Skip to content

This site uses cookies to store information on your computer. Some are essential to make our site work; others help us improve the user experience. By using the site, you consent to the placement of these cookies. Read our privacy policy to learn more.

Close
AICPA-CIMA
  • AICPA & CIMA:
  • Home
  • CPE & Learning
  • My Account
Journal of Accountancy
  • TECH & AI
    • All articles
    • Artificial Intelligence (AI)
    • Microsoft Excel
    • Information Security & Privacy

    Latest Stories

    • Incorporating prompt engineering into the accounting curriculum
    • Create a dynamic to-do list with Excel’s checkboxes
    • Another way to manage authentication texts
  • TAX
    • All articles
    • Corporations
    • Employee benefits
    • Individuals
    • IRS procedure

    Latest Stories

    • IRS keeps per diem rates unchanged for business travel year starting Oct. 1
    • Details on IRS prop. regs. on tip income deduction
    • AICPA urges IRS to modernize estate and trust tax forms
  • PRACTICE MANAGEMENT
    • All articles
    • Diversity, equity & inclusion
    • Human capital
    • Firm operations
    • Practice growth & client service

    Latest Stories

    • IRS keeps per diem rates unchanged for business travel year starting Oct. 1
    • Managing teams, managing time: The importance of setting expectations
    • Details on IRS prop. regs. on tip income deduction
  • FINANCIAL REPORTING
    • All articles
    • FASB reporting
    • IFRS
    • Private company reporting
    • SEC compliance and reporting

    Latest Stories

    • SEC accepting Professional Accounting Fellow applications
    • SEC names new chief accountant
    • SEC ends legal defense of its climate rules
  • AUDIT
    • All articles
    • Attestation
    • Audit
    • Compilation and review
    • Peer review
    • Quality Management

    Latest Stories

    • AICPA unveils new QM resources to help firms meet Dec. 15 deadline
    • 8 steps to build your firm’s quality management system on time
    • Auditing Standards Board proposes a new fraud standard
  • MANAGEMENT ACCOUNTING
    • All articles
    • Business planning
    • Human resources
    • Risk management
    • Strategy

    Latest Stories

    • Business outlook brightens somewhat despite trade, inflation concerns
    • AICPA & CIMA Business Resilience Toolkit — levers for action
    • Economic pessimism grows, but CFOs have strategic responses
  • Home
  • News
  • Magazine
  • Podcast
  • Topics
Advertisement
  1. newsletter
  2. Cpa Insider
CPA INSIDER

Don’t fall victim to the newest phishing scam

Executive impersonation exploits employees’ desire to please their superiors.

By Samiha Khanna
October 24, 2016

Please note: This item is from our archives and was published in 2016. It is provided for historical reference. The content may be out of date and links may no longer function.

Related

October 1, 2016

Keeping clients’ tax data secure

September 6, 2016

Technology risk: It’s more than cybersecurity

August 1, 2016

Controlling your data

TOPICS

  • Technology
    • Information Security & Privacy
  • Forensic Services
  • Firm Practice Management
    • Human Capital
    • Firm Operations

It might take just one crafty and well-timed email for a fraudster to breach an organization’s financial accounts. And the perpetrators don’t even need sophisticated hacking techniques to get in—they can mine crucial information from your executives’ public profiles on social media.

In a scam that fraud experts call “executive impersonation,” thieves use the internet, social media sites such as LinkedIn, and even “out-of-office” email replies to steal from businesses that use suppliers and bank accounts in foreign countries. In 2014, U.S. companies lost $179 million to these scams, according to the FBI’s Internet Crime Complaint Center.

As a new fraud report from the AICPA Forensics and Valuation Services team explains, executive impersonation exploits a value most employees possess: an eagerness to please the boss.

The fraud often involves an email to an employee responsible for wire transfers or other transactions, said David Zweighaft, CPA/CFF, managing director of DSZ Forensic Accounting & Consulting Services in New York City, and the member of the AICPA Fraud Task Force who wrote the report. Typically, the message asks the employee to wire funds somewhere—often to a foreign account to assist with an urgent, high-stakes deal.

Criminals can obtain the names of the executives and employees responsible for financial transactions from company websites or Linkedin, or even by posing as a recruiter and calling an organization to obtain a directory.

The messages they send appear authentic, as they come from fake email addresses that are nearly identical to those of high-level executives. For example, if the actual address is CEO@victimco.com, the fake address might be CEO@vicitmco.com, Zweighaft said.

“These bogus email accounts are rarely traceable because they are one-time-use accounts, often originating from an overseas server,” he said.

Advertisement

Usually, fraudsters try to create a sense of urgency in their emails.

“Often, the executive impersonator will indicate that the need for the funds is related to an acquisition or other professional services related to appraisals, due diligence, etc., in connection to an acquisition,” said Annette Stalker, CPA/CFF, owner of Stalker Forensics and chair of the AICPA Forensic and Litigation Services Committee. Sometimes, she said, the messages refer to a business deal “where timing is critical and confidentiality is key, particularly to ensure compliance with regulatory bodies.”

Typically, potential thieves will deter suspicion by asking for sums of money that are within the usual range that an executive at the company would request.

The timing of the email is crucial. Phishing messages are typically sent when the executives being impersonated are going to be out of the office and hard to reach, either because they are busy or in another time zone with different business hours.

But how would a thief know an executive’s personal schedule? Social media and email, Stalker said.

