{"id":100222,"date":"2023-11-14T10:53:18","date_gmt":"2023-11-14T09:53:18","guid":{"rendered":"https:\/\/www.dgsspa.com\/?post_type=labs&#038;p=100222"},"modified":"2024-05-14T14:23:27","modified_gmt":"2024-05-14T13:23:27","slug":"business-email-compromise-bec","status":"publish","type":"labs","link":"https:\/\/www.dgsspa.com\/en\/labs\/business-email-compromise-bec\/","title":{"rendered":"Business Email Compromise (BEC)"},"content":{"rendered":"<section class=\"dgs-hero\">\n\t<div class=\"dgs-hero-bg\" style=\"background: url('https:\/\/www.dgsspa.com\/wp-content\/uploads\/2023\/11\/Banner_2560x19204.jpg') no-repeat 50% 50%; background-size: cover;\"><\/div>\n\t\t<div class=\"dgs-hero-ptrn \"><\/div>\n\t<div class=\"hero-inner\">\n\t\t\n\n<span class=\"wp-block-dgs-theme-category-title category-title\"><span class=\"label\">DGS CyLABs<\/span><\/span>\n\n\n\n<h1 class=\"hero-heading hero-heading--undefined\">Business Email Compromise (BEC)<\/h1>\n\n\n\n<div class=\"wp-block-dgs-theme-hero-text hero-text\"><p>To detect early and block different types of BEC attacks, our experts orchestrate training, analysis tools and infrastructure protocols to protect our customers\u2019 operational scenarios.<\/p><\/div>\n\n\t<\/div>\n<\/section>\n\n\n\n<section class=\"wp-block-group alignfull content-group has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\" id=\"content\">\n<div class=\"wp-block-columns alignwide is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<span class=\"wp-block-dgs-theme-category-title category-title\"><span class=\"label\">DGS CyLABs<\/span><\/span>\n\n\n\n<h3 class=\"wp-block-heading has-cyan-color has-text-color\">Business Email Compromise (BEC)<\/h3>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p>With the increase of remote work, relocation of activities, and the use of cloud-based infrastructures, <strong>cyber criminals have perfected Email Account Compromise (EAC) scams<\/strong> with increasingly targeted and hard-hitting attacks using e-mail as a tool to gain the trust of recipients and get to their criminal target.&nbsp;<\/p>\n\n\n\n<p>Specifically, in <strong>Business Email Compromise (BEC)<\/strong>-type scams-often also known as CEO fraud-the attacker pretends to be a prominent figure within the company to request payments or other complex transactions, while authorizing different ways to execute them (different IBANs, for example) for temporary or exceptional causes&nbsp;<\/p>\n\n\n\n<p><strong>BEC scams<\/strong> represent <strong>one of the most financially damaging types of cybercrime.<\/strong> In an FBI <a href=\"https:\/\/www.ic3.gov\/Media\/Y2022\/PSA220504\" target=\"_blank\" rel=\"noreferrer noopener\">report<\/a>, these attacks are estimated to have caused <strong>more than $43 billion in losses<\/strong> in recent years, not counting other types of losses and the risks posed by data theft and breaches of information security systems. Nevertheless, even today, <strong>some organizations tend to underestimate the severity of BEC attacks<\/strong> because most companies fail to easily and quickly identify these types of incidents, which can come from trusted but compromised vendors or partners.&nbsp;<\/p>\n\n\n\n<p><strong>Fraud attempts<\/strong> perpetrated using <strong>Business E-mail Compromise<\/strong> techniques are complex problems, based on sophisticated social engineering techniques that <strong>focus on human weakness and fragility rather than technical vulnerabilities<\/strong>; therefore, they require a defensive approach based on multiple, different and synergistic layers that keep the focus on user awareness of business mail use.&nbsp;<\/p>\n\n\n\n<p>The <strong>attacks are designed to bypass security mechanisms such as spam and virus filters<\/strong> and are so dangerous because they do not contain malicious software (malware) or links to known malicious sites.&nbsp;<\/p>\n\n\n\n<p>To carry out an attack, <strong>hackers deceive the user by using email addresses that resemble known ones<\/strong> (so-called lookalike domains), i.e., domains registered with names similar to the one to be impersonated (using, for example, a zero instead of an o), rather than spoofing the sender\u2019s address; very often, however, the vectors of the attack are totally valid addresses whose credentials have been obtained through phishing emails, brute force attacks, or purchased on the dark web as a result of <em>data breaches.<\/em>&nbsp;<\/p>\n\n\n\n<p>In this scenario, it becomes <strong>crucial to establish a people-centered protection model in order to prevent, detect and respond to BEC techniques<\/strong>; a model that cannot disregard end-user awareness through ongoing and timely training paths.&nbsp;<\/p>\n\n\n\n<p>It is then necessary <strong>to have tools based on Artificial Intelligence and <\/strong><em>Machine Learning<\/em> that ensure mechanisms for monitoring the flow of e-mail communication, so as to react quickly in case of problems, rather than mechanisms that automatically ensure mutual recognition of domains that send and receive e-mail.