{"id":50,"date":"2026-09-28T12:17:52","date_gmt":"2026-09-28T09:17:52","guid":{"rendered":"https:\/\/mx1mail.com\/blog\/what-is-business-email-compromise-bec\/"},"modified":"2026-09-28T12:17:52","modified_gmt":"2026-09-28T09:17:52","slug":"what-is-business-email-compromise-bec","status":"publish","type":"post","link":"https:\/\/mx1mail.com\/blog\/en\/what-is-business-email-compromise-bec\/","title":{"rendered":"What Is Business Email Compromise (BEC)?"},"content":{"rendered":"<p>Business Email Compromise, commonly known as BEC, is a category of social-engineering attacks that targets trusted business relationships to obtain money or sensitive information.<\/p>\n<h2>What does a BEC attack look like?<\/h2>\n<p>An attacker may impersonate an executive, accountant, supplier or business partner. The message is often designed to look like an ordinary business request.<\/p>\n<h2>Common BEC scenarios<\/h2>\n<ul>\n<li>Requests to change bank details<\/li>\n<li>Urgent wire-transfer requests<\/li>\n<li>Fraudulent invoices<\/li>\n<li>Confidential requests supposedly from executives<\/li>\n<li>Requests for employee or customer data<\/li>\n<\/ul>\n<h2>BEC may contain no malware<\/h2>\n<p>A dangerous aspect of BEC is that the message may contain no malicious attachment or link at all. The attack may rely entirely on social engineering.<\/p>\n<h2>How can companies reduce the risk?<\/h2>\n<p>Critical payment instructions should be verified through a second channel, employees should understand phishing and spoofing, and mailbox security should be monitored.<\/p>\n<h2>Compromised real accounts<\/h2>\n<p>Some BEC incidents use a legitimate employee mailbox that has already been compromised, making fraudulent messages much more convincing.<\/p>\n<p>If you suspect compromise, read <a href=\"https:\/\/mx1mail.com\/blog\/en\/what-to-do-if-email-account-is-compromised\/\">What to Do If a Business Email Account Is Compromised<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Learn how BEC attacks impersonate executives, suppliers and employees to request payments or sensitive information and why these attacks can be difficult to detect.<\/p>\n","protected":false},"author":0,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16],"tags":[166,161],"class_list":["post-50","post","type-post","status-publish","format-standard","hentry","category-email-security","tag-business-communication","tag-email-management"],"_links":{"self":[{"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/posts\/50","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/comments?post=50"}],"version-history":[{"count":0,"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/posts\/50\/revisions"}],"wp:attachment":[{"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/media?parent=50"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/categories?post=50"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mx1mail.com\/blog\/wp-json\/wp\/v2\/tags?post=50"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}