{"id":274,"date":"2026-06-30T07:34:59","date_gmt":"2026-06-30T07:34:59","guid":{"rendered":"https:\/\/diopter.ai\/blog\/?p=274"},"modified":"2026-07-20T14:02:56","modified_gmt":"2026-07-20T14:02:56","slug":"business-email-compromise","status":"publish","type":"post","link":"https:\/\/diopter.ai\/blog\/business-email-compromise\/","title":{"rendered":"Business Email Compromise (BEC): Complete Guide"},"content":{"rendered":"\n<style>\n.dblog{font-family:-apple-system,BlinkMacSystemFont,'Inter','Segoe UI',sans-serif;color:#13162F;line-height:1.7;-webkit-font-smoothing:antialiased;background:#fff}\n.dblog *{box-sizing:border-box}\n.dblog a{color:#1E3A8A;text-decoration:underline;text-underline-offset:3px}\n.dblog a.dbl-int{color:#13162F}\n\/* -- BREADCRUMB -- *\/\n.dblog .bl-breadcrumb{display:flex!important;align-items:center;gap:6px;margin-bottom:16px;flex-wrap:nowrap;overflow:hidden}\n.dblog .bl-breadcrumb a{font-size:.72rem!important;font-weight:500!important;color:#A6AFBF!important;text-decoration:none!important;outline:none!important;box-shadow:none!important;border:none!important;background:none!important;padding:0!important;transition:color .15s;white-space:nowrap;overflow:hidden;text-overflow:ellipsis;flex-shrink:1;min-width:0;max-width:220px}\n.dblog .bl-breadcrumb a:hover{color:#13162F!important;text-decoration:none!important}\n.dblog .bl-breadcrumb-sep{font-size:.65rem;color:#D1D5DB;line-height:1;flex-shrink:0}\n.dblog .bl-breadcrumb-current{font-size:.72rem;font-weight:600;color:#6B7A9C;white-space:nowrap;overflow:hidden;text-overflow:ellipsis;flex-shrink:1;min-width:0}\n@media(max-width:480px){.dblog .bl-breadcrumb a{max-width:90px}.dblog .bl-breadcrumb-current{max-width:100px}}\n\/* -- HERO -- *\/\n.dblog .bl-hero{padding:44px 32px 36px;max-width:1160px;margin:0 auto}\n.dblog .bl-eyebrow{display:inline-flex;align-items:center;gap:8px;font-size:.67rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#6B7A9C;margin-bottom:14px;background:#F1F3F5;padding:5px 12px;border-radius:999px}\n.dblog .bl-eyebrow i{display:inline-block;width:14px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-hero h1{font-size:clamp(1.75rem,3.5vw,2.5rem);font-weight:700;color:#13162F;letter-spacing:-.03em;margin:0 0 18px;line-height:1.12;max-width:820px}\n.dblog .bl-meta{display:flex;align-items:center;gap:8px;flex-wrap:wrap;padding-bottom:14px;margin-bottom:0}\n.dblog .bl-meta-author{font-size:.82rem;font-weight:600;color:#13162F}\n.dblog .bl-meta-sep{color:#D1D5DB;font-size:.9rem}\n.dblog .bl-meta-date{font-size:.8rem;color:#6B7A9C}\n.dblog .bl-meta-read{font-size:.78rem;color:#6B7A9C;background:#F1F3F5;padding:3px 10px;border-radius:999px;margin-left:4px}\n\/* -- INTRO -- *\/\n.dblog .bl-intro{max-width:1160px;margin:0 auto;padding:0 32px}\n.dblog .bl-intro p{font-size:.97rem;color:#3D4A63;line-height:1.82;margin:0 0 18px;max-width:100%}\n.dblog .bl-intro .bl-stat{background:#F8F9FB;border:1px solid #E2E5ED;border-left:3px solid #2EE8A4;border-radius:0 12px 12px 0;padding:16px 20px;margin:4px 0 24px}\n.dblog .bl-intro .bl-stat p{margin:0;font-size:.87rem;color:#4A5568;line-height:1.72}\n\/* -- BODY -- *\/\n.dblog .bl-body{max-width:1160px;margin:0 auto;padding:16px 32px 32px}\n@media(max-width:700px){.dblog .bl-body{padding:16px 20px 32px}}\n@media(max-width:700px){.dblog .bl-hero{padding:32px 20px 24px}.dblog .bl-intro{padding:0 20px}}\n\/* -- INLINE COMPACT TOC -- *\/\n.dblog .bl-toc-compact{border:1px solid #E2E5ED;border-radius:10px;margin-top:16px;margin-bottom:0;overflow:hidden}\n.dblog .bl-toc-compact-trigger{display:flex;align-items:center;justify-content:space-between;padding:12px 16px;cursor:pointer;user-select:none;gap:8px}\n.dblog .bl-toc-compact-trigger:hover{background:#F8F9FB}\n.dblog .bl-toc-compact-label{font-size:.62rem;font-weight:700;letter-spacing:.1em;text-transform:uppercase;color:#A6AFBF;display:flex;align-items:center;gap:7px;margin:0}\n.dblog .bl-toc-compact-label::before{content:'';display:inline-block;width:12px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-toc-compact-arrow{font-size:.65rem;color:#A6AFBF;transition:transform .22s ease;line-height:1}\n.dblog .bl-toc-compact.open .bl-toc-compact-arrow{transform:rotate(180deg)}\n.dblog .bl-toc-compact-body{max-height:0;overflow:hidden;transition:max-height .28s ease}\n.dblog .bl-toc-compact.open .bl-toc-compact-body{max-height:640px}\n.dblog .bl-toc-compact-grid{display:grid;grid-template-columns:1fr 1fr;gap:0;padding:4px 10px 12px}\n@media(max-width:500px){.dblog .bl-toc-compact-grid{grid-template-columns:1fr}}\n.dblog .bl-toc-compact-grid a{display:flex;align-items:baseline;gap:8px;font-size:.78rem;font-weight:500;color:#13162F!important;text-decoration:none!important;outline:none!important;box-shadow:none!important;border:none!important;background:none!important;padding:5px 6px;border-radius:6px;line-height:1.35;transition:background .1s}\n.dblog .bl-toc-compact-grid a:hover{background:#F1F3F5!important;color:#13162F!important}\n.dblog .bl-toc-compact-grid a span.n{font-size:.6rem;font-weight:700;color:#A6AFBF;flex-shrink:0;min-width:14px}\n\/* -- MOBILE STICKY TOC -- *\/\n.dblog .bl-toc-mobile{display:none;position:fixed;top:64px;left:0;right:0;z-index:9500;background:#fff;border-bottom:1px solid #E2E5ED;box-shadow:0 2px 12px rgba(0,0,0,.08);transform:translateY(-120%);transition:transform .25s ease}\n.dblog .bl-toc-mobile.visible{transform:translateY(0)}\n.dblog .bl-toc-mobile-trigger{display:flex;align-items:center;justify-content:space-between;padding:13px 20px;cursor:pointer;user-select:none}\n.dblog .bl-toc-mobile-label{font-size:.8rem;font-weight:600;color:#13162F;display:flex;align-items:center;gap:8px}\n.dblog .bl-toc-mobile-label::before{content:'';display:inline-block;width:12px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-toc-mobile-arrow{font-size:.7rem;color:#6B7A9C;transition:transform .2s}\n.dblog .bl-toc-mobile.open .bl-toc-mobile-arrow{transform:rotate(180deg)}\n.dblog .bl-toc-mobile-list{max-height:0;overflow:hidden;transition:max-height .25s ease;background:#F8F9FB;border-top:1px solid #E2E5ED}\n.dblog .bl-toc-mobile.open .bl-toc-mobile-list{max-height:640px}\n.dblog .bl-toc-mobile-list a{display:flex;align-items:center;gap:10px;padding:11px 20px;font-size:.82rem;font-weight:500;color:#6B7A9C;text-decoration:none;border-bottom:1px solid #E2E5ED}\n.dblog .bl-toc-mobile-list a:last-child{border-bottom:none}\n.dblog .bl-toc-mobile-list a::before{content:attr(data-num);font-size:.62rem;font-weight:700;color:#A6AFBF;min-width:16px}\n.dblog .bl-toc-mobile-list a:hover{color:#13162F;background:rgba(19,22,47,.03)}\n@media(max-width:880px){.dblog .bl-toc-mobile{display:block}}\n\/* -- ARTICLE CONTENT -- *\/\n.dblog .bl-content{min-width:0}\n.dblog .bl-content h2{font-size:1.22rem;font-weight:700;color:#13162F;letter-spacing:-.02em;margin:48px 0 14px;line-height:1.25;scroll-margin-top:60px}\n.dblog .bl-content h3{font-size:.98rem;font-weight:700;color:#13162F;margin:26px 0 10px;line-height:1.3;scroll-margin-top:60px}\n.dblog .bl-content p{font-size:.93rem;color:#3D4A63;line-height:1.82;margin:0 0 16px}\n.dblog .bl-content strong{color:#13162F;font-weight:600}\n.dblog .bl-content ul{margin:0 0 18px;padding:0;list-style:none}\n.dblog .bl-content ul li{font-size:.91rem;color:#3D4A63;line-height:1.75;padding:8px 0 8px 26px;position:relative;border-bottom:1px solid #F1F3F5}\n.dblog .bl-content ul li:last-child{border-bottom:none}\n.dblog .bl-content ul li::before{content:'';position:absolute;left:0;top:17px;width:7px;height:7px;border-radius:50%;background:#2EE8A4;flex-shrink:0}\n.dblog .bl-content ol.bl-steps{margin:0 0 18px;padding:0;list-style:none;counter-reset:step}\n.dblog .bl-content ol.bl-steps li{counter-increment:step;font-size:.91rem;color:#3D4A63;line-height:1.78;padding:14px 0 14px 46px;position:relative;border-bottom:1px solid #F1F3F5}\n.dblog .bl-content ol.bl-steps li:last-child{border-bottom:none}\n.dblog .bl-content ol.bl-steps li::before{content:counter(step);position:absolute;left:0;top:14px;width:28px;height:28px;border-radius:50%;background:#13162F;color:#fff;font-size:.68rem;font-weight:700;display:flex;align-items:center;justify-content:center}\n.dblog .bl-content .bl-stat{background:#F8F9FB;border:1px solid #E2E5ED;border-left:3px solid #2EE8A4;border-radius:0 12px 12px 0;padding:16px 20px;margin:16px 0 20px;position:relative}\n.dblog .bl-content .bl-stat p{margin:0;font-size:.87rem;color:#4A5568;line-height:1.72}\n.dblog .bl-divider{border:none;border-top:1px solid #E2E5ED;margin:36px 0}\n\/* -- ATTACK FLOW -- *\/\n.dblog .bl-attack-flow-scroll{overflow-x:auto;-webkit-overflow-scrolling:touch;margin:20px 0 24px}\n.dblog .bl-attack-flow{display:flex;flex-wrap:nowrap;align-items:stretch;gap:6px;padding:18px 16px;background:#F8F9FB;border:1px solid #E2E5ED;border-radius:12px;min-width:560px}\n.dblog .bl-attack-flow-step{background:#13162F;color:#fff;font-size:.73rem;font-weight:600;padding:9px 12px;border-radius:8px;text-align:center;flex:1;min-width:100px;display:flex;align-items:center;justify-content:center;line-height:1.35}\n.dblog .bl-attack-flow-arr{color:#2EE8A4;font-size:.9rem;font-weight:700;display:flex;align-items:center;flex-shrink:0;padding:0 2px}\n\/* -- CASE STUDY CARD -- *\/\n.dblog .bl-case-study{background:#F8F9FB;border:1px solid #E2E5ED;border-radius:16px;padding:24px 28px;margin:24px 0 28px}\n.dblog .bl-case-study-eyebrow{font-size:.6rem;font-weight:700;letter-spacing:.1em;text-transform:uppercase;color:#2EE8A4;margin-bottom:8px;display:flex;align-items:center;gap:8px}\n.dblog .bl-case-study-eyebrow::before{content:'';display:inline-block;width:12px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-case-study h4{font-size:.98rem;font-weight:700;color:#13162F;letter-spacing:-.02em;line-height:1.3;margin:0 0 14px}\n.dblog .bl-case-study p{font-size:.88rem;color:#4A5568;line-height:1.78;margin:0 0 10px}\n.dblog .bl-case-study p:last-child{margin:0}\n\/* -- COMPARISON TABLE -- *\/\n.dblog .bl-table-wrap{overflow-x:auto;margin:20px 0 24px;border-radius:12px;border:1px solid #E2E5ED}\n.dblog .bl-table{width:100%;border-collapse:collapse;font-size:.82rem}\n.dblog .bl-table th{background:#13162F;color:#fff;font-size:.7rem;font-weight:700;letter-spacing:.05em;text-transform:uppercase;padding:12px 