Pageloader -->

ITIC: Email Invoice Scams Cause Big Losses for Shipping Companies

13 Jan 2021

Cyber-crime connected with fraudulent demands for payment continues to plague the maritime sector, according to the shipping insurer International Transport Intermediaries Club (ITIC). Cases of email-driven scams that result in six-figure losses have been reported previously, and ITIC says that it continues to see serious instances of theft using the same basic techniques.

 

In a recent case described by ITIC, a ship manager received an email from a shipyard with details of the first payment for some previously-agreed vessel repairs. The ship manager scheduled the payment in the usual manner, but on the day before the funds were to be released, they received another email. This second message claimed that due to some difficulties, the routing details for the first payment had been changed.

 

The ship manager soon received an email with a replacement invoice and new routing instructions - on exactly the same template as the original - and made the payment following these new directions. Shortly afterwards, the ship manager received payment confirmation.

 

However, this second email was fake, and the difference was not noticed by the ship manager. The fraudster has simply changed part of the email address from “irn” to “im” - a slight difference that went undetected.

 

A few days later, the yard sent another invoice, which was intercepted by the fraudsters and replaced with a fake invoice and fake payment details. In total, the ship manager paid $500,000 to the fraudsters - and as the yard had received nothing, it still claimed this amount from the ship manager.

 

With the insurer's involvement, the claim was reduced to $360,000 to reflect that the yard was partly at fault for not operating secure internal systems, ITIC said.

 

"ITIC reinforces its advice that all companies should be very aware of vendors or partners who change their bank details and should always telephone to confirm. And when doing so, they must use a phone number they trust, and not simply the one stated on the (potentially fraudulent) invoice," the insurer warned.

 

The method used in the case appears similar to a scheme detected and publicized by the cybersecurity firm Secureworks in 2018. The gang of hackers in that attack used spearphishing to insert malware on a target company computer, giving the hackers access to inside information that they could use to create fake invoices for payment.

BY THE MARITIME EXECUTIVE 01-12-2021 10:09:00

Comments (0)


Today
8:03am
Hi Jenna! I made a new design, and i wanted to show it to you.
8:03am
It's quite clean and it's inspired from Bulkit.
8:12am
Oh really??! I want to see that.
8:13am
FYI it was done in less than a day.
8:17am
Great to hear it. Just send me the PSD files so i can have a look at it.
8:18am
And if you have a prototype, you can also send me the link to it.

Monday
4:55pm
Hey Jenna, what's up?
4:56pm
Iam coming to LA tomorrow. Interested in having lunch?
5:21pm
Hey mate, it's been a while. Sure I would love to.
5:27pm
Ok. Let's say i pick you up at 12:30 at work, works?
5:43pm
Yup, that works great.
5:44pm
And yeah, don't forget to bring some of my favourite cheese cake.
5:27pm
No worries

Today
2:01pm
Hello Jenna, did you read my proposal?
2:01pm
Didn't hear from you since i sent it.
2:02pm
Hello Milly, Iam really sorry, Iam so busy recently, but i had the time to read it.
2:04pm
And what did you think about it?
2:05pm
Actually it's quite good, there might be some small changes but overall it's great.
2:07pm
I think that i can give it to my boss at this stage.
2:09pm
Crossing fingers then

Details