Why the CEO Phishing Scam Is More Dangerous Than Ever
Guardio Research Team
Insights & Guidance
Reviewed by
Sharon Blatt Cohen
Sharon Blatt Cohen
Head of Marketing & Security Expert at Guardio
Sharon leads marketing and security initiatives at Guardio, bringing creative ideas to life. A passionate traveler, she combines her expertise in marketing with a love for discovering new places.
April 23, 2020
•
2
min read
When working in the office, it would be more likely that the CEO would ask directly for the so-called favor, call, or come talk in person. While working remotely, we're getting used to our entire communication being ready & type.
Table of Contents
When working in the office, it would be more likely that the CEO would ask directly for the so-called favor, call, or come talk in person. While working remotely, we're getting used to our entire communication being ready & type.
Key Takeaways
The CEO phishing scam is when an employee gets a fake email from their CEO, asking them for something "urgent," something that normally would require a more complicated procedure like transferring funds or giving access to information.
This scam has been going around for a long time, so what makes it more dangerous now?
{{component-cta-custom}}
The fact that the majority of businesses have switched to remote working amid COIVD-19 has created a new set of cybersecurity risks. Mostly the same computer is used for both personal and work needs, and the amount of time spent on the computer is much higher. Each employee is working from a home environment, something that is much harder to manage from a Cybersecurity aspect as opposed to having everyone on the same network in the same space.
When working in the office, it would be more likely that the CEO would ask directly for the so-called favor, call, or come talk in person. While working remotely, we're getting used to our entire communication being ready & type. So an email from the CEO suddenly doesn't seem so odd, as they can't knock on the door and ask for it in person.
How does it work?
Hackers can target any business, big or small. All they need is the name of the CEO and to start sending emails to name@companyname.com. They can even look for specific titles on LinkedIn, Facebook, and get more information about the employees.
Timing is everything
Hackers are smart. They will send this email late at night, early in the morning, when using the "urgent" card makes more sense. This should be the first red flag when getting such an email.
How to avoid falling for the CEO phishing scam
Always, always, check the sender's email. Not their name, their email. Anyone can change the name that appears when they send an email, but an email address is much harder to obtain.
Be Alert: Does your CEO regularly contact you via email? Before rushing to answer and wanting to solve, take a minute, think if this makes sense at all.
Double-check: Even you think this email is from your CEO, double-check with the CEO themselves to make sure it's safe, and they will appreciate your awareness.
Keep your staff and co-workers educated on Cyber Security, especially during these times. Coronavirus has tripled cybercrime reports by three times.
Urge everyone to use browser protection. Browsing with a protection tool can help prevent many scams and malware from reaching your browser.
{{component-cta-custom}}
CMS-based CTA:
Clean up your browser and prevent future scams
Protect yourself from malware & online scams, begin with a free scan.
Make sure you have a personal safety plan in place. If you believe someone is stalking you online and may be putting you at risk of harm, don’t remove suspicious apps or confront the stalker without a plan. The Coalition Against Stalkerware provides a list of resources for anyone dealing with online stalking, monitoring, and harassment.
Guardio Security Team
Guardio’s Security Team researches and exposes cyber threats, keeping millions of users safe online. Their findings have been featured by Fox News, The Washington Post, Bleeping Computer, and The Hacker News, making the web safer — one threat at a time.
Tips from the expert
Related articles
FAQs
No items found.
About the Author
Guardio Research Team
Insights & Guidance
Guardio’s research team closely monitors phishing scams, identity theft tricks, and emerging online threats, sharing what we learn to help you stay safe.