14px;text-align:left;white-space:nowrap}\n.dblog .bl-table th:first-child{border-radius:0}\n.dblog .bl-table td{padding:11px 14px;color:#3D4A63;border-bottom:1px solid #F1F3F5;vertical-align:top;line-height:1.55}\n.dblog .bl-table tr:last-child td{border-bottom:none}\n.dblog .bl-table tr:nth-child(even) td{background:#FAFBFC}\n.dblog .bl-table td:first-child{font-weight:600;color:#13162F;white-space:nowrap}\n\/* -- INLINE CTA -- *\/\n.dblog .bl-icta{background:#13162F;border-radius:16px;padding:24px 28px;margin:36px 0;display:flex;align-items:center;justify-content:space-between;gap:20px}\n.dblog .bl-icta p{margin:0;font-size:.875rem;color:rgba(255,255,255,.65);line-height:1.55;max-width:440px}\n.dblog .bl-icta p strong{color:#fff;display:block;font-size:.92rem;margin-bottom:3px}\n.dblog .bl-icta a{display:inline-flex;align-items:center;padding:10px 20px;background:#2EE8A4;color:#13162F;border-radius:999px;font-size:.8rem;font-weight:700;text-decoration:none;white-space:nowrap;flex-shrink:0}\n@media(max-width:580px){.dblog .bl-icta{flex-direction:column;align-items:flex-start}.dblog .bl-icta a{width:100%;justify-content:center}}\n\/* -- BOTTOM CTA -- *\/\n.dblog .bl-bcta{background:#13162F;border-radius:18px;padding:48px 40px;text-align:center;margin-top:56px;position:relative;overflow:hidden}\n.dblog .bl-bcta::before{content:'';position:absolute;top:0;left:0;right:0;height:2px;background:#2EE8A4}\n.dblog .bl-bcta h2{font-size:1.4rem;font-weight:700;color:#fff;letter-spacing:-.02em;margin:0 0 10px;scroll-margin-top:60px}\n.dblog .bl-bcta p{color:rgba(255,255,255,.55);font-size:.88rem;max-width:440px;margin:0 auto 24px;line-height:1.7}\n.dblog .bl-bcta a{display:inline-flex;align-items:center;padding:12px 26px;background:#2EE8A4;color:#13162F;border-radius:999px;font-size:.875rem;font-weight:700;text-decoration:none}\n@media(max-width:500px){.dblog .bl-bcta{padding:36px 24px}.dblog .bl-bcta a{width:100%;justify-content:center}}\n\/* -- DIOPTER TOOLS WIDGET -- *\/\n.dblog .bl-dw{border:1px solid #E2E5ED;border-radius:14px;overflow:hidden;margin:48px 0}\n.dblog .bl-dw-header{padding:13px 20px;display:flex;align-items:center;justify-content:space-between;border-bottom:1px solid #E2E5ED;background:#FAFBFC;gap:12px;flex-wrap:wrap}\n.dblog .bl-dw-hd-left{display:flex;align-items:center;gap:8px}\n.dblog .bl-dw-dot{width:7px;height:7px;border-radius:50%;background:#2EE8A4;display:inline-block;flex-shrink:0}\n.dblog .bl-dw-title{font-size:.78rem;font-weight:700;color:#13162F}\n.dblog .bl-dw-sub{font-size:.72rem;color:#6B7A9C}\n.dblog .bl-dw-body{padding:16px 20px;display:flex;flex-direction:column;gap:14px}\n.dblog .bl-dw-section-label{font-size:.58rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#A6AFBF;margin-bottom:8px}\n.dblog .bl-dw-row{display:grid;grid-template-columns:repeat(auto-fill,minmax(170px,1fr));gap:8px}\n.dblog .bl-dw-item{display:flex;align-items:center;gap:9px;padding:9px 12px;border-radius:9px;border:1px solid #E2E5ED;background:#fff;text-decoration:none!important;color:#13162F!important;transition:border-color .15s,box-shadow .15s;outline:none!important;box-shadow:none!important}\n.dblog .bl-dw-item:hover{border-color:#2EE8A4;box-shadow:0 2px 8px rgba(46,232,164,.12)}\n.dblog .bl-dw-ico{width:28px;height:28px;border-radius:7px;display:flex;align-items:center;justify-content:center;flex-shrink:0;font-size:.85rem}\n.dblog .bl-dw-ico-c{background:#ECFDF5}\n.dblog .bl-dw-ico-s{background:#EFF6FF}\n.dblog .bl-dw-text{font-size:.74rem;font-weight:500;color:#13162F;line-height:1.3}\n.dblog .bl-dw-divider{height:1px;background:#F1F3F5}\n.dblog .bl-dw-footer{padding:11px 20px;border-top:1px solid #E2E5ED;display:flex;align-items:center;justify-content:space-between;background:#FAFBFC;gap:8px;flex-wrap:wrap}\n.dblog .bl-dw-footer a{font-size:.74rem;font-weight:600;color:#6B7A9C!important;text-decoration:none!important;display:inline-flex;align-items:center;gap:4px;transition:color .15s;outline:none!important;box-shadow:none!important;border:none!important;background:none!important}\n.dblog .bl-dw-footer a:hover{color:#13162F!important}\n\/* -- RELATED READING -- *\/\n.dblog .bl-related{margin-top:48px}\n.dblog .bl-related-label{font-size:.62rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#A6AFBF;margin-bottom:16px;display:flex;align-items:center;gap:10px}\n.dblog .bl-related-label::after{content:'';flex:1;height:1px;background:#E2E5ED}\n.dblog .bl-related-grid{display:grid;grid-template-columns:repeat(auto-fill,minmax(240px,1fr));gap:12px}\n.dblog .bl-related-card{display:flex;flex-direction:column;background:#F8F9FB;border:1px solid #E2E5ED!important;border-radius:14px;padding:20px 22px;text-decoration:none!important;color:inherit!important;outline:none!important;box-shadow:none;transition:box-shadow .18s,transform .15s,border-color .18s}\n.dblog .bl-related-card:hover{box-shadow:0 4px 20px rgba(19,22,47,.07);transform:translateY(-2px);border-color:#D1D5DB}\n.dblog .bl-related-cat{font-size:.6rem;font-weight:700;letter-spacing:.1em;text-transform:uppercase;color:#2EE8A4;margin-bottom:8px}\n.dblog .bl-related-title{font-size:.92rem;font-weight:700;color:#13162F;letter-spacing:-.02em;line-height:1.3;margin-bottom:8px}\n.dblog .bl-related-excerpt{font-size:.79rem;color:#6B7A9C;line-height:1.65;margin-bottom:14px;display:-webkit-box;-webkit-line-clamp:2;-webkit-box-orient:vertical;overflow:hidden}\n.dblog .bl-related-meta{display:flex;align-items:center;gap:7px;font-size:.7rem;color:#A6AFBF}\n.dblog .bl-related-read{background:#fff;padding:2px 8px;border-radius:100px;font-size:.67rem;margin-left:auto}\n\/* -- PROGRESS BAR -- *\/\n.dbl-progress{position:fixed!important;top:0!important;left:0!important;height:3px;background:#2EE8A4;z-index:10000!important;width:0%;transition:width .1s linear;pointer-events:none;border-radius:0 2px 2px 0}\n\/* -- BACK TO TOP -- *\/\n.dbl-backtop{position:fixed;bottom:28px;right:24px;width:42px;height:42px;border-radius:50%;background:#13162F;color:#2EE8A4;border:2px solid rgba(46,232,164,.3);cursor:pointer;font-size:1rem;display:flex;align-items:center;justify-content:center;opacity:0;transform:translateY(12px);transition:opacity .22s,transform .22s;z-index:8000;box-shadow:0 4px 18px rgba(0,0,0,.2);line-height:1}\n.dbl-backtop.visible{opacity:1;transform:translateY(0)}\n.dbl-backtop:hover{background:#1e2545}\n\/* -- SHARE BAR -- *\/\n.dblog .bl-share-bar{display:flex;align-items:center;justify-content:space-between;gap:16px;padding:16px 20px;border:1px solid #E2E5ED;border-radius:12px;margin-top:40px;flex-wrap:wrap}\n.dblog .bl-share-bar-label{font-size:.78rem;font-weight:600;color:#13162F}\n.dblog .bl-share-bar-btns{display:flex;gap:8px;flex-wrap:wrap}\n.dblog .bl-share-bar-btn{display:inline-flex;align-items:center;gap:6px;padding:7px 16px;border-radius:999px;font-size:.75rem;font-weight:600;cursor:pointer;transition:all .15s;text-decoration:none!important;outline:none!important;box-shadow:none!important}\n.dblog .bl-share-bar-li{background:#13162F;color:#fff!important;border:1px solid #13162F!important}\n.dblog .bl-share-bar-li:hover{background:#1e2545;border-color:#1e2545!important}\n.dblog .bl-share-bar-x{background:#F8F9FB;color:#13162F!important;border:1px solid #E2E5ED!important}\n.dblog .bl-share-bar-x:hover{background:#F1F3F5}\n.dblog .bl-share-bar-copy{background:#F8F9FB;color:#13162F!important;border:1px solid #E2E5ED!important}\n.dblog .bl-share-bar-copy:hover{background:#F1F3F5}\n.dblog .bl-share-bar-copy.copied{background:#2EE8A4;color:#13162F!important;border-color:#2EE8A4!important}\n\/* -- PAGE LAYOUT (LEFT sidebar) -- *\/\n.dblog .bl-page-wrap{display:flex;max-width:1160px;margin:0 auto;align-items:flex-start}\n@media(min-width:1100px){.dblog .bl-page-wrap{max-width:1360px}}\n.dblog .bl-page-main{flex:1;min-width:0;order:1}\n.dblog .bl-page-wrap .bl-intro{max-width:none;margin:0}\n.dblog .bl-page-wrap .bl-body{max-width:none;margin:0}\n.dblog .bl-page-side{width:228px;flex-shrink:0;position:sticky;top:80px;padding:24px 0 0 28px;display:none;max-height:calc(100vh - 100px);overflow-y:auto;order:2}\n@media(min-width:1100px){.dblog .bl-page-side{display:block}}\n.dblog .bl-sidebar-toc-label{font-size:.6rem;font-weight:700;letter-spacing:.1em;text-transform:uppercase;color:#A6AFBF;margin-bottom:10px;display:flex;align-items:center;gap:6px}\n.dblog .bl-sidebar-toc-label::before{content:'';display:inline-block;width:10px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-sidebar-link{display:block;font-size:.74rem;color:#A6AFBF!important;text-decoration:none!important;outline:none!important;border:none!important;background:none!important;box-shadow:none!important;padding:5px 0 5px 10px;border-left:2px solid #E2E5ED;line-height:1.35;transition:color .15s,border-color .15s;margin-bottom:3px}\n.dblog .bl-sidebar-link:hover{color:#6B7A9C!important;border-left-color:#A6AFBF}\n.dblog .bl-sidebar-link.active{color:#13162F!important;border-left-color:#2EE8A4;font-weight:600}\n.dblog .bl-sidebar-cta{margin-top:20px;background:#13162F;border-radius:12px;padding:16px 14px;position:relative;overflow:hidden}\n.dblog .bl-sidebar-cta::before{content:'';position:absolute;top:0;left:0;right:0;height:2px;background:#2EE8A4}\n.dblog .bl-sidebar-cta-label{font-size:.58rem;font-weight:700;letter-spacing:.1em;text-transform:uppercase;color:rgba(255,255,255,.35);margin-bottom:6px}\n.dblog .bl-sidebar-cta p{font-size:.74rem;color:rgba(255,255,255,.6);line-height:1.55;margin:0 0 12px}\n.dblog .bl-sidebar-cta a{display:block;text-align:center;padding:8px 12px;background:#2EE8A4;color:#13162F!important;border-radius:999px;font-size:.72rem;font-weight:700;text-decoration:none!important;border:none!important;outline:none!important;box-shadow:none!important}\n.dblog .bl-sidebar-cta a:hover{opacity:.9}\n\/* sidebar related rail *\/\n\/* -- STAT COPY\/SHARE BTNS -- *\/\n.dblog .bl-stat{position:relative}\n.dblog .bl-copy-btn{position:absolute;top:8px;right:8px;background:none;border:none;cursor:pointer;color:#C4CAD8;padding:4px;border-radius:5px;line-height:1;transition:color .15s,background .15s;display:flex;align-items:center}\n.dblog .bl-copy-btn:hover{color:#6B7A9C;background:#E2E5ED}\n.dblog .bl-copy-btn.copied{color:#2EE8A4}\n.bec-stat-share-btn{display:inline-flex;align-items:center;gap:5px;font-size:.63rem;font-weight:700;color:#A6AFBF;background:none;border:none;cursor:pointer;padding:3px 6px;border-radius:5px;transition:color .15s,background .15s;margin-left:4px}\n.bec-stat-share-btn:hover{color:#13162F;background:#E2E5ED}\n\/* -- AUTHOR BIO -- *\/\n.dblog .bl-author{display:flex;align-items:flex-start;gap:18px;background:#F8F9FB;border:1px solid #E2E5ED;border-radius:14px;padding:24px 26px;margin-top:48px}\n.dblog .bl-author-avatar{width:52px;height:52px;border-radius:50%;background:#13162F;display:flex;align-items:center;justify-content:center;flex-shrink:0;font-size:.72rem;font-weight:700;color:#2EE8A4;letter-spacing:.04em}\n.dblog .bl-author-name{font-size:.9rem;font-weight:700;color:#13162F;margin-bottom:2px}\n.dblog .bl-author-role{font-size:.7rem;color:#2EE8A4;font-weight:700;letter-spacing:.08em;text-transform:uppercase;margin-bottom:8px}\n.dblog .bl-author-bio{font-size:.82rem;color:#6B7A9C;line-height:1.65;margin:0}\n@media(max-width:480px){.dblog .bl-author{flex-direction:column;gap:12px}}\n\/* -- FAQ -- *\/\n.dblog .bl-faq{margin-top:48px}\n.dblog .bl-faq-label{font-size:.62rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#A6AFBF;margin-bottom:16px;display:flex;align-items:center;gap:10px}\n.dblog .bl-faq-label::after{content:'';flex:1;height:1px;background:#E2E5ED}\n.dblog .bl-faq details{background:#F8F9FB;border:1px solid #E2E5ED;border-radius:14px;margin-bottom:8px;overflow:hidden}\n.dblog .bl-faq summary{display:flex;align-items:center;justify-content:space-between;gap:12px;padding:16px 20px;cursor:pointer;list-style:none;-webkit-appearance:none;font-size:.9rem;font-weight:600;color:#13162F;line-height:1.4}\n.dblog .bl-faq summary::-webkit-details-marker{display:none}\n.dblog .bl-faq .fq-icon{width:18px;height:18px;border-radius:50%;background:#E2E5ED;display:flex;align-items:center;justify-content:center;flex-shrink:0;transition:background .2s}\n.dblog .bl-faq details[open] .fq-icon{background:#13162F}\n.dblog .bl-faq .fq-icon svg{transition:transform .22s}\n.dblog .bl-faq details[open] .fq-icon svg{transform:rotate(45deg)}\n.dblog .bl-faq details[open] .fq-icon svg path{stroke:#fff}\n.dblog .bl-faq .fq-ans{padding:0 20px 16px;font-size:.875rem;color:#6B7A9C;line-height:1.75;border-top:1px solid #E2E5ED;padding-top:14px}\n\/* -- SUMMARY \/ KEY TAKEAWAYS -- *\/\n.dblog .bl-summary{background:#F8F9FB;border:1px solid #E2E5ED;border-radius:16px;padding:24px 28px;margin-bottom:28px}\n.dblog .bl-summary-label{font-size:.6rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#A6AFBF;margin-bottom:10px;display:flex;align-items:center;gap:8px}\n.dblog .bl-summary-label::before{content:'';display:inline-block;width:12px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-summary-text{font-size:.88rem;color:#4A5568;line-height:1.75;margin:0 0 20px}\n.dblog .bl-summary-kt-label{font-size:.6rem;font-weight:700;letter-spacing:.12em;text-transform:uppercase;color:#A6AFBF;margin:0 0 10px;display:flex;align-items:center;gap:8px}\n.dblog .bl-summary-kt-label::before{content:'';display:inline-block;width:12px;height:2px;background:#2EE8A4;border-radius:2px}\n.dblog .bl-summary ul{margin:0;padding:0;list-style:none}\n.dblog .bl-summary ul li{font-size:.85rem;color:#3D4A63;line-height:1.7;padding:7px 0 7px 22px;position:relative;border-bottom:1px solid #F1F3F5}\n.dblog .bl-summary ul li:last-child{border-bottom:none}\n.dblog .bl-summary ul li::before{content:'';position:absolute;left:0;top:16px;width:6px;height:6px;border-radius:50%;background:#2EE8A4}\n@media(min-width:1100px){.dblog #becTocAccordion{display:none}}\n@media(min-width:1100px){.dblog .bl-share-bar{display:none}}\n.dblog .bl-top-share{display:flex;align-items:center;gap:8px;margin-top:16px}\n.dblog .bl-top-share-label{font-size:.72rem;font-weight:600;color:#6B7A9C;margin-right:2px}\n.dblog .bl-top-share-btn{display:inline-flex;align-items:center;justify-content:center;width:30px;height:30px;border-radius:50%;cursor:pointer;transition:all .15s;border:1px solid #E2E5ED;background:#fff;color:#13162F;text-decoration:none!important;outline:none!important;box-shadow:none!important}\n.dblog .bl-top-share-btn.li{background:#13162F;border-color:#13162F;color:#fff!important}\n.dblog .bl-top-share-btn.li:hover{background:#1e2545}\n.dblog .bl-top-share-btn.cp:hover{background:#F1F3F5}\n.dblog .bl-top-share-btn.cp.copied{background:#2EE8A4;border-color:#2EE8A4;color:#13162F}\n<\/style>\n\n<div id=\"becToast\" style=\"display:none;position:fixed;bottom:32px;left:50%;transform:translateX(-50%);background:#13162F;color:#2EE8A4;font-size:.75rem;font-weight:600;padding:8px 18px;border-radius:999px;z-index:30000;box-shadow:0 4px 20px rgba(0,0,0,.2);white-space:nowrap;pointer-events:none\">Link copied!<\/div>\n<div class=\"dbl-progress\" id=\"dblProgress\"><\/div>\n<button class=\"dbl-backtop\" id=\"dblBackTop\" onclick=\"window.scrollTo({top:0,behavior:'smooth'})\" aria-label=\"Back to top\">\u2191<\/button>\n\n<div class=\"dblog\">\n<!-- MOBILE TOC -->\n<div class=\"bl-toc-mobile\" id=\"dblTocMobile\">\n  <div class=\"bl-toc-mobile-trigger\" onclick=\"this.parentElement.classList.toggle('open')\">\n    <span class=\"bl-toc-mobile-label\">Table of contents<\/span>\n    <span class=\"bl-toc-mobile-arrow\">\u25bc<\/span>\n  <\/div>\n  <div class=\"bl-toc-mobile-list\">\n    <a href=\"#what-is-bec\" data-num=\"01\">What is BEC?<\/a>\n    <a href=\"#how-bec-works\" data-num=\"02\">How BEC attacks work<\/a>\n    <a href=\"#types-of-bec\" data-num=\"03\">Types of BEC scam<\/a>\n    <a href=\"#bec-indicators\" data-num=\"04\">Key indicators<\/a>\n    <a href=\"#why-email-security-misses\" data-num=\"05\">Why email security misses BEC<\/a>\n    <a href=\"#business-impact\" data-num=\"06\">Business impact<\/a>\n    <a href=\"#real-world-cases\" data-num=\"07\">Real-world cases<\/a>\n    <a href=\"#bec-vs-eac-phishing\" data-num=\"08\">BEC vs EAC vs Phishing<\/a>\n    <a href=\"#ai-deepfakes-bec\" data-num=\"09\">How AI &amp; deepfakes change BEC<\/a>\n    <a href=\"#layered-defence\" data-num=\"10\">Building a layered defence<\/a>\n    <a href=\"#diopter\" data-num=\"11\">How Diopter helps<\/a>\n    <a href=\"#faqs\" data-num=\"12\">FAQs<\/a>\n  <\/div>\n<\/div>\n\n<!-- HERO -->\n<div class=\"bl-hero\">\n  <div class=\"bl-breadcrumb\">\n    <a href=\"https:\/\/diopter.ai\/blog\/\">Blog<\/a>\n    <span class=\"bl-breadcrumb-sep\">\u2192<\/span>\n    <a href=\"https:\/\/diopter.ai\/blog\/category\/business-email-compromise\/\">Business Email Compromise<\/a>\n    <span class=\"bl-breadcrumb-sep\">\u2192<\/span>\n    <span class=\"bl-breadcrumb-current\">Business Email Compromise<\/span>\n  <\/div>\n  <a href=\"https:\/\/diopter.ai\/blog\/category\/business-email-compromise\/\" class=\"bl-eyebrow\" style=\"text-decoration:none\"><i><\/i>Business Email Compromise<\/a>\n  <h1>Business Email Compromise (BEC) &#8211; Complete Guide<\/h1>\n  <div class=\"bl-meta\">\n    <a href=\"https:\/\/diopter.ai\/blog\/author\/diopter-team\/\" class=\"bl-meta-author dbl-int\" style=\"text-decoration:none\">Diopter AI Team<\/a>\n    <span class=\"bl-meta-sep\">\/<\/span>\n    <span class=\"bl-meta-date\">Published June 29, 2026<\/span>\n    <span class=\"bl-meta-read\">17 min read<\/span>\n  <\/div>\n  <div class=\"bl-top-share\">\n    <span class=\"bl-top-share-label\">Share:<\/span>\n    <a href=\"https:\/\/www.linkedin.com\/shareArticle?mini=true&#038;url=https%3A%2F%2Fdiopter.ai%2Fblog%2Fbusiness-email-compromise%2F&#038;title=Business%20Email%20Compromise%20(BEC)%3A%20Complete%20Guide\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" class=\"bl-top-share-btn li\" title=\"Share on LinkedIn\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"currentColor\"><path d=\"M20.447 20.452h-3.554v-5.569c0-1.328-.027-3.037-1.852-3.037-1.853 0-2.136 1.445-2.136 2.939v5.667H9.351V9h3.414v1.561h.046c.477-.9 1.637-1.85 3.37-1.85 3.601 0 4.267 2.37 4.267 5.455v6.286zM5.337 7.433a2.062 2.062 0 0 1-2.063-2.065 2.064 2.064 0 1 1 2.063 2.065zm1.782 13.019H3.555V9h3.564v11.452zM22.225 0H1.771C.792 0 0 .774 0 1.729v20.542C0 23.227.792 24 1.771 24h20.451C23.2 24 24 23.227 24 22.271V1.729C24 .774 23.2 0 22.222 0h.003z\"><\/path><\/svg><\/a>\n    <a href=\"https:\/\/twitter.com\/intent\/tweet?text=Business%20Email%20Compromise%20(BEC)%3A%20Complete%20Guide&#038;url=https%3A%2F%2Fdiopter.ai%2Fblog%2Fbusiness-email-compromise%2F\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" class=\"bl-top-share-btn x\" title=\"Share on X\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"currentColor\"><path d=\"M18.244 2.25h3.308l-7.227 8.26 8.502 11.24H16.17l-5.214-6.817L4.99 21.75H1.68l7.73-8.835L1.254 2.25H8.08l4.713 6.231zm-1.161 17.52h1.833L7.084 4.126H5.117z\"><\/path><\/svg><\/a>\n    <button class=\"bl-top-share-btn cp\" onclick=\"dblCopyUrl(this,'https:\/\/diopter.ai\/blog\/business-email-compromise\/')\" title=\"Copy link\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\" stroke-linejoin=\"round\"><path d=\"M10 13a5 5 0 0 0 7.54.54l3-3a5 5 0 0 0-7.07-7.07l-1.72 1.71\"><\/path><path d=\"M14 11a5 5 0 0 0-7.54-.54l-3 3a5 5 0 0 0 7.07 7.07l1.71-1.71\"><\/path><\/svg><\/button>\n  <\/div>\n  <div class=\"bl-toc-compact\" id=\"becTocAccordion\">\n    <div class=\"bl-toc-compact-trigger\" onclick=\"this.closest('.bl-toc-compact').classList.toggle('open')\">\n      <div class=\"bl-toc-compact-label\">In this article<\/div>\n      <span class=\"bl-toc-compact-arrow\">\u25bc<\/span>\n    <\/div>\n    <div class=\"bl-toc-compact-body\">\n      <div class=\"bl-toc-compact-grid\">\n        <a href=\"#what-is-bec\"><span class=\"n\">01<\/span>What is BEC?<\/a><a href=\"#how-bec-works\"><span class=\"n\">02<\/span>How BEC attacks work<\/a><a href=\"#types-of-bec\"><span class=\"n\">03<\/span>Types of BEC scam<\/a><a href=\"#bec-indicators\"><span class=\"n\">04<\/span>Key indicators<\/a><a href=\"#why-email-security-misses\"><span class=\"n\">05<\/span>Why email security misses BEC<\/a><a href=\"#business-impact\"><span class=\"n\">06<\/span>Business impact<\/a><a href=\"#real-world-cases\"><span class=\"n\">07<\/span>Real-world cases<\/a><a href=\"#bec-vs-eac-phishing\"><span class=\"n\">08<\/span>BEC vs EAC vs Phishing<\/a><a href=\"#ai-deepfakes-bec\"><span class=\"n\">09<\/span>AI &amp; deepfakes in BEC<\/a><a href=\"#layered-defence\"><span class=\"n\">10<\/span>Building a layered defence<\/a><a href=\"#diopter\"><span class=\"n\">11<\/span>How Diopter helps<\/a><a href=\"#faqs\"><span class=\"n\">12<\/span>FAQs<\/a>\n      <\/div>\n    <\/div>\n  <\/div>\n<\/div>\n\n<!