HRTechNews.com » “But the e-mail said it was from HR …”

“But the e-mail said it was from HR …”

April 23, 2008 by Sam Narisi
Posted in: In this week's e-newsletter, Latest News & Views, Security and law

E-mail scammers have a new tactic for stealing people’s personal info: posing as their employer’s HR manager.

It’s called “spear phishing,” and it’s a new, more targeted version of a phishing scam. In the old version, you get an e-mail that says it’s from a bank, insurance company, etc. - and for some stated reason, they need you to give them your account number and other personal information again.

Scams like that are still causing problems, but they’ve also gotten more complicated. This time around, criminals are targeting specific organizations and claiming to be specific people.

So instead of a mass e-mail sent to thousands of people, employees at a certain company might get an e-mail claiming to be from the HR manager that asks for bank account information to set up direct deposit, or a home address, Social Security number, etc.

How you can help

Huge corporations and government bodies are most at risk, but all employers should be aware of the threat and take preventive action. For security reasons, you probably don’t want to ask for sensitive information via e-mail, and employees should know that you won’t.

Also, most employees should use a refresher on basic e-mail security: Be wary of addresses you don’t already know and trust, be careful with attachments, and always make sure you’re connected to a secure Web site if you do enter personal data. Those tips will cut down on the risk of spear phishing, too.

Tags: , , ,

Leave a Reply


advertisement


advertisement

See what readers are saying...

  • Greg Nall: I strongly disagree with this article. I would venture to say that all municipalities have multiple free employment res...
  • Jim R: Shelley B got it right when she said it "only serves the sender and leaves the recipient feeling isolated and distrustfu...
  • Rick: I think it's a crying shame to give American jobs to third world companies. What are we doing to the USA and to the peop...
  • Justin: Interesting, 70% of sabatoge cases are 'normal people', maybe we should hire criminals......
  • Laura Lee: It doesn't surprise me but after the city of New London took residents' homes by eminent domain for Pfizer under the pre...
  • Nathan: If I got fired I would tell anyone anything. I wouldn't sabotage anything either....