Financial Information Security | The Cloud Network
Financial Security Alert

Never send financial information via email

If you received a message asking for bank details, payment information, or any financial data — this page explains the risks, the tactics attackers use, and exactly what you should do.

If you received this message unexpectedly: Do not respond, do not provide any financial details, and contact your finance team directly using a known number or in person — not by replying to the email.

Why financial data in email is a serious risk

Email is not a secure channel. Messages can be intercepted, accounts can be compromised, and attackers can impersonate trusted senders to trick finance teams into making fraudulent payments or disclosing sensitive account details.

£2.3bn
Lost to authorised fraud in the UK in 2023, much via email-based scams
94%
Of financial fraud attacks begin with an email or phishing message
76%
Of businesses experienced a phishing attack in 2023