-- PAGE LAYOUT -->\n<div class=\"bl-page-wrap\">\n\n<!-- LEFT SIDEBAR -->\n<div class=\"bl-page-side\" id=\"becSidebar\">\n  <div class=\"bl-sidebar-toc-label\">In this article<\/div>\n  <nav id=\"becSidebarNav\">\n    <a href=\"#what-is-bec\" class=\"bl-sidebar-link\" data-section=\"what-is-bec\">What is BEC?<\/a>\n    <a href=\"#how-bec-works\" class=\"bl-sidebar-link\" data-section=\"how-bec-works\">How BEC works<\/a>\n    <a href=\"#types-of-bec\" class=\"bl-sidebar-link\" data-section=\"types-of-bec\">Types of BEC<\/a>\n    <a href=\"#bec-indicators\" class=\"bl-sidebar-link\" data-section=\"bec-indicators\">Key indicators<\/a>\n    <a href=\"#why-email-security-misses\" class=\"bl-sidebar-link\" data-section=\"why-email-security-misses\">Why email security misses<\/a>\n    <a href=\"#business-impact\" class=\"bl-sidebar-link\" data-section=\"business-impact\">Business impact<\/a>\n    <a href=\"#real-world-cases\" class=\"bl-sidebar-link\" data-section=\"real-world-cases\">Real-world cases<\/a>\n    <a href=\"#bec-vs-eac-phishing\" class=\"bl-sidebar-link\" data-section=\"bec-vs-eac-phishing\">BEC vs EAC vs Phishing<\/a>\n    <a href=\"#ai-deepfakes-bec\" class=\"bl-sidebar-link\" data-section=\"ai-deepfakes-bec\">AI &amp; deepfakes<\/a>\n    <a href=\"#layered-defence\" class=\"bl-sidebar-link\" data-section=\"layered-defence\">Layered defence<\/a>\n    <a href=\"#diopter\" class=\"bl-sidebar-link\" data-section=\"diopter\">How Diopter helps<\/a>\n    <a href=\"#faqs\" class=\"bl-sidebar-link\" data-section=\"faqs\">FAQs<\/a>\n  <\/nav>\n  <div class=\"bl-sidebar-cta\">\n    <div class=\"bl-sidebar-cta-label\">Diopter AI<\/div>\n    <p>Identify manipulated audio, video, and images in real time.<\/p>\n    <a href=\"https:\/\/diopter.ai\/deepfake-detector\" class=\"dbl-int\">Get the verdict in 60 seconds \u2192<\/a>\n  <\/div>\n  <\/div>\n\n<!-- MAIN CONTENT -->\n<div class=\"bl-page-main\">\n\n<!-- INTRO -->\n<div class=\"bl-intro\">\n  <p>Business email compromise (BEC) is one of the most financially damaging forms of <a href=\"https:\/\/diopter.ai\/blog\/what-is-social-engineering\/\" class=\"dbl-int\">social engineering<\/a> targeting organizations today. Unlike malware or ransomware, BEC attacks require no technical exploits and often rely on deceptive emails. A convincing email, a sense of urgency and the right impersonation may influence employees into sharing sensitive information or authorizing financial transactions.<\/p>\n  <div class=\"bl-summary\">\n    <div class=\"bl-summary-kt-label\">Key Takeaways<\/div>\n    <ul>\n      <li>BEC is a <a href=\"https:\/\/diopter.ai\/blog\/what-is-social-engineering\/\" class=\"dbl-int\">social engineering<\/a> attack that manipulates people through trust, which makes it one of the most financially damaging threats businesses face today.<\/li>\n      <li>Attackers impersonate executives, vendors and legal counsel to redirect payments or steal sensitive data.<\/li>\n      <li>Traditional email security tools often miss BEC attacks because they typically contain no malicious links, attachments, or code.<\/li>\n      <li>AI and deepfake technology are now being used to clone voices and generate fake video, extending BEC beyond email into voice and video channels.<\/li>\n      <li>A layered defense combining employee training, strict payment controls and identity verification technology offers the strongest protection against BEC.<\/li>\n    <\/ul>\n  <\/div>\n  <div class=\"bl-stat\" id=\"stat-market\">\n    <button class=\"bec-stat-share-btn\" onclick=\"becShareStat(this,'https:\/\/diopter.ai\/blog\/business-email-compromise\/#stat-market')\" title=\"Share stat\"><svg width=\"11\" height=\"11\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.2\" stroke-linecap=\"round\" stroke-linejoin=\"round\"><circle cx=\"18\" cy=\"5\" r=\"3\"><\/circle><circle cx=\"6\" cy=\"12\" r=\"3\"><\/circle><circle cx=\"18\" cy=\"19\" r=\"3\"><\/circle><line x1=\"8.59\" y1=\"13.51\" x2=\"15.42\" y2=\"17.49\"><\/line><line x1=\"15.41\" y1=\"6.51\" x2=\"8.59\" y2=\"10.49\"><\/line><\/svg> Share<\/button>\n    <button class=\"bl-copy-btn\" onclick=\"dblCopyStat(this)\" title=\"Copy stat\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\" stroke-linejoin=\"round\"><rect x=\"9\" y=\"9\" width=\"13\" height=\"13\" rx=\"2\"><\/rect><path d=\"M5 15H4a2 2 0 0 1-2-2V4a2 2 0 0 1 2-2h9a2 2 0 0 1 2 2v1\"><\/path><\/svg><\/button>\n    <p>The growing impact of these attacks is reflected in the rapid expansion of the BEC security market. The global BEC market is expected to reach $5.41 billion by 2030, growing at a CAGR of 21.6% as organizations invest in stronger detection and prevention capabilities due to rising risks.<\/p>\n  <\/div>\n<\/div>\n\n<!-- BODY -->\n<div class=\"bl-body\">\n<article class=\"bl-content\">\n\n<hr class=\"bl-divider\">\n<h2 id=\"what-is-bec\">What Is Business Email Compromise (BEC)?<\/h2>\n<p>Business email compromise is a targeted <a href=\"https:\/\/diopter.ai\/blog\/what-is-social-engineering\/\" class=\"dbl-int\">social engineering attack<\/a> in which a threat actor manipulates someone inside an organization, typically through email, into approving fraudulent payments or sharing sensitive business information.<\/p>\n<p>Unlike phishing campaigns that cast a wide net, a BEC attack is deliberate and highly personalized. Attackers often research an organization before launching an attack. They identify key decision-makers, employees who handle vendor payments, etc., and who are likely to act quickly on an executive\u2019s request.<\/p>\n<p>BEC attacks are particularly dangerous because they do not contain malware, malicious links, or dangerous attachments that traditional email security filters might catch. Emails used in a BEC attack typically contain nothing but text, which makes them indistinguishable from routine business communication.<\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"how-bec-works\">How Does a Business Email Compromise Attack Work?<\/h2>\n<p>The BEC attack process explains how the attacks unfold in a series of calculated steps designed to exploit trust and urgency within organizations.<\/p>\n<div class=\"bl-attack-flow-scroll\">\n<div class=\"bl-attack-flow\">\n  <div class=\"bl-attack-flow-step\">Reconnaissance<br><small style=\"font-weight:400;opacity:.7\">Research target org &amp; hierarchy<\/small><\/div>\n  <div class=\"bl-attack-flow-arr\">\u25b6<\/div>\n  <div class=\"bl-attack-flow-step\">Impersonation<br><small style=\"font-weight:400;opacity:.7\">Spoof or hijack trusted email<\/small><\/div>\n  <div class=\"bl-attack-flow-arr\">\u25b6<\/div>\n  <div class=\"bl-attack-flow-step\">Trust-Building<br><small style=\"font-weight:400;opacity:.7\">Insert into existing thread<\/small><\/div>\n  <div class=\"bl-attack-flow-arr\">\u25b6<\/div>\n  <div class=\"bl-attack-flow-step\">Fraudulent Request<br><small style=\"font-weight:400;opacity:.7\">Urgent wire or data request<\/small><\/div>\n  <div class=\"bl-attack-flow-arr\">\u25b6<\/div>\n  <div class=\"bl-attack-flow-step\">Funds Stolen<br><small style=\"font-weight:400;opacity:.7\">Redirected to attacker account<\/small><\/div>\n<\/div>\n<\/div>\n<ul>\n  <li><strong>Reconnaissance:<\/strong> The attacker researches the target organization, studying LinkedIn profiles, company websites and vendor relationships to identify who controls payments and the hierarchy.<\/li>\n  <li><strong>Impersonation:<\/strong> Armed with that information, they either spoof a trusted email address or hijack a real account through credential theft, making the message appear legitimate.<\/li>\n  <li><strong>Trust-Building:<\/strong> Some BEC attacks take place in the middle of an already-existing email thread, inserting the attacker into an ongoing conversation to add credibility before the fraudulent request is made.<\/li>\n  <li><strong>Fraudulent Request and Theft:<\/strong> The attacker sends an urgent request, typically a wire transfer, a change in vendor banking details or payroll data. If the receiver agrees, the funds are redirected to an account owned by the attacker.<\/li>\n<\/ul>\n<p>For example, an accounts payable employee receives what looks like a message from their CFO, asking for an urgent $47,000 wire to a new vendor. The name, tone, and email details all appear legitimate, and hence, the wire transfer is processed. However, it is later discovered that the CFO never sent the email.<\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"types-of-bec\">Types of BEC Email Scam<\/h2>\n<p>In BEC fraud attackers use several variations depending on who they are targeting and what they want to extract.<\/p>\n\n<h3>CEO Fraud<\/h3>\n<p>Attackers impersonate a senior executive and send urgent payment requests to finance employees, often referencing a real vendor or project to appear credible.<\/p>\n<p><em>Example: \u201cI need a wire of $35,000 sent today. Do not discuss it with anyone.\u201d<\/em><\/p>\n\n<h3>Fake Invoice Scam<\/h3>\n<p>The attacker poses as a familiar vendor and sends a professional-looking invoice, but with their own bank details swapped in. Because the email carries no malware or suspicious links, it passes right through most email security tools.<\/p>\n<p><em>Example: A supplier emails the accounts team saying their bank details have changed and asks for future payments to go to a new account.<\/em><\/p>\n\n<h3>Account Compromise<\/h3>\n<p>The attacker breaks into a real email account using stolen login credentials. Because the message comes from a legitimate address, it is less likely to raise suspicion.<\/p>\n<p><em>Example: A vendor\u2019s compromised account is used to ask a client to update their payment details before the next invoice is due.