“Many executives announce speaking engagements or conferences on social media sites in a way that lets anyone view these posts on LinkedIn, Twitter, Facebook, and a number of other lesser-known sites,” she said. Automatic out-of-office replies also contain details that fraudsters can use to make their emails appear more credible, Stalker said, such as which dates an executive will be out of the country.

Fear of being impersonated shouldn’t outweigh the business advantages of using social media to announce speaking engagements, conference participation, or community events, she said. But employees should take care not to reveal information about their “authority level, ability to approve payments, and other possible hints about their job,” Stalker said. “For executives who are traveling, automated email replies should only convey the essential part of the notification (the person is unavailable and provide a name of another contact person) without revealing unnecessary elements such as whether the executive is out of the country, or the name of the city/state the executive is currently in.”

Advertisement

The best defense against fraud is awareness, training, and repetition, Zweighaft said. Circulating news reports of similar attacks on other companies will reinforce a skeptical mindset among employees, which is the first line of defense. Companies can increase the frequency of their cybersecurity training. They can also update their policies to require two employees to approve a wire request and verify the recipient’s identity. Firms may also want to hire cybersecurity consultants to identify any weaknesses in their electronic communications and transfer processes.

If you suspect there has been a breach, it’s important to take action quickly to minimize damage, Zweighaft said.

To deal with cases of executive impersonation “companies should be ready to quickly assemble a response team, including in-house counsel, the CIO and staff responsible for IT security, and outside consultants,” he said. Organizations need to quickly launch an internal investigation so that management and the board of directors have all the relevant facts, and so that law enforcement, government investigators, and insurers can be apprised of the details of the incident.

Samiha Khanna is a freelance writer based in Durham, N.C. To comment on this article, email associate editor Courtney Vien.

Advertisement

latest news

September 23, 2025

IRS keeps per diem rates unchanged for business travel year starting Oct. 1

September 22, 2025

Managing teams, managing time: The importance of setting expectations

September 19, 2025

Details on IRS prop. regs. on tip income deduction

September 19, 2025

AICPA urges IRS to modernize estate and trust tax forms

September 19, 2025

Accounting for software: FASB issues improved guidance

Advertisement

Most Read

MAP Survey finds CPA firm starting pay on the rise
IRS finalizes regulations for Roth catch-up contributions under SECURE 2.0
NASBA, AICPA release proposed revisions to CPE standards
Congress passes act allowing tax relief when a state declares disaster
IRS seeks to fill ‘critical vacancies’ as workforce declines 25%
Advertisement

Podcast

September 18, 2025

‘We’re still the thinkers’ — a reminder for tax pros in the AI era

September 11, 2025

Strong storytelling helps speakers deliver ‘medicine’ without the aftertaste

September 4, 2025

Summing up economic sentiment and concerns about inflation and tariffs

Features

Calming nervous clients nearing retirement
Calming nervous clients nearing retirement

Calming nervous clients nearing retirement

7 retirement tips for small firm CPAs
7 retirement tips for small firm CPAs

7 retirement tips for small firm CPAs

Building a better CPA firm: Stepping up service offerings
Multi-colored plus signs

Building a better CPA firm: Stepping up service offerings

2025 tax software survey
Smiley, frowney, and neutral faces for Tax Software Survey.

2025 tax software survey

FROM THIS MONTH'S ISSUE

Flip out with the latest Tech Q&A

The September Technology Q&A column shows how to create dynamic to-do lists with Excel's checkboxes and also how to set up multifactor authentication texts that don't rely on phones. Flip through both items and view a video walkthrough in our digital format. 

From The Tax Adviser

August 30, 2025

2025 tax software survey

August 30, 2025

Are you doing all you can to keep the cash method for your clients?

July 31, 2025

Current developments in S corporations

July 31, 2025

Paid student-athletes: Tax implications for universities and donors

MAGAZINE

September 2025

September 2025

September 2025
August 2025

August 2025

August 2025
July 2025

July 2025

July 2025
June 2025

June 2025

June 2025
May 2025

May 2025

May 2025
April 2025

April 2025

April 2025
March 2025

March 2025

March 2025
February 2025

February 2025

February 2025
January 2025

January 2025

January 2025
December 2024

December 2024

December 2024
November 2024

November 2024

November 2024
October 2024

October 2024

October 2024
view all

View All

http://JofA_Default_Mag_cover_small_official_blue

PUSH NOTIFICATIONS

Coming soon: Learn about important news

CPA LETTER DAILY EMAIL

CPA Letter Logo

Subscribe to the daily CPA Letter

Stay on top of the biggest news affecting the profession every business day. Follow this link to your marketing preferences on aicpa-cima.com to subscribe. If you don't already have an aicpa-cima.com account, create one for free and then navigate to your marketing preferences.

Connect

  • X Logo JofA on X
  • facebook JofA on Facebook

HOME

  • News
  • Monthly issues
  • Podcast
  • A&A Focus
  • PFP Digest
  • Academic Update
  • Topics
  • RSS feed rss feed
  • Site map

ABOUT

  • Contact us
  • Advertise
  • Submit an article
  • Editorial calendar
  • Privacy policy
  • Terms & conditions

SUBSCRIBE

  • Academic Update
  • CPE Express

AICPA & CIMA SITES

  • AICPA-CIMA.com
  • Global Engagement Center
  • Financial Management (FM)
  • The Tax Adviser
  • AICPA Insights
  • Global Career Hub
AICPA & CIMA

© 2025 Association of International Certified Professional Accountants. All rights reserved.

Reliable. Resourceful. Respected.