In yet another version of “spear phishing,” fraudsters send a genuine-looking email to the payroll department in an organization purporting to be from an employee, requesting a change in the bank account to which the employee’s payroll direct deposit is sent. The new bank account belongs to the hackers and they get a few paychecks out of it.

Be on the alert! Please make sure your payroll department verifies any such requests with employees independently of email, using a reliable and appropriate communication method. A signed form is best!