&nbsp;<\/p>\n\n\n\n<p><strong>The goal of our CyLAB BEC<\/strong> is <strong>to identify guidelines to be able to contextualize and make more effective the tools that the market provides and identify the best techniques to train end users to detect and report suspicious emails.<\/strong> In addition, the workshop aims to raise awareness of tools such as DMARC (Domain-based Message Authentication, Reporting, and Conformance) that protect against email fraud attacks by preventing fraudulent use of one\u2019s domain.&nbsp;<\/p>\n\n\n\n<p>The laboratory\u2019s focus is on defining different use cases in order to test market-leading products on them and measure their effectiveness in the face of different attack techniques, detecting different types of BECs early and blocking e-mail fraud before it succeeds.&nbsp;<\/p>\n\n\n\n<p>The identification of these techniques then makes it possible to be able to create targeted simulated attack campaigns focused on these same techniques, campaigns that must eventually be integrated into the training and verification tools for the results of the training.&nbsp;<\/p>\n\n\n\n<p>In this context, visibility into which users are most attacked and by which types of BEC scams is of particular importance in order to make email flow analysis and training techniques increasingly targeted.&nbsp;<\/p>\n\n\n\n<p>The <strong>results of our laboratory (BEC CyLAB)<\/strong> enable us to offer our clients the advantage of building together a defense customized to their operational scenarios and based on three main paths:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The <strong>analysis of multiple attributes of mail messages<\/strong> through true machine learning in order to detect various BEC tactics and block email fraud threats before they enter the enterprise.&nbsp;<\/li>\n\n\n\n<li><strong>Training end users<\/strong> to empower them to detect and report suspected imposter threats, including relying on information about which users are most attacked and by which types of BEC scams, then organizing internal attack campaigns to test the level of maturity achieved by the organization.&nbsp;<\/li>\n\n\n\n<li><strong>Protecting one\u2019s domain<\/strong> from e-mail fraud attacks by preventing fraudulent use and ensuring control over the recipient\u2019s response.&nbsp;<\/li>\n<\/ul>\n\n\n\n<p>Find out more about all our other <strong>CyLABs<\/strong>,&nbsp;<a href=\"https:\/\/www.dgsspa.com\/en\/dgs-cylabs\/\">CLICK HERE<\/a>.<\/p>\n<\/div>\n<\/div>\n<\/section>\n\n\n\n<div class=\"wp-block-group alignfull news-carousel has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<h3 class=\"wp-block-heading has-cyan-color has-text-color\">Related topics<\/h3>\n\n\n\n<section class=\"wp-block-query alignfull posts-loop is-layout-flow wp-block-query-is-layout-flow\"><ul class=\"wp-block-post-template is-layout-flow wp-block-post-template-is-layout-flow\"><li class=\"wp-block-post post-100211 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Identity Threat Detection and Response (ITDR)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/identity-threat-detection-and-response-itdr\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: Identity Threat Detection and Response (ITDR)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100213 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Cloud Native Application Protection Platform (CNAPP)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/cloud-native-application-protection-platform-cnapp\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: Cloud Native Application Protection Platform (CNAPP)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100217 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">eXtended Detection and Response (xDR)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/extended-detection-and-response-xdr\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: eXtended Detection and Response (xDR)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100220 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Advanced Threat Detection Intelligence (ATDI)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/advanced-threat-detection-intelligence-atdi\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: Advanced Threat Detection Intelligence (ATDI)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100222 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Business Email Compromise (BEC)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/business-email-compromise-bec\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: Business Email Compromise (BEC)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><li class=\"wp-block-post post-100224 labs type-labs status-publish has-post-thumbnail hentry\">\n<h2 class=\"wp-block-post-title\">Critical Infrastructure &amp; IoT Protection (ICS &amp; IoT Protection)<\/h2>\n\n\n<div class=\"wp-block-group is-layout-flex wp-block-buttons