Skip to contentSkip to main navigation Skip to footer

Determine And Investigate Service Email Compromise (bec) Scams May 2026

: A sudden request to change payment instructions or bank account details for a known vendor is a major indicator.

Business Email Compromise (BEC) is a sophisticated social engineering scam where attackers impersonate a trusted source—such as a CEO, vendor, or attorney—to trick employees into transferring money or sensitive data. Because these emails typically contain only text and avoid malicious links or attachments, they often bypass standard security filters. Determining a BEC Scam (Red Flags) : A sudden request to change payment instructions

: Requests that deviate from standard business procedures, such as a CEO asking an assistant to buy gift cards, are common lures. Investigating a Suspected Incident Determining a BEC Scam (Red Flags) : Requests

If a BEC attack is suspected, investigators follow a technical workflow to determine the scope: Business Email Compromise - FBI they often bypass standard security filters.