Business Email Compromise

Business Email Compromise

 

Among the growing threats within today’s cyber-sphere, the trend of Business Email Compromise, or BEC, is certainly nearing the top of the list.

 

Broadly defined, BEC is a type of sophisticated scam targeting companies who conduct wire transfers, especially those with suppliers abroad.

 

The Email Compromise Scourge

BEC operations begin with a hacker gaining control of an email account  from which  monetary transfers are requested and authorized. This stage is typically accomplished by means of key loggers or phishing attacks.

 

Once cyber criminals gain control of an account, there’s a range of ploys they can use to extract funds from unknowing recipients.  Fraudsters can send fake invoices to clients requesting payment to an account under their control. Another common tactic is to impersonate a high ranking executive and send a message to employees, ordering them to ‘move around’ company funds. The list goes on.

 

The damage caused by the trend of BEC campaigns has caught the attention of federal investigators. Last year, the FBI’s internet crime complaint center (IC3) revealed that BEC operations had cost global companies over $12 billion over a five year period.

 

The Rush to Defense

It is not surprising that the IT industry has been working on the problem of how to fight BEC for quite some time.

 

However, even the answers provided by field leaders have all fallen short.

 

The current consensus on how to combat BEC is the application of algorithmic tools to diagnose activity indicating account compromise. Researchers at Gartner have also advocated this approach. In their latest report on BEC, the firm calls for “customizable machine learning options” that can “integrate with current email security systems.” Gartner claims that such tools are readily available, and companies can look to “current email security providers to provide these controls.”

 

Reliability Problems

While the approach advocated by Gartner and others is pointing in the right direction, the problem is the reliability of platforms needed to actually accomplish these tasks.

 

The unfortunate fact is that even the top AI / machine learning solutions available today do not yield results accurate enough to support business operations.  It’s not just the occasional miss these systems inevitably allow for–failing to flag a fraudulent email for instance–but also the built up of false positives that can often paralyze administrators and IT departments.

 

Combating Business Email Compromise the Smart, Intelligent Way

GTB’s Security Manager provides intelligent detection engines proven to provide near perfect assurance.  With GTB Technologies cybersecurity solutions, companies can maintain control of the communications emanating from their networks, in a streamlined and fully scalable platform.

Visibility: Accurately, discover sensitive data; detect and address broken business process, or insider threats including sensitive data breach attempts.

Protection: Automate data protection, breach prevention and incident response both on and off the network; for example, find and quarantine sensitive data within files exposed on user workstations, FileShares and cloud storage.

Notification: Alert and educate users on violations to raise awareness and educate the end user about cybersecurity and corporate policies.

Education: Start target cyber-security training; e.g., identify end-users violating policies and train them.

  • Employees and organizations have knowledge and control of the information leaving the organization, where it is being sent, and where it is being preserved.
  • Ability to allow user classification to give them influence in how the data they produce is controlled, which increases protection and end-user adoption.
  • Control your data across your entire domain in one Central Management Dashboard with Universal policies.
  • Many levels of control together with the ability to warn end-users of possible non-compliant – risky activities, protecting from malicious insiders and human error.
  • Full data discovery collection detects sensitive data anywhere it is stored, and provides strong classification, watermarking, and other controls.
  • Delivers full technical controls on who can copy what data, to what devices, what can be printed, and/or watermarked.
  • Integrate with GRC workflows.
  • Reduce the risk of fines and non-compliance.
  • Protect intellectual property and corporate assets.
  • Ensure compliance within industry, regulatory, and corporate policy.
  • Ability to enforce boundaries and control what types of sensitive information can flow where.
  • Control data flow to third parties and between business units.