Cyber Criminals Hi-jacking email conversations to divert payments

Since March 2017, Informant Networks has been noticing a combination of a cyber and physical social engineering attack at 3 different companies in the Udyambag Industrial Area in Belgaum. The modus operandi of the criminal group is to hijack email conversations between two businesses and intervene at the point at which financial transactions are supposed to take place.

The attack starts by compromising the email account of one of the two business entities that are normally known to do business, the attacker at this stage just observes the email exchanges between the representatives of the two companies being attacked, once the conversation has come to a finish or when matters of payments are being discussed, the attacker starts impersonating the receving party in the financial transaction and provides a new account number for the funds to be transferred.

We have your email.

The attackers here take advantage of previously established trust between the two companies and requests for payments to be done to a new account and not to the previous account which would be the account of the legitimate business.

Once the funds are transferred to the attackers account. the money is withdrawn almost immediately and all trails are cold. This combination of a cyber and physical attack is lethal since it takes advantage of a previously established trust.

In these situations it is advisable to reach out to a previously known contact over a previously used phone number and cross check for the correspondence by a new individual claiming to be from the same company.

All About Bitcoin on All About Belgaum

Bitcoin.

This word brings excitement to some and worry to some. When people ask me what i think. I tend to have mixed responses. Although i like the idea of blockchain and the guarantees it provides. There is a lot of discussions around ethical use of bitcoin and where trust lies in the system.

I had the good fortune of having a chat with Mr. Uday Kinjawadekar of All About Belgaum to talk about Bitcoin and hopefully answer some questions from the audience

 

Ransomware – Risks, Mitigations and Precautions

There has been a slew of ransomware attacks hitting Indian businesses in the recent past. Informant Networks has seen its first attack series in October 2017 when we published our blog titled Ransomware – The growing threat in North Karnataka

We recently had the privilege to chat with Mr. Jayant Chavan of Tarun Bharat Daily where we spoke about the big ransomware campaigns. and what individuals and businesses can do to protect themselves.

Let us know what you think by sending an email to hello(at)informantnetworks.com