ISC Stormcast For Thursday, September 3rd, 2026 https://isc.sans.edu/podcastdetail/10080, (Thu, Sep 3rd)
The ISC Stormcast highlighted a significant increase in BEC (Business Email Compromise) attacks targeting the legal and accounting sectors, driven by a new technique leveraging compromised LinkedIn profiles to impersonate legal professionals. Attackers are using this tactic to gain trust and then initiate sophisticated phishing campaigns to steal sensitive financial data and intellectual property. The threat is particularly acute due to the high value of legal documents and the reliance on email for communication within these industries.
The SANS Internet Storm Center’s latest Stormcast identified a concerning trend in business email compromise (BEC) attacks, specifically targeting the legal and accounting sectors. The core of this escalation involves a novel method utilizing compromised LinkedIn profiles to establish a credible persona for attackers. These profiles are then used to send highly targeted emails mimicking legal correspondence, designed to trick recipients into divulging sensitive financial information or providing access to confidential documents. The attackers are leveraging this tactic to build trust and then initiate more complex phishing campaigns. The ISC noted a rise in the use of AI-powered tools to craft convincing and personalized emails, further amplifying the effectiveness of these attacks. The threat is particularly pronounced given the high value of legal documents and the reliance on email for communication within these industries. The ISC emphasized the need for heightened vigilance and robust security measures within these sectors.