has-black-color has-text-color has-global-padding is-content-justification-left is-layout-constrained wp-container-core-group-is-layout-8c890d92 wp-block-group-is-layout-constrained\">\n<div class=\"wp-block-group wp-block-button is-style-plus-icon has-global-padding is-layout-constrained wp-block-group-is-layout-constrained\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n<a class=\"wp-block-button__link wp-element-button wp-block-read-more has-text-color has-cyan-color\" href=\"https:\/\/www.dgsspa.com\/en\/labs\/critical-infrastructure-iot-protection-ics-iot-protection\/\" target=\"_self\">read more<span class=\"screen-reader-text\">: Critical Infrastructure &amp; IoT Protection (ICS &amp; IoT Protection)<\/span><\/a><\/div>\n<\/div>\n\n<\/li><\/ul><\/section>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>We orchestrate training, analysis tools and infrastructure protocols for effective protection against Business E-mail Compromise attacks.<\/p>\n","protected":false},"author":3,"featured_media":97823,"template":"","meta":{"_acf_changed":false,"dgs_labs_date_in":"","dgs_labs_date_out":"","dgs_labs_date_in_out":"","dgs_labs_location":"","footnotes":""},"tags":[],"corsi":[],"labs":[],"class_list":["post-100222","labs","type-labs","status-publish","has-post-thumbnail","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>DGS<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:site_name\" content=\"DGS\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/12\/dgs-logo-opengraph.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@dgs_group\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"CollectionPage\",\"@id\":null,\"url\":\"\",\"name\":\"\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#website\"},\"inLanguage\":\"en-US\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/\",\"name\":\"DGS spa\",\"description\":\"DGS SPA\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#organization\",\"name\":\"DGS spa\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.dgsspa.com\\\/wp-content\\\/uploads\\\/2022\\\/11\\\/Logo_DGS.png\",\"contentUrl\":\"https:\\\/\\\/www.dgsspa.com\\\/wp-content\\\/uploads\\\/2022\\\/11\\\/Logo_DGS.png\",\"width\":400,\"height\":400,\"caption\":\"DGS spa\"},\"image\":{\"@id\":\"https:\\\/\\\/www.dgsspa.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/gruppoDGS\",\"https:\\\/\\\/x.com\\\/dgs_group\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/dgsspa\\\/\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UCTrU_JDYEEOcYXNjL5a9k5g\",\"https:\\\/\\\/www.instagram.com\\\/dgs_spa\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"DGS","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"\/","og_locale":"en_US","og_type":"article","og_site_name":"DGS","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/12\/dgs-logo-opengraph.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_site":"@dgs_group","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"CollectionPage","@id":null,"url":"","name":"","isPartOf":{"@id":"https:\/\/www.dgsspa.com\/en\/#website"},"inLanguage":"en-US"},{"@type":"WebSite","@id":"https:\/\/www.dgsspa.com\/en\/#website","url":"https:\/\/www.dgsspa.com\/en\/","name":"DGS spa","description":"DGS SPA","publisher":{"@id":"https:\/\/www.dgsspa.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.dgsspa.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.dgsspa.com\/en\/#organization","name":"DGS spa","url":"https:\/\/www.dgsspa.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dgsspa.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/11\/Logo_DGS.png","contentUrl":"https:\/\/www.dgsspa.com\/wp-content\/uploads\/2022\/11\/Logo_DGS.png","width":400,"height":400,"caption":"DGS spa"},"image":{"@id":"https:\/\/www.dgsspa.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/gruppoDGS","https:\/\/x.com\/dgs_group","https:\/\/www.linkedin.com\/company\/dgsspa\/","https:\/\/www.youtube.com\/channel\/UCTrU_JDYEEOcYXNjL5a9k5g","https:\/\/www.instagram.com\/dgs_spa"]}]}},"_links":{"self":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100222"}],"collection":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs"}],"about":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/types\/labs"}],"author":[{"embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/users\/3"}],"version-history":[{"count":7,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100222\/revisions"}],"predecessor-version":[{"id":101522,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs\/100222\/revisions\/101522"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/media\/97823"}],"wp:attachment":[{"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/media?parent=100222"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/tags?post=100222"},{"taxonomy":"corsi","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/corsi?post=100222"},{"taxonomy":"labs","embeddable":true,"href":"https:\/\/www.dgsspa.com\/en\/wp-json\/wp\/v2\/labs?post=100222"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}