Menu
Xero invoices mimicked in email scam

Xero invoices mimicked in email scam

New scam revealed by MailGuard

Credit: Xero

A fresh round of hoax invoice notifications claiming to be from Xero have landed in user inboxes, as the cloud accounting provider once again falls foul of cyber criminal impersonators.

Revealed by MailGuard, a scam was detected on Tuesday 2 April, infiltrating inboxes using a display name of an email with the domain ‘@post.xero.com’.

“The body of the email is simple, advising recipients that their Xero invoice is ready, and that the amount in the invoice will be debited from their credit card,” advised Craig McDonald, CEO of MailGuard. “The amount will be debited from their credit card on or after '23 Oct 2018’.”

A link is included to view the bill online and for recipients who click on the link to view their invoice, they are led to what is currently showing as a blank page.

However, MailGuard suspects the site could be used to serve a malicious file download.

Credit: MailGuard

“Eagle-eyed recipients will notice that real Xero invoices commonly use a PDF attachment rather than a link to an external website,” added McDonald.

“In this particular scam, cyber criminals have tried to make the email look as legitimate as possible by including the link to Xero Central’s ‘support article’ - a feature commonly included in authentic notifications from such a well-established cloud accounting company.”

Furthermore, the fraudsters also added in a note at the end warning users about the increasing frequency of fake invoice emails purporting to be from Xero.

“Accountants, book-keepers and financial professionals are particularly attractive to cyber criminals who know that they hold access to valuable financial information for company payrolls, invoicing, and the like,” said McDonald.

“Doing business online opens up opportunities for collaboration on an unprecedented level, but with that opportunity comes significant risk.

“Cyber criminals utilise sophisticated AI technology to monitor business and social networks and they exploit the data they collect to infiltrate organisations.”


Follow Us

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags mailguardxero

Featured

Slideshows

Reseller News welcomes industry figures for 2019 Hall of Fame lunch

Reseller News welcomes industry figures for 2019 Hall of Fame lunch

Reseller News welcomed 2018 inductees - Chris Simpson, Kendra Ross and Phill Patton - to the third running of the Reseller News Hall of Fame lunch, held at the French Cafe in Auckland. The inductees discussed the changing landscape of the technology industry in New Zealand, while outlining ways to attract a new breed of players to the ecosystem. Photos by Gino Demeer.

Reseller News welcomes industry figures for 2019 Hall of Fame lunch
Upcoming tech talent share insights at inaugural Emerging Leaders Forum 2019

Upcoming tech talent share insights at inaugural Emerging Leaders Forum 2019

The channel came together for the inaugural Reseller News Emerging Leaders Forum in New Zealand, created to provide a program that identifies, educates and showcases the upcoming talent of the ICT industry. Hosted as a half day event, attendees heard from industry champions as keynoters and panelists talked about future opportunities and leadership paths and joined mentoring sessions with members of the ICT industry Hall of Fame. The forum concluded with 30 Under 30 Tech Awards across areas of Sales, Entrepreneur, Marketing, Management, Technical and Human Resources. Photos by Gino Demeer.

Upcoming tech talent share insights at inaugural Emerging Leaders Forum 2019
Show Comments