Summer holiday scam campaign - watch out for fake invoices!
22.06.2016 klo 17:36 - Updated 29.07.2016 klo 14:33
Target group of the alert
Staff of businesses and organisations, especially finance teams
Possible solutions and restrictive measures
Check carefully that the source of the invoices and payment requests is genuine, especially in urgent invoices.
Tips for staff to protect against invoice scams:
- Do not blindly rely on the details of the email sender as they are relatively easy to spoof.
- Even if the email appears to be from a trusted source, the sender may be a fraudster.
- If you have any suspicions, use established telephone contacts to check the authenticity of the email. This is recommended especially with regard to unusual invoices or other unexpected situations.
- Check the identity of any callers.
- You can call them back through the company's switchboard, for example.
- Check any contact details in emails from other sources.
- Fraudsters may even mention names of your colleagues to be more credible.
- Do not reveal your user ID or password over the phone to anyone.
- Do not reveal any information on your company or the technology used in the company to anyone you do not know.
Tips for supervisors:
- Set holiday policies: what kind of invoices may be processed alone and how to review invoicing details.
- Ensure all staff know how to identify different kind of scams.
- Report scam attempts to the organisation and to the NCSC-FI. If necessary, you can also report the scam to the police.
The Finnish Communications Regulatory Authority (FICORA)
The National Cyber Security Centre Finland (NCSC-FI)
Itämerenkatu 3 A
P.O. Box 313
Media contacts by telephone +358 295 390 248