Got a $340 fake invoice email at work in Denver and the sender's name had one extra letter, so I checked the domain and now our whole team does the same | Cybersecurity Tips - Vivisector
Got a $340 fake invoice email at work in Denver and the sender's name had one extra letter, so I checked the domain and now our whole team does the same
Last Tuesday our bookkeeper in Denver almost paid a $340 invoice that looked exactly like our normal vendor's, except the email address had one extra letter buried in the domain, so now I hover over every link before I click and I'm wondering what small habit you all use to catch these spoofed emails.
The one extra letter thing is brutal because your brain just skips right over it. What worked for us after a similar hit was setting up a rule in Outlook to flag any email from outside our domain that mentions the word invoice or payment. It drops those into a separate folder so nobody sees them in the normal inbox flow. Then whoever checks that folder has to match the sender against our actual vendor list before anything moves forward. The other piece is calling the vendor at a number you already have on file, never the one in the email, because that's how the really slick ones get you. Takes thirty extra seconds and it has caught two more fakes since.