Email Scam Targets Financial Advisor Clients
Posted February 4, 2013on:
I recently received an email from a client of mine. The mail contained only one line: “What’s the balance of my account?”
“It’s $978k as of close of yesterday,” I replied.
“I need $500k for a business transaction,” my client responded.
I went into an explanation of the tax consequence of selling long-held investments to fund a business transaction, but my client insisted that he needed the money urgently. So I emailed him: “send me your wire instruction, and I will make sure the money will be in your account tomorrow.”
I received this:
Bank Name: OCBC Bank
Bank Address: #301-11A Oversea chinese Banking cooperation,1 pasirris Central Street, White Sands Singapore 518457
Bank Account Number: 555-7-037586
Swift Code: OCBCSGSG
Account Name: Recto Mariecel Dejesus
I immediately noticed this was an overseas wire and was an account not under my client’s name. I was suspicious, so I emailed back: “Can you give me a call to verify your intention?”
“I am overseas now and away from any phone, I can’t call but I can write you an authorization to wire the money.”
I became more suspicious and called my client immediately. I left a message asking him if he indeed needed half a million dollar for a business transaction. A few minutes later, my client called back. He was at his California home. Apparently, somebody hacked into his email account and tried to lure me into sending half a million dollars overseas.
Rest assured, I am very alert to this type of scam. On top of that, all of my clients are set up with what we call level 1 authorization, that is, I am only authorized to send money to accounts under my client’s name. I purposefully do not use the less secure level 2 authorization, which would give me the authorization to send money to accounts not under my client’s name. Because of my ex ante precaution, my client’s money was never at risk.
After this incident, I now insist that my clients not use Yahoo mail. It seems to me 80% of email scams originate from hacked Yahoo accounts, with the rest coming from hacked AOL and hotmail accounts. Gmail is by far the most secure email server, especially if you use its two-step verification for login.
Get my white paper: The Informed Investor: 5 Key Concepts for Financial Success.