Small business
Business email compromise: how local shops get tricked
How business email compromise (BEC) hits Forsyth County shops and what owners can do before a fake invoice drains the operating account.
Updated 2026-07-20 · 6 min read · CyberForsyth
The expensive email that looks routine
Business email compromise often looks like a supplier changing wiring instructions or an owner asking payroll to send a gift-card run. CISA has highlighted billions in BEC losses nationally — small organizations are not exempt.
How local shops get caught
- A real vendor thread is hijacked after a mailbox breach
- Lookalike domains (`acme-payments.com` vs `acme.com`)
- Urgent “I’m in a meeting — just pay this” messages from a “boss”
- Compromised bookkeeper accounts forwarding silently
Controls that work
- MFA on every mailbox
- Dual approval for payment changes over a threshold
- Call vendors at known numbers to verify bank detail changes
- Spot-check email display names vs actual addresses
- Alert staff that gift-card and crypto payment requests are presumptive fraud
If you already paid
Call your bank’s fraud desk immediately — hours matter. File IC3 and FTC reports. Preserve email headers for investigators.
Need hands-on help?
We can harden Microsoft 365 / Google Workspace basics and clean compromised endpoints. Contact CyberForsyth.
Sources
Public resources referenced in this guide. We are not affiliated with these organizations unless stated elsewhere.