<\/em><\/p>\n\n<h3>Attorney Impersonation<\/h3>\n<p>The attacker pretends to be a lawyer involved in a sensitive business matter, such as a merger or legal settlement. They create urgency and confidentiality to prevent the target from verification.<\/p>\n<p><em>Example: \u201cI\u2019m legal counsel overseeing the acquisition. Please arrange the escrow transfer before the close of business. This is strictly confidential.\u201d<\/em><\/p>\n\n<h3>Data Theft<\/h3>\n<p>Some BEC frauds focus on stealing sensitive organization or employee data. Typically, HR and payroll teams are their frequent targets.<\/p>\n<p><em>Example: An attacker posing as the CEO emails HR requesting a full list of employee W-2 forms for identity fraud or resale on the dark web.<\/em><\/p>\n\n<h3>Vendor Email Compromise<\/h3>\n<p>The attacker gains access to a supplier\u2019s email account or creates a look-alike domain that resembles theirs. Then they join an active payment conversation and request a change in bank account details. Since the email appears to come from a trusted vendor, it may not be questioned.<\/p>\n<p><em>Example: A trusted vendor\u2019s account is used to send the accounts payable team updated banking details just before a large payment is scheduled.<\/em><\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"bec-indicators\">Key Indicators of BEC Attack<\/h2>\n<p>BEC attacks are designed to look ordinary. Recognizing the signs of a BEC attack can make the difference between stopping the fraud in time and unknowingly transferring funds.<\/p>\n<ul>\n  <li><strong>Look-Alike Domains:<\/strong> The sender\u2019s email address may look legitimate at first, but a closer look may show a swapped letter, an added hyphen, or a slightly different domain extension. These small details are easy to miss in a busy inbox.<\/li>\n  <li><strong>Unexpected Payment Requests:<\/strong> If a payment request shows up outside the normal billing cycle, involves an unfamiliar account, or feels out of place given your usual process, pause before acting on it.<\/li>\n  <li><strong>Sudden Bank Account Changes:<\/strong> Vendors generally do not change their banking details over email without a phone call or some kind of formal confirmation. A standalone email requesting a payment redirect is worth verifying independently.<\/li>\n  <li><strong>Bypassed Approval Workflows:<\/strong> Watch for messages that claim approvals have already been given and ask you to skip the usual steps. Scammers rely on employees being reluctant to question authority.<\/li>\n  <li><strong>Secrecy Requests:<\/strong> A legitimate manager or executive will not ask you to hide a financial transaction from your team. When an email asks you to keep something confidential, it should be treated as a warning sign.<\/li>\n  <li><strong>Unusual Urgency:<\/strong> Rushed requests are designed to limit careful review. If the pressure to act immediately is stronger than the explanation for why, treat it as suspicious.<\/li>\n  <li><strong>Changed Writing Style:<\/strong> People have consistent communication habits. If an email from a known colleague or executive reads differently than usual, whether in tone, phrasing, or level of detail, it may not actually be from them.<\/li>\n  <li><strong>Unverifiable Voice or Video Approvals:<\/strong> Attackers now use AI tools to clone voices and generate convincing videos. If someone seems to authorize a payment via a call or video but cannot be contacted to confirm, it should not be acted upon.<\/li>\n<\/ul>\n\n<div class=\"bl-icta\">\n  <p><strong>Identify manipulated audio, video, and images in real time.<\/strong>Diopter\u2019s deepfake detection tool flags synthetic media before it influences a business decision.<\/p>\n  <a href=\"https:\/\/diopter.ai\/deepfake-detector\" class=\"dbl-int\" style=\"color:#13162F!important;text-decoration:none!important\">Get the verdict in 60 seconds \u2192<\/a>\n<\/div>\n\n<hr class=\"bl-divider\">\n<h2 id=\"why-email-security-misses\">Why Traditional Email Security Often Misses BEC<\/h2>\n<p>BEC detection challenges arise because these attacks often lack traditional warning signs. BEC emails usually contain no malware, malicious links, or suspicious attachments that email security filters are designed to detect. Instead, they rely on plain text messages, allowing them to blend easily into normal business communication and making detection significantly more difficult.<\/p>\n<ul>\n  <li><strong>No malicious payload:<\/strong> A BEC email usually contains only a few lines of plain text, with no malware or attachments for antivirus solutions or secure email gateways to detect.<\/li>\n  <li><strong>Legitimate account use:<\/strong> When an attacker uses a compromised real email account, the message passes SPF, DKIM, and DMARC checks. From a technical standpoint, the email looks completely valid.<\/li>\n  <li><strong>Low send volume:<\/strong> Unlike mass phishing campaigns, BEC attacks target one or two people at a time. Traditional secure email gateways struggle to detect well-constructed BEC campaigns because of their low volume, lack of obviously malicious content, and a seemingly legitimate source.<\/li>\n  <li><strong>Social engineering over code:<\/strong> BEC relies on human psychology, not technical exploits. The threat lives in the context and intent of the message, not in any file or link.<\/li>\n  <li><strong>AI-generated communication:<\/strong> Attackers now use AI tools to generate emails that closely mimic a target\u2019s writing style, tone and vocabulary, making them even harder to distinguish from genuine messages. In 2025, businesses reported losses of over $30 million to BEC scams involving AI frauds.<\/li>\n<\/ul>\n\n<hr class=\"bl-divider\">\n<h2 id=\"business-impact\">Business Impact of BEC Attacks<\/h2>\n<p>Business email fraud carries consequences that extend well beyond the wire transfer.<\/p>\n<div class=\"bl-stat\" id=\"stat-fbi\">\n  <button class=\"bec-stat-share-btn\" onclick=\"becShareStat(this,'https:\/\/diopter.ai\/blog\/business-email-compromise\/#stat-fbi')\" title=\"Share stat\"><svg width=\"11\" height=\"11\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.2\" stroke-linecap=\"round\" stroke-linejoin=\"round\"><circle cx=\"18\" cy=\"5\" r=\"3\"><\/circle><circle cx=\"6\" cy=\"12\" r=\"3\"><\/circle><circle cx=\"18\" cy=\"19\" r=\"3\"><\/circle><line x1=\"8.59\" y1=\"13.51\" x2=\"15.42\" y2=\"17.49\"><\/line><line x1=\"15.41\" y1=\"6.51\" x2=\"8.59\" y2=\"10.49\"><\/line><\/svg> Share<\/button>\n  <button class=\"bl-copy-btn\" onclick=\"dblCopyStat(this)\" title=\"Copy stat\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\" stroke-linejoin=\"round\"><rect x=\"9\" y=\"9\" width=\"13\" height=\"13\" rx=\"2\"><\/rect><path d=\"M5 15H4a2 2 0 0 1-2-2V4a2 2 0 0 1 2-2h9a2 2 0 0 1 2 2v1\"><\/path><\/svg><\/button>\n  <p>The FBI IC3 2025 Annual Report found $3.04 billion in losses from 24,768 complaints, which makes BEC the second most expensive US cybercrime.<\/p>\n<\/div>\n<ul>\n  <li><strong>Financial loss:<\/strong> Wire transfers and fraudulent payments are often irreversible. One successful BEC attack may drain millions of dollars in a matter of minutes, with little chance of full recovery.<\/li>\n  <li><strong>Operational disruption:<\/strong> After an attack is discovered, normal business operations stall. Finance teams are locked down, vendor relationships are paused and IT teams spend days or weeks investigating what happened and how.<\/li>\n  <li><strong>Reputational damage:<\/strong> Clients, partners and vendors who are involved in the fraud, even indirectly, lose confidence in the organization. Rebuilding that trust takes far longer than recovering the funds.<\/li>\n  <li><strong>Compliance and legal exposure:<\/strong> Organizations in regulated industries face scrutiny from regulators if a BEC attack results in a data breach or a failure in financial controls. This may lead to audits, penalties and reporting.<\/li>\n  <li><strong>Recovery costs:<\/strong> Forensic investigations, legal fees, staff overtime, and potential cyber insurance claims all add up quickly after a BEC incident, compounding the original financial loss.<\/li>\n<\/ul>\n\n<hr class=\"bl-divider\">\n<h2 id=\"real-world-cases\">Real-World Cases of Business Email Compromise Attempt<\/h2>\n<p>BEC scams do not only target large enterprises. The following cases show how the attack pattern plays out across different industries and organization sizes, and what made each one succeed.<\/p>\n\n<div class=\"bl-case-study\">\n  <div class=\"bl-case-study-eyebrow\">Case study<\/div>\n  <h4>Ubiquiti Networks \u2014 $46.7 million<\/h4>\n  <p>In one of the most well-known BEC frauds, Ubiquiti Networks lost $46.7 million after attackers impersonated a trusted vendor and sent fraudulent payment requests to the finance department. The emails appeared legitimate and referenced real internal processes, which is why they were not questioned.<\/p>\n<\/div>\n\n<div class=\"bl-case-study\">\n  <div class=\"bl-case-study-eyebrow\">Case study<\/div>\n  <h4>Toyota Subsidiary \u2014 $37 million<\/h4>\n  <p>Automobile giant Toyota\u2019s subsidiary lost $37 million when a third party posing as a business partner emailed the finance team requesting funds be transferred to a specific account. The attack worked because the request appeared authentic, using legitimate-looking communication details.<\/p>\n<\/div>\n\n<div class=\"bl-case-study\">\n  <div class=\"bl-case-study-eyebrow\">Case study<\/div>\n  <h4>Facebook &amp; Google \u2014 $121 million combined<\/h4>\n  <p>Technology corporations Facebook and Google were defrauded of over $121 million by an attacker who posed as a legitimate hardware vendor and submitted fake invoices over an extended period. The scheme succeeded because the invoices closely matched the companies\u2019 existing payment processes.<\/p>\n<\/div>\n\n<p>What these BEC scam examples share is a common attack pattern: research a real relationship, impersonate a trusted party, make a request that fits the context and introduce just enough urgency to discourage a second look.<\/p>\n\n<div class=\"bl-icta\">\n  <p><strong>See how Diopter strengthens identity and payment verification in real time.<\/strong>Explore how signals are analysed to flag suspicious transactions and help security teams take confident, immediate action.