absent and normal procedures are ignored or bypassed.  The FBI and other law enforcement agencies are focused on these attacks, but it only takes one employee to “believe” a phishing email for the trouble to start.

This is the time of year when we think of giving to others, but those gifts should not be to scam artists.  So remind those you care about (and who handle wire transfers) to:

  • Verify changes in vendor payment location and confirm requests for transfer of funds.
  • Be wary of free, web-based e-mail accounts, which are more susceptible to being hacked.
  • Be careful when posting financial and personnel information to social media and company websites.
  • Be suspicious of requests for secrecy or pressure to take action quickly.
  • Know the habits of your customers, including the reason, detail, and amount of payments.
  • Beware of and verify any significant changes.

And for New Year’s resolutions:

  • Consider adopting financial security procedures that include a two-step verification process for wire transfer payments.
  • Create intrusion detection system rules that flag e-mails with extensions that are similar to company e-mail but not exactly the same. For example, .co instead of .com.
  • Register all Internet domains that are slightly different than the actual company domain.

 

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Foley Hoag LLP - Security, Privacy and the Law | Attorney Advertising

Written by:

Foley Hoag LLP - Security, Privacy and the Law
Contact
more
less

Foley Hoag LLP - Security, Privacy and the Law on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide