๐งพ
Invoice & Payment Scams
High SeverityInvoice fraud is the fastest-growing email scam category
Invoice scams involve sending fake invoices, bills, or payment requests that appear to come from legitimate vendors, suppliers, or service providers.
How it works
- Attackers send realistic-looking invoices for services never rendered
- Or they intercept real vendor communications and change bank details
- Invoices often reference real purchase order numbers or project names
- Payment is directed to accounts controlled by the attacker
Red flags to watch for
- Invoice for a service you don't recognize
- Changed bank account details from a regular vendor
- Invoice arriving outside the normal billing cycle
- Pressure to pay immediately or face late fees
- Slight changes in vendor email domain
Real-world example
Subject: Invoice #INV-2024-4892 โ Payment Due
From: billing@acme-services.net
โPlease find attached your invoice for consulting services rendered in March. Note: Our banking details have been updated. Please use the new account information on the invoice for all future payments.โ
How to protect yourself
- Verify any payment detail changes directly with the vendor by phone
- Maintain an approved vendor list with verified contact information
- Use SiftMail to flag emails mentioning payment changes or new bank details
How SiftMail detects this
SiftMail detects invoice scam patterns through subject line analysis, body content scoring for financial terminology, and sender reputation checks against known vendor domains.
Stop invoice & payment scams before they reach your inbox
SiftMail scores every incoming email and automatically quarantines threats. Free plan available, setup takes 30 seconds.