<\/p>\n  <a href=\"https:\/\/diopter.ai\/solutions\/identity-payment-verification\" class=\"dbl-int\" style=\"color:#13162F!important;text-decoration:none!important\">Learn more \u2192<\/a>\n<\/div>\n\n<hr class=\"bl-divider\">\n<h2 id=\"bec-vs-eac-phishing\">BEC vs EAC (Email Account Compromise) vs Phishing<\/h2>\n<p>These three threats are often mistaken for one another but they operate differently and require different responses. The table below breaks down the key distinctions.<\/p>\n<div class=\"bl-table-wrap\">\n  <table class=\"bl-table\">\n    <thead>\n      <tr>\n        <th><\/th>\n        <th>BEC<\/th>\n        <th>EAC<\/th>\n        <th>Phishing<\/th>\n      <\/tr>\n    <\/thead>\n    <tbody>\n      <tr>\n        <td>Objective<\/td>\n        <td>Financial fraud or data theft via impersonation<\/td>\n        <td>Gain persistent access to a real email account<\/td>\n        <td>Steal credentials, install malware, or harvest data<\/td>\n      <\/tr>\n      <tr>\n        <td>Attack Method<\/td>\n        <td>Email spoofing, domain impersonation, or compromised accounts<\/td>\n        <td>Credential theft, MFA bypass, session hijacking<\/td>\n        <td>Mass fake emails, malicious links, or harmful attachments<\/td>\n      <\/tr>\n      <tr>\n        <td>Account Access Required<\/td>\n        <td>Not always; spoofed identity often sufficient<\/td>\n        <td>Yes, attacker takes over a real account<\/td>\n        <td>No; attacker sends from their own fraudulent account<\/td>\n      <\/tr>\n      <tr>\n        <td>Typical Target<\/td>\n        <td>Executives, finance teams, HR, and accounts payable<\/td>\n        <td>Individuals with high-value email access<\/td>\n        <td>Broad groups; anyone in an organization<\/td>\n      <\/tr>\n      <tr>\n        <td>Malware Use<\/td>\n        <td>Rarely<\/td>\n        <td>Rarely<\/td>\n        <td>Common<\/td>\n      <\/tr>\n      <tr>\n        <td>Financial Fraud Focus<\/td>\n        <td>High<\/td>\n        <td>High, often a precursor to BEC<\/td>\n        <td>Moderate<\/td>\n      <\/tr>\n      <tr>\n        <td>Detection Difficulty<\/td>\n        <td>High; no malicious payload to flag<\/td>\n        <td>High; traffic comes from a legitimate account<\/td>\n        <td>Moderate; filters can catch links and attachments<\/td>\n      <\/tr>\n      <tr>\n        <td>Deepfake Risk<\/td>\n        <td>High and growing<\/td>\n        <td>Moderate<\/td>\n        <td>Low<\/td>\n      <\/tr>\n    <\/tbody>\n  <\/table>\n<\/div>\n<p>Phishing attacks are often broader in scope, targeting dozens or hundreds of accounts at once, while a BEC attack is highly targeted with a specific end goal in mind. EAC sits in between: it is frequently a stepping stone that gives attackers the legitimate account access they need to launch a more convincing BEC email.<\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"ai-deepfakes-bec\">How AI and Deepfakes Are Changing Business Email Compromise<\/h2>\n<p>The mechanics of a BEC attack have always relied on convincing impersonation. AI has made it significantly easier and harder to detect.<\/p>\n<ul>\n  <li><strong>AI-written messages:<\/strong> Attackers now use large language models to generate BEC emails that closely mimic a target\u2019s writing style, vocabulary, and tone. These messages are well-structured, contextually accurate, and virtually free of the grammatical errors that once helped employees spot fraud.<\/li>\n  <li><strong>Voice cloning scams:<\/strong> Deepfake audio tools can replicate a known executive\u2019s voice from as little as a few seconds of public audio. Attackers use these cloned voices to place calls or send voice notes that appear to authorize wire transfers. The employee hears a familiar voice and complies.<\/li>\n  <li><strong>Synthetic video in executive impersonation:<\/strong> AI-generated video is now being used in live video calls to impersonate senior leaders. By replicating a person\u2019s appearance, facial expressions and mannerisms, attackers can make fraudulent requests appear more credible.<\/li>\n  <li><strong>Multi-channel fraud:<\/strong> Modern deepfake BEC attacks rarely rely on email alone. Attackers send a fake BEC email and then follow up with a voice call or video message to make the request stronger and make people forget to check through a different route.<\/li>\n<\/ul>\n<p>Modern BEC defense now includes <a href=\"https:\/\/diopter.ai\/deepfake-detector\" class=\"dbl-int\">deepfake detection tools<\/a>, out-of-band verification protocols and behavioral anomaly monitoring. They can flag requests that deviate from established patterns, even when the sender appears legitimate.<\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"layered-defence\">Building a Layered Defence Against BEC<\/h2>\n<p>No single control stops a determined BEC attack. The most effective approach combines awareness, process discipline and the right technology working together.<\/p>\n\n<h3>People<\/h3>\n<p>Your employees are both the primary target and the first line of defence. Regular security awareness training should cover how to recognize a BEC email, what <a href=\"https:\/\/diopter.ai\/blog\/what-is-social-engineering\/\" class=\"dbl-int\">social engineering<\/a> looks like in practice and what to do when a request feels off.<\/p>\n<p>Training should go beyond theory: use realistic scenarios, simulated BEC attempts and short refreshers that keep vigilance high. Staff handling payments or sensitive data should receive more frequent and role-specific training, since they are the most likely targets of executive impersonation and vendor payment fraud.<\/p>\n\n<h3>Process<\/h3>\n<p>Strong financial controls can help prevent fraud even if a suspicious email reaches an employee. Require approval from at least two people for wire transfers and payment changes above a set amount.<\/p>\n<p>Make it clear that changes to suppliers\u2019 bank accounts must be confirmed by a known phone number, not by the email chain that asks for the change. Make sure that you have to call backs before you can handle any high-value or unusual deals. These steps do not slow business down significantly, but they close the gaps that BEC scams depend on.<\/p>\n\n<h3>Technology<\/h3>\n<p>Email authentication protocols, including SPF, DKIM and DMARC, are foundational controls that help prevent domain spoofing and unauthorized email impersonation. Multi-factor authentication on all email accounts makes it significantly harder for attackers to take over real accounts for use in BEC campaigns.<\/p>\n<p>Beyond these basics, AI-powered monitoring tools can detect anomalies in email behavior, such as unusual send patterns, sudden changes in communication style or requests that fall outside normal business workflows and flag them before a fraudulent transaction is completed.<\/p>\n\n<hr class=\"bl-divider\">\n<h2 id=\"diopter\">How Diopter Helps Detect Modern BEC Attacks<\/h2>\n<p>A BEC attack rarely stays within a single channel. An attacker may start with a spoofed BEC email, follow up with a cloned voice call and close with a deepfake video to push through a fraudulent approval. By the time the request reaches someone who can authorize it, multiple layers of impersonation have already been applied.<\/p>\n<p>This is where Diopter fits into a layered defense strategy. Email authentication and staff training are two examples of front-end applications that handle impersonation. Diopter focuses on the channels where impersonation is most difficult to detect, such as live voice calls and video meetings.<\/p>\n<p>On every critical call, Diopter covers four areas:<\/p>\n<ul>\n  <li><strong>Identity and payment verification:<\/strong> Confirming who is on the call and whether payment instructions are legitimate.<\/li>\n  <li><strong>Conversational manipulation detection:<\/strong> Flagging social engineering patterns such as urgency, authority pressure and isolation tactics.<\/li>\n  <li><strong>Deepfake detection:<\/strong> Scoring audio and video for signs of synthetic or cloned media in real time.<\/li>\n  <li><strong>Policy alignment:<\/strong> Flagging requests that bypass normal approval workflows or established verification steps.<\/li>\n<\/ul>\n<p>For teams managing vendor payments, executive approvals, or IT help desk access, Diopter adds a critical verification layer that traditional BEC cybersecurity controls may lack.<\/p>\n\n<h2 id=\"conclusion\">Conclusion<\/h2>\n<p>Business email compromise remains one of the most financially damaging threats facing organizations today, not because it is technically complex, but because it is built entirely around trust.<\/p>\n<p>As AI-enabled impersonation and deepfake BEC extend the attack surface beyond email into voice and video channels, traditional security controls are no longer sufficient on their own. The best way for businesses to lower their risk is to use a multi-layered approach that includes training employees, strict process controls and using technology.<\/p>\n<p>At Diopter, we help organizations strengthen this last layer of defense by focusing on the behavioral and contextual signals behind BEC attacks. By adding real-time identity and intent verification into existing workflows, Diopter helps security teams reduce the risk of fraudulent transactions.<\/p>\n\n<div class=\"bl-bcta\">\n  <h2>Stop BEC before it reaches your approvers.<\/h2>\n  <p>Diopter scores live calls and video in real time, flagging deepfakes and social engineering patterns before a transaction is authorized.<\/p>\n  <a href=\"https:\/\/diopter.ai\/contact\">See how it works \u2192<\/a>\n<\/div>\n\n<hr class=\"bl-divider\">\n<h2 id=\"faqs\">FAQs<\/h2>\n<div class=\"bl-faq\">\n  <details>\n    <summary>What should you do if your business experiences a BEC attack?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">Immediately halt any pending transactions, notify your bank to attempt a recall, report the incident to the FBI IC3, and involve your IT or security team to identify how the BEC attack occurred and whether any accounts were compromised.<\/div>\n  <\/details>\n  <details>\n    <summary>Can small businesses become victims of BEC?