Hello All,
I have a windows based family member who is sending out going invoices via email, I think using a Telstra Bigbond email account.
Somehow somebody is copying my relatives outgoing emails, replacing the contact details with their (very similar) contact details, and replacing the bank account details with their bank account details. All the other unique details in the invoice are the same and customized for the client. The attacker responds to emails to the new (but almost identical) email address that was in the email, and impersonates my relative in email conversations.
I think (need to check) the client gets two copies of the invoice, one good and one bad.
This results the clients paying the wrong account.