OCCIP issues alert on business email scams
August 31, 2026 / By ICBA
The Treasury Department’s Office of Cybersecurity and Critical Infrastructure Protection issued an alert on business email compromise (BEC) scams.
Details: In the alert to financial institutions, the OCCIP said:
BEC is a coordinated fraud operation that compromises trust in business communications and converts that trust into unauthorized movement of money.
The key risk is that a technically legitimate payment instruction may be commercially fraudulent because the surrounding identity, vendor, or approval process has been compromised.
Because BEC thrives when trust is assumed across email and payments, financial institutions reduce risk when trust is continuously verified across identity, communication, authorization, and money movement.
ICBA Resources: Cybersecurity resources for community banks are available on ICBA's Cyber and Data Security resource center.
Subscribe now
Sign up for the Independent Banker newsletter to receive twice-monthly emails about new issues and must-read content you might have missed.
Sponsored Content
Featured Webinars
Join ICBA Community
Interested in discussing this and other topics? Network with and learn from your peers with the app designed for community bankers.
Subscribe Today
Sign up for Independent Banker eNews to receive twice-monthly emails that alert you when a new issue drops and highlight must-read content you might have missed.
News Watch Today
Join the Conversation with ICBA Community
ICBA Community is an online platform led by community bankers to foster connections, collaborations, and discussions on industry news, best practices, and regulations, while promoting networking, mentorship, and member feedback to guide future initiatives.