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">Absolutely. Small businesses are actually among the most targeted. They are easier to trick because they often have fewer security controls, smaller teams handling multiple responsibilities, and less formal verification processes for financial transactions.<\/div>\n  <\/details>\n  <details>\n    <summary>Can deepfake technology be used in BEC attacks?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">Yes, and it is becoming more common. Attackers now pair a spoofed BEC email with an AI-generated voice call or video to make the request feel even more legitimate. When an employee hears a familiar voice or sees a recognizable face, they are far less likely to question it.<\/div>\n  <\/details>\n  <details>\n    <summary>Can AI detect Business Email Compromise in real time?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">Yes. AI-powered tools can analyze communication patterns, flag social engineering language and detect synthetic media during live calls. This makes real-time detection of a BEC attack possible even when the email itself contains no obvious red flags.<\/div>\n  <\/details>\n  <details>\n    <summary>What is vendor email compromise?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">It is a type of BEC fraud where attackers take over or imitate a supplier\u2019s email account to redirect payments to themselves. Since the message appears to come from someone the business already knows and works with, it rarely raises suspicion until the money is gone.<\/div>\n  <\/details>\n  <details>\n    <summary>How can MSPs help clients prevent BEC?<span class=\"fq-icon\"><svg width=\"9\" height=\"9\" viewBox=\"0 0 10 10\" fill=\"none\"><path d=\"M5 1v8M1 5h8\" stroke=\"#6B7A9C\" stroke-width=\"1.5\" stroke-linecap=\"round\"><\/path><\/svg><\/span><\/summary>\n    <div class=\"fq-ans\">MSPs are well-positioned to build strong defenses for their clients. This includes setting up email authentication, rolling out multi-factor authentication, running security awareness training and deploying tools that catch suspicious BEC email activity. They can also help put clear payment verification policies in place, so employees know exactly what steps to follow before authorizing any transfer.<\/div>\n  <\/details>\n<\/div>\n\n<!-- TOOLS WIDGET -->\n<div class=\"bl-dw\">\n  <div class=\"bl-dw-header\">\n    <div class=\"bl-dw-hd-left\"><span class=\"bl-dw-dot\"><\/span><span class=\"bl-dw-title\">Explore Diopter<\/span><\/div>\n    <span class=\"bl-dw-sub\">Detect AI-driven fraud before it costs you<\/span>\n  <\/div>\n  <div class=\"bl-dw-body\">\n    <div>\n      <div class=\"bl-dw-section-label\">Tools &amp; Calculators<\/div>\n      <div class=\"bl-dw-row\">\n        <a href=\"https:\/\/diopter.ai\/calculators\/ai-wire-fraud-calculator\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-c\">\u25b3<\/span>\n          <span class=\"bl-dw-text\">AI Wire Fraud Calculator<\/span>\n        <\/a><a href=\"https:\/\/diopter.ai\/calculators\/executive-impersonation-risk-calculator\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-c\">\u25b3<\/span>\n          <span class=\"bl-dw-text\">Executive Impersonation Risk<\/span>\n        <\/a><a href=\"https:\/\/diopter.ai\/calculators\/deepfake-hiring-fraud-calculator\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-c\">\u25b3<\/span>\n          <span class=\"bl-dw-text\">Deepfake Hiring Fraud Calculator<\/span>\n        <\/a><a href=\"https:\/\/diopter.ai\/deepfake-detector\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-c\">\u25b3<\/span>\n          <span class=\"bl-dw-text\">Deepfake Detector<\/span>\n        <\/a><\/div>\n    <\/div>\n    <div class=\"bl-dw-divider\"><\/div>\n    <div>\n      <div class=\"bl-dw-section-label\">Solutions<\/div>\n      <div class=\"bl-dw-row\">\n        <a href=\"https:\/\/diopter.ai\/solutions\/identity-payment-verification\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-s\">\u25b6<\/span>\n          <span class=\"bl-dw-text\">Payment &amp; Identity Verification<\/span>\n        <\/a><a href=\"https:\/\/diopter.ai\/solutions\/help-desk-defense\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-s\">\u25b6<\/span>\n          <span class=\"bl-dw-text\">Help Desk Defense<\/span>\n        <\/a><a href=\"https:\/\/diopter.ai\/solutions\/executive-impersonation\" class=\"bl-dw-item dbl-int\">\n          <span class=\"bl-dw-ico bl-dw-ico-s\">\u25b6<\/span>\n          <span class=\"bl-dw-text\">Executive Impersonation<\/span>\n        <\/a><\/div>\n    <\/div>\n  <\/div>\n  <div class=\"bl-dw-footer\">\n    <a href=\"https:\/\/diopter.ai\/solutions\" class=\"dbl-int\">View all solutions \u2192<\/a>\n    <a href=\"https:\/\/diopter.ai\/contact\" class=\"dbl-int\">Book a walkthrough \u2192<\/a>\n  <\/div>\n<\/div>\n\n<!-- SHARE BAR -->\n<div class=\"bl-share-bar\">\n  <span class=\"bl-share-bar-label\">Share this article<\/span>\n  <div class=\"bl-share-bar-btns\"><a href=\"https:\/\/www.linkedin.com\/shareArticle?mini=true&amp;url=https%3A%2F%2Fdiopter.ai%2Fblog%2Fbusiness-email-compromise%2F&amp;title=Business%20Email%20Compromise%20(BEC)%3A%20Complete%20Guide\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" class=\"bl-share-bar-btn bl-share-bar-li\"><svg width=\"12\" height=\"12\" viewBox=\"0 0 24 24\" fill=\"currentColor\" style=\"flex-shrink:0\"><path d=\"M20.447 20.452h-3.554v-5.569c0-1.328-.027-3.037-1.852-3.037-1.853 0-2.136 1.445-2.136 2.939v5.667H9.351V9h3.414v1.561h.046c.477-.9 1.637-1.85 3.37-1.85 3.601 0 4.267 2.37 4.267 5.455v6.286zM5.337 7.433a2.062 2.062 0 0 1-2.063-2.065 2.064 2.064 0 1 1 2.063 2.065zm1.782 13.019H3.555V9h3.564v11.452zM22.225 0H1.771C.792 0 0 .774 0 1.729v20.542C0 23.227.792 24 1.771 24h20.451C23.2 24 24 23.227 24 22.271V1.729C24 .774 23.2 0 22.222 0h.003z\"><\/path><\/svg> LinkedIn<\/a><a href=\"https:\/\/twitter.com\/intent\/tweet?text=Business%20Email%20Compromise%20(BEC)%3A%20Complete%20Guide&#038;url=https%3A%2F%2Fdiopter.ai%2Fblog%2Fbusiness-email-compromise%2F\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" class=\"bl-share-bar-btn bl-share-bar-x\"><svg width=\"12\" height=\"12\" viewBox=\"0 0 24 24\" fill=\"currentColor\" style=\"flex-shrink:0\"><path d=\"M18.244 2.25h3.308l-7.227 8.26 8.502 11.24H16.17l-5.214-6.817L4.99 21.75H1.68l7.73-8.835L1.254 2.25H8.08l4.713 6.231zm-1.161 17.52h1.833L7.084 4.126H5.117z\"><\/path><\/svg> X<\/a><button class=\"bl-share-bar-btn bl-share-bar-copy\" id=\"becCopyBtn\" onclick=\"dblCopyUrl(this,'https:\/\/diopter.ai\/blog\/business-email-compromise\/')\"><svg width=\"13\" height=\"13\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\" stroke-linejoin=\"round\" style=\"flex-shrink:0\"><path d=\"M10 13a5 5 0 0 0 7.54.54l3-3a5 5 0 0 0-7.07-7.07l-1.72 1.71\"><\/path><path d=\"M14 11a5 5 0 0 0-7.54-.54l-3 3a5 5 0 0 0 7.07 7.07l1.71-1.71\"><\/path><\/svg> Copy link<\/button><\/div>\n<\/div>\n\n<!-- AUTHOR -->\n<div class=\"bl-author\">\n  <div class=\"bl-author-avatar\">DAI<\/div>\n  <div>\n    <a href=\"https:\/\/diopter.ai\/blog\/author\/diopter-team\/\" class=\"bl-author-name dbl-int\" style=\"text-decoration:none;display:block\">Diopter AI Team<\/a>\n    <div class=\"bl-author-role\">Threat Intelligence<\/div>\n    <p class=\"bl-author-bio\">The Diopter AI Team publishes research and analysis on deepfake fraud, synthetic media detection, and AI-enabled social engineering. The team works directly with security, fraud, and IT organizations to map real-world attack arcs.<\/p>\n  <\/div>\n<\/div>\n\n<\/article>\n<\/div><!-- end .bl-body -->\n<\/div><!-- end .bl-page-main -->\n<\/div><!-- end .bl-page-wrap -->\n<\/div><!-- end .dblog -->\n\n<script>\n\/\/ COPY LINK\nfunction dblCopyUrl(btn,url){\n  var orig=btn.innerHTML;\n  function done(){btn.classList.add('copied');setTimeout(function(){btn.innerHTML=orig;btn.classList.remove('copied');},2500);}\n  function fallback(){var ta=document.createElement('textarea');ta.value=url;document.body.appendChild(ta);ta.select();document.execCommand('copy');document.body.removeChild(ta);done();}\n  if(!(!navigator.clipboard||!window.isSecureContext)){navigator.clipboard.writeText(url).then(done,fallback);}else{fallback();}\n}\nfunction dblCopyStat(btn){\n  var p=btn.closest('.bl-stat')?btn.closest('.bl-stat').querySelector('p'):null;\n  var text=p?p.innerText:'';\n  btn.classList.add('copied');setTimeout(function(){btn.classList.remove('copied');},2000);\n  if(!(!navigator.clipboard||!window.isSecureContext)){navigator.clipboard.writeText(text).catch(function(){var ta=document.createElement('textarea');ta.value=text;document.body.appendChild(ta);ta.select();document.execCommand('copy');document.body.removeChild(ta);});}\n  else{var ta=document.createElement('textarea');ta.value=text;document.body.appendChild(ta);ta.select();document.execCommand('copy');document.body.removeChild(ta);}\n}\nfunction becShareStat(btn,url){\n  var orig=btn.innerHTML;\n  function show(){btn.textContent='Copied!';var toast=document.getElementById('becToast');if(toast){toast.style.display='block';setTimeout(function(){toast.style.display='none';},2200);}setTimeout(function(){btn.innerHTML=orig;},2200);}\n  function fallback(){var ta=document.createElement('textarea');ta.value=url;document.body.appendChild(ta);ta.select();document.execCommand('copy');document.body.removeChild(ta);show();}\n  if(!