Finra caught up in email phishing scheme

Finra caught up in email phishing scheme
A new cybersecurity alert warns member firms to be wary of fraudulent messages impersonating key members of the regulator’s leadership.
APR 05, 2024

Finra has issued a cybersecurity alert to its member firms warning of an ongoing phishing campaign that impersonates two key members of the organization's leadership.

The fraudulent scheme, which the Financial Industry Regulatory Authority Inc. says impacts all firms, involves emails falsely claiming to be from executives at the industry regulator, using the deceptive email addresses “[email protected]” and “[email protected].”

According to the alert, these email addresses, along with the domain “data-finra.org,” are not associated with Finra, and recipients are advised to immediately delete any emails received from these domains.

Utilizing a classic social engineering ploy appealing to actual authorities, the bogus emails purport to come from members of Finra’s leadership, including Steve Randich, executive vice president and chief information officer of Finra, and Robert L.D. Colby, its chief legal officer.

The phishing messages are also crafted to evoke a sense of urgency, claiming multiple attempts have been made to contact the target “to deliver a notice that requires your attention.” That’s on top of vague tags simply highlighting the notice as “confidential” with a “Due Date” of April 15, 2024.

The fraudulent communication includes a file labeled “Finra [FIRM NAME]_Disclosure290124.pdf,” with a request to “complete the request at your earliest convenience.”

In response to this phishing campaign, Finra has reminded firms to maintain good cybersecurity practices and verify the legitimacy of any suspicious email before engaging with its content, including responding, opening any attachments, or clicking on embedded links.

Finra has also reached out to the registrars behind the fake “data-finra.org” Internet domain, asking for its suspension. To help address cybersecurity threats, Finra is urging member firms to contact its cyber and analytics unit for guidance, and promptly report incidents to the FBI’s Internet Crime Complaint Center or the Cybersecurity and Infrastructure Security Agency via its 24/7 Operations Center.

Younger generations are more interested in impact investing than ever. Here's why

Latest News

Edward Jones announces C-suite shakeup with eye toward next chapter
Edward Jones announces C-suite shakeup with eye toward next chapter

The leadership changes coming in June, which also include wealth management and digital unit heads, come as the firm pushes to offer more comprehensive services.

Harvard muni bonds a buy amid battle with Trump White House, Barclays says
Harvard muni bonds a buy amid battle with Trump White House, Barclays says

Strategist sees relatively little risk of the university losing its tax-exempt status, which could pose opportunity for investors with a "longer time horizon."

The great wealth transfer demands a wealth management revolution
The great wealth transfer demands a wealth management revolution

As the next generation of investors take their turn, advisors have to strike a fine balance between embracing new technology and building human connections.

Independent Financial Group taps industry veteran Keefe as new president, COO
Independent Financial Group taps industry veteran Keefe as new president, COO

IFG works with 550 producing advisors and generates about $325 million in annual revenue, said Dave Fischer, the company's co-founder and chief marketing officer.

Net Positive Consortium gains momentum with new members, first strategic partner
Net Positive Consortium gains momentum with new members, first strategic partner

Five new RIAs are joining the industry coalition promoting firm-level impact across workforce, client, community and environmental goals.

SPONSORED Compliance in real time: Technology's expanding role in RIA oversight

RIAs face rising regulatory pressure in 2025. Forward-looking firms are responding with embedded technology, not more paperwork.

SPONSORED Advisory firms confront crossroads amid historic wealth transfer

As inheritances are set to reshape client portfolios and next-gen heirs demand digital-first experiences, firms are retooling their wealth tech stacks and succession models in real time.