惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
L
LangChain Blog
博客园_首页
J
Java Code Geeks
博客园 - 【当耐特】
Microsoft Azure Blog
Microsoft Azure Blog
小众软件
小众软件
WordPress大学
WordPress大学
V
Visual Studio Blog
T
The Blog of Author Tim Ferriss
U
Unit 42
酷 壳 – CoolShell
酷 壳 – CoolShell
Recent Announcements
Recent Announcements
C
Check Point Blog
IT之家
IT之家
Engineering at Meta
Engineering at Meta
N
Netflix TechBlog - Medium
A
About on SuperTechFans
aimingoo的专栏
aimingoo的专栏
D
Docker
有赞技术团队
有赞技术团队
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
阮一峰的网络日志
阮一峰的网络日志
I
InfoQ

Cyber Daily News

Real estate giant Cushman & Wakefield confirms cyber incident, Qilin and ShinyHunters claim attack CrowdStrike expands Project QuiltWorks as more partners join AI security coalition Attackers increasingly turning to trusted security tools to compromise Aussie victims Exclusive: Champion Homes confirms customer data compromised in “cyber event” Australia, Japan commit to partnership to meet cyber security challenges & strengthen cyber defences NSW Treasury cyber incident contained, impact no longer ‘significant’ Report: AI-based data incidents on the rise in Australia WA rental scam surge: Tenants targeted with fake $500 discount trap Aussie Information Commissioner launches Privacy Awareness Week 2026 Unregistered branded text messages to be labelled ‘Unverified’ from 1 July US Federal Reserve outlines AI's influence on the finance sector Exclusive: Major Australian jewellery brand confirms cyber incident Australian government establishes new Cyber Incident Review Board Watch this! Komari server monitor tool abused by hackers Act Now! ACSC warns of active exploitation of cPanel & WHM critical vulnerability Exclusive: Kiwi electrical contractor confirms cyber attack Over 1 in 2 firms have AI privacy concerns: Intuit Exclusive: Prime Properties listed as breach victim by M3rx ransomware Anthropic launches dedicated Claude Security platform to public beta DigiCert launches AI Trust architecture to secure agents, models, and content ‘Rebuilding the enterprise’: How CEOs are preparing for automation Op-Ed: Redefining performance in the AI-powered SOC Ukrainian official advocates for artificial intelligence, autonomous drones for battlefield deployment NZ council cyber attack leads to ID and financial data being exposed ‘Building confidence’: The key to effective AI implementation Vect unveiled: Inside an emerging ransomware group’s affiliate network Exclusive: Gelatissimo confirms unauthorised access, investigates DragonForce hack claims US Department of War launches cyber-focused apprenticeship program CrowdStrike launches Project QuiltWorks to tackle skyrocketing AI-discovered vulnerabilities Australian government stands up new ‘tripartite forum’ to tackle AI challenges in the workforce
Report: Business email compromise attacks surged dangerou...
david.hollin · 2026-05-14 · via Cyber Daily News

BEC attacks rose 151 per cent month on month in April, with advanced fee and gift card fraud key drivers.

Report: Business email compromise attacks surged dangerously in April

In terms of making headlines, ransomware attacks and cyber extortion tend to make the biggest waves, but arguably the most common form of financially motivated cyber crime is business email compromise (BEC).

Cyber insurance firm Coalition recently held a security forum in Sydney, where Eden Winokur, head of the cyber team at law firm Hall & Wilcox, said that fully 40 per cent of all cyber security incidents his firm has dealt with over the last two years involved BEC, whereas only 22 per cent involved ransomware.

You’re out of free articles for this month

To continue reading the rest of this article, please log in.

And according to new research from cyber security vendor Fortra, BEC attacks surged in April.

Fortra’s BEC Global Insights Report for the month revealed a worrying 151 per cent rise in BEC attacks month on month, with the most common method being advance-fee fraud, which accounted for 26.8 per cent of all cash-out methods.

The amount of money BEC attackers sought also rose in April, rising to US$60,723 compared to US$47,652 in March.

Poison Apple

Gift cards are a common vector exploited by BEC scammers, and in April, Apple Store gift cards were the card of choice. Of all gift card requests, 54.9 per cent were for Apple Store cards, with Amazon following at 26.4 per cent and Sephora at 7.7 per cent.

In this form of scam, an email may come from a superior asking an assistant to purchase several gift cards, commonly dozens at a time, to be sent out to clients or employees, possibly as a loyalty reward. The superior asks for the cards’ serial numbers right away, and then the value is cashed out by the scammer or used to purchase goods.

Cryptocurrency was also popular in April, with Fortra tracking 45 crypto-related scams linked to 32 unique bitcoin wallets. The amounts requested ranged from US$800 to an impressive US$2,766,345.32.

Wire transfer attacks in April rose as well, increasing by 262 per cent compared to March. The average amount requested also rose, from US$47,652 in March to US$60,723.

“Analysis of requested amounts showed that 14 per cent of wire transfer requests were under US$10,000, while 73 per cent fell between US$10,000 and US$50,000,” JT Newby, Fortra’s principal threat research lead, said in an 11 May blog post.

“Requests between US$50,000 and US$100,000 accounted for 8 per cent, and 5 per cent exceeded $100,000.”

Perhaps unsurprisingly, the African nation of Nigeria was the source of most BEC attacks. Thirty-six per cent of all BEC attempts originated in Nigeria; however, the United States ranked not far behind, accounting for 34 per cent of BEC attacks.

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.

Tags: