Beware of the Latest Phishing Scam Targeting Businesses
Cybercriminals are at it again! Lately, we’ve seen a surge in phishing attacks targeting businesses across the Highlands and Islands, and it’s time to sound the alarm. These aren’t just your standard dodgy emails riddled with typos and weird grammar. These scams are slick, convincing, and they’re coming from trusted contacts. Here’s what you need to know to stay safe.
What’s Happening?
Hackers are gaining access to real email accounts, often from people you know and using them to send phishing emails to everyone in their contact list. The emails typically contain a link labelled something like “Proposal” or “Quote” and sometimes even use a Dropbox-style button to make it look legitimate. Click on it, and you could end up on a malicious site designed to steal your login details or install malware on your device. In some cases, this could lead to session hijacking or token theft, giving attackers a way to bypass your multi-factor authentication and gain unauthorised access.
How Can You Spot a Phishing Email?
These emails are getting more sophisticated, but there are still telltale signs to watch for:
- Unexpected emails from known contacts – If a client or colleague suddenly sends you a file or link out of the blue, be wary.
- Generic or slightly off language – Scammers often use vague wording like “Here’s the document we discussed” when no such discussion ever happened.
- Urgency and pressure – “Please review ASAP” or “Action required immediately” are common scare tactics.
- Email address inconsistencies – The sender might look legit at first glance, but a closer look could reveal a slight misspelling or odd domain name.
- Suspicious links – Hover over links (without clicking!) to see where they actually lead. If it looks odd, do not touch it.
What To Do If You Receive One of These Emails
If you get an email that seems suspicious, follow these steps:
- Do not click anything – No links, no attachments, nothing!
- Verify with the sender – Call or message them directly (do not reply to the email) and ask if they actually sent it.
- Report it – If you’re on Microsoft 365 or Google Workspace, use the “Report Phishing” feature to flag it.
- Delete the email – Once you’ve reported it, get rid of it so no one accidentally clicks later.
- Update passwords – If you’ve already clicked on something, update your passwords straight away and enable multi-factor authentication (MFA) if it’s not already set up. If you need help, reach out to your IT support team.
Why You Need IT Support to Stay Safe
Phishing scams are getting harder to spot and more damaging to businesses. A single click on the wrong link can lead to stolen data, financial loss or a full-blown security breach.
Did you know?
-
94% of organisations have experienced phishing attacks, with 96% suffering negative impacts. (Egress Report)
-
96% of phishing scams now exploit trusted domains like Dropbox and Zoom. (TechRepublic)
That’s why businesses across the Highlands and Islands trust us to keep their IT systems secure. With professional IT support, you get:
- Advanced email filtering – Catching phishing emails before they reach your inbox.
- Cybersecurity training – Teaching your team how to spot and avoid scams.
- Regular system updates – Keeping your software secure against the latest threats.
- Rapid response support – If something does go wrong, we act fast to fix it.
Stay One Step Ahead From Cyber Criminals
Phishing attacks aren’t going away, but with the right precautions and IT support, you can protect your business from falling victim. If you’re not already working with a trusted IT provider, now is the time to start. Get in touch with us today and let us make sure your business stays safe from cyber threats.
Got questions or want to upgrade your IT security? We’re here to help! Contact us at info@sfgsoftware.com / 01463 630200 and let’s chat.