Hackers are now targeting food supplies in BEC scams, FBI warns
Threat actors are transforming business email compromise (BEC) attacks to steal more than just money, experts have warned.
In a joint warning published by multiple US law enforcement agencies, BEC attacks were found to now being against food companies to steal deliveries.
A joint cybersecurity advisory published (opens in new tab) by the Department of Justice (DoJ), the Food and Drug Administration Office of Criminal Investigations (FDA OCI), and the Federal Bureau of Investigation (FBI) claims hackers are stealing “large shipments of food products and ingredients”, whose market price often reaches “hundreds of thousands of dollars”.
Sending food shipments
The strategy is the same as with any other BEC attack – the hackers would compromise an executive’s email account, and then use it to send fraudulent orders, or would simply imitate an order from a third-party email provider. Whatever the case may be, the result is the same – food companies sending out shipments of food products that never get paid for.
The attackers don’t eat the food, though. They resell it on the black market, which is a risk in itself, as they disregard food safety regulations and sanitation practices, the advisory reads. People that end up eating that food are at risk of various diseases.
“Companies in all sectors—both buyers and suppliers—should consider taking steps to protect their brand and reputation from scammers who use their name, image, and likeness to commit fraud and steal products,” the advisory says.
To protect against these attacks, the organizations say, businesses should educate their employees on the dangers of business email compromise attacks, as well as phishing attacks.
They should also run frequent training, as means of raising awareness about the risks of clicking on suspicious links or downloading suspicious attachments. Finally, they should regularly scan the internet to see if anyone’s stealing their identity (opens in new tab) or abusing their image in any way.
Via: BleepingComputer (opens in new tab)
Audio player loading… Threat actors are transforming business email compromise (BEC) attacks to steal more than just money, experts have warned. In a joint warning published by multiple US law enforcement agencies, BEC attacks were found to now being against food companies to steal deliveries. A joint cybersecurity advisory published…
Recent Posts
- Live Nation took 11 days to confirm the massive Ticketmaster data breach
- Alexa will soon lose a popular shopping list feature
- Netflix’s Mike Tyson vs. Jake Paul fight is postponed
- Massive Ticketmaster, Santander data breaches linked to Snowflake cloud storage
- Sony Days of Play Sale: Consoles, Games, and More
Archives
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- December 2011