(!navigator.clipboard||!window.isSecureContext)){navigator.clipboard.writeText(url).then(show,fallback);}else{fallback();}\n}\n\/\/ SCROLL: PROGRESS + BACK-TOP + MOBILE TOC (sticks when inline TOC scrolls off) + SIDEBAR ACTIVE\n(function(){\n  var prog=document.getElementById('dblProgress'),backtop=document.getElementById('dblBackTop'),mobileToc=document.getElementById('dblTocMobile');\n  var inlineToc=document.getElementById('becTocAccordion');\n  var sideLinks=document.querySelectorAll('.bl-sidebar-link[data-section]');\n  var sections=[];\n  sideLinks.forEach(function(l){var el=document.getElementById(l.dataset.section);if(el)sections.push({el:el,link:l});});\n  window.addEventListener('scroll',function(){\n    var st=window.scrollY||document.documentElement.scrollTop;\n    var dh=document.documentElement.scrollHeight-window.innerHeight;\n    if(prog)prog.style.width=(dh>0?Math.min(100,(st\/dh)*100):0)+'%';\n    if(backtop){backtop.classList.toggle('visible',st>400);}\n    if(mobileToc){\n      var showMobile=inlineToc?inlineToc.getBoundingClientRect().bottom<0:st>180;\n      mobileToc.classList.toggle('visible',showMobile);\n    }\n    var active=null;\n    sections.forEach(function(s){if(s.el.getBoundingClientRect().top<=120)active=s;});\n    sideLinks.forEach(function(l){l.classList.remove('active');});\n    if(active)active.link.classList.add('active');\n  },{passive:true});\n  document.querySelectorAll('#dblTocMobile a').forEach(function(l){\n    l.addEventListener('click',function(){if(mobileToc)mobileToc.classList.remove('open');});\n  });\n})();\n<\/script>\n","protected":false},"excerpt":{"rendered":"<p>Business email compromise (BEC) is one of the most financially damaging cyberattacks organizations face today. Here&#8217;s how BEC scams work, real-world case studies, and how to protect your organization.<\/p>\n","protected":false},"author":2,"featured_media":537,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[20,22,19],"class_list":["post-274","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-business-email-compromise","tag-business-email-compromise","tag-social-engineering","tag-wire-fraud"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI<\/title>\n<meta name=\"description\" content=\"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/diopter.ai\/blog\/business-email-compromise\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI\" \/>\n<meta property=\"og:description\" content=\"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/diopter.ai\/blog\/business-email-compromise\/\" \/>\n<meta property=\"og:site_name\" content=\"Diopter AI\" \/>\n<meta property=\"article:published_time\" content=\"2026-06-30T07:34:59+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-07-20T14:02:56+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Diopter Team\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@DiopterAI\" \/>\n<meta name=\"twitter:site\" content=\"@DiopterAI\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Diopter Team\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"17 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/\"},\"author\":{\"name\":\"Diopter Team\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#\\\/schema\\\/person\\\/14e9df4ddc7c8f79f7e9b454c6b4f55d\"},\"headline\":\"Business Email Compromise (BEC): Complete Guide\",\"datePublished\":\"2026-06-30T07:34:59+00:00\",\"dateModified\":\"2026-07-20T14:02:56+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/\"},\"wordCount\":3593,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/diopter-social-share-v2.png\",\"keywords\":[\"Business Email Compromise\",\"Social Engineering\",\"Wire Fraud\"],\"articleSection\":[\"Business Email Compromise\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/\",\"name\":\"What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/diopter-social-share-v2.png\",\"datePublished\":\"2026-06-30T07:34:59+00:00\",\"dateModified\":\"2026-07-20T14:02:56+00:00\",\"description\":\"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#primaryimage\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/diopter-social-share-v2.png\",\"contentUrl\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/diopter-social-share-v2.png\",\"width\":1200,\"height\":630},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/business-email-compromise\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Business Email Compromise (BEC): Complete Guide\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/\",\"name\":\"Diopter AI\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#organization\",\"name\":\"Diopter AI\",\"alternateName\":\"Diopter\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/cropped-Logo-and-Wordmark-Lockup-Color.png\",\"contentUrl\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/05\\\/cropped-Logo-and-Wordmark-Lockup-Color.png\",\"width\":1187,\"height\":360,\"caption\":\"Diopter AI\"},\"image\":{\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/DiopterAI\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/diopter-ai\",\"https:\\\/\\\/www.youtube.com\\\/@DiopterAI\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/#\\\/schema\\\/person\\\/14e9df4ddc7c8f79f7e9b454c6b4f55d\",\"name\":\"Diopter Team\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g\",\"caption\":\"Diopter Team\"},\"description\":\"We research deepfake fraud, synthetic media detection, and AI-enabled social engineering. Everything we publish comes from direct work with security, fraud, and IT teams who are dealing with these threats today.\",\"url\":\"https:\\\/\\\/diopter.ai\\\/blog\\\/author\\\/diopter-team\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI","description":"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/diopter.ai\/blog\/business-email-compromise\/","og_locale":"en_US","og_type":"article","og_title":"What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI","og_description":"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.","og_url":"https:\/\/diopter.ai\/blog\/business-email-compromise\/","og_site_name":"Diopter AI","article_published_time":"2026-06-30T07:34:59+00:00","article_modified_time":"2026-07-20T14:02:56+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","type":"image\/png"}],"author":"Diopter Team","twitter_card":"summary_large_image","twitter_creator":"@DiopterAI","twitter_site":"@DiopterAI","twitter_misc":{"Written by":"Diopter Team","Est. reading time":"17 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#article","isPartOf":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/"},"author":{"name":"Diopter Team","@id":"https:\/\/diopter.ai\/blog\/#\/schema\/person\/14e9df4ddc7c8f79f7e9b454c6b4f55d"},"headline":"Business Email Compromise (BEC): Complete Guide","datePublished":"2026-06-30T07:34:59+00:00","dateModified":"2026-07-20T14:02:56+00:00","mainEntityOfPage":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/"},"wordCount":3593,"commentCount":0,"publisher":{"@id":"https:\/\/diopter.ai\/blog\/#organization"},"image":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#primaryimage"},"thumbnailUrl":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","keywords":["Business Email Compromise","Social Engineering","Wire Fraud"],"articleSection":["Business Email Compromise"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/diopter.ai\/blog\/business-email-compromise\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/","url":"https:\/\/diopter.ai\/blog\/business-email-compromise\/","name":"What is Business Email Compromise (BEC)? - Complete Guide | Diopter AI","isPartOf":{"@id":"https:\/\/diopter.ai\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#primaryimage"},"image":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#primaryimage"},"thumbnailUrl":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","datePublished":"2026-06-30T07:34:59+00:00","dateModified":"2026-07-20T14:02:56+00:00","description":"BEC attacks cost businesses billions every year and leave no malware to detect. Learn how they work, why email security misses them, and how to build a layered defense.","breadcrumb":{"@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/diopter.ai\/blog\/business-email-compromise\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#primaryimage","url":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","contentUrl":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","width":1200,"height":630},{"@type":"BreadcrumbList","@id":"https:\/\/diopter.ai\/blog\/business-email-compromise\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/diopter.ai\/blog\/"},{"@type":"ListItem","position":2,"name":"Business Email Compromise (BEC): Complete Guide"}]},{"@type":"WebSite","@id":"https:\/\/diopter.ai\/blog\/#website","url":"https:\/\/diopter.ai\/blog\/","name":"Diopter AI","description":"","publisher":{"@id":"https:\/\/diopter.ai\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/diopter.ai\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/diopter.ai\/blog\/#organization","name":"Diopter AI","alternateName":"Diopter","url":"https:\/\/diopter.ai\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/diopter.ai\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/05\/cropped-Logo-and-Wordmark-Lockup-Color.png","contentUrl":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/05\/cropped-Logo-and-Wordmark-Lockup-Color.png","width":1187,"height":360,"caption":"Diopter AI"},"image":{"@id":"https:\/\/diopter.ai\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/DiopterAI","https:\/\/www.linkedin.com\/company\/diopter-ai","https:\/\/www.youtube.com\/@DiopterAI"]},{"@type":"Person","@id":"https:\/\/diopter.ai\/blog\/#\/schema\/person\/14e9df4ddc7c8f79f7e9b454c6b4f55d","name":"Diopter Team","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/018d2bf9e7ef3a839349b416a38ef1141ca151b4c6ebfe07d676662d14c205c9?s=96&d=mm&r=g","caption":"Diopter Team"},"description":"We research deepfake fraud, synthetic media detection, and AI-enabled social engineering. Everything we publish comes from direct work with security, fraud, and IT teams who are dealing with these threats today.","url":"https:\/\/diopter.ai\/blog\/author\/diopter-team\/"}]}},"jetpack_featured_media_url":"https:\/\/diopter.ai\/blog\/wp-content\/uploads\/2026\/07\/diopter-social-share-v2.png","_links":{"self":[{"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/posts\/274","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/comments?post=274"}],"version-history":[{"count":19,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/posts\/274\/revisions"}],"predecessor-version":[{"id":628,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/posts\/274\/revisions\/628"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/media\/537"}],"wp:attachment":[{"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/media?parent=274"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/categories?post=274"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/diopter.ai\/blog\/wp-json\/wp\/v2\/tags?post=274"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}