Hacker takes down CEO wire transfer scammers, sends their Win 10 creds to the cops

Alan Brown Silver badge

"Another defence is making sure that the account being wired to is preregistered in the system, so that the FC can approve it, and the system pays."

Funnily enough this is exactly how $orkplace operates - along with contact details of appropriate people in the organisation.

Lots of grumbling about how slow this is to setup, but we get a steady stream of whaling emails and (so far) haven't been compromised.

Any attempt to change the account details requires (at least) a phone call to the preregistered contacts and more usually an exchange of emails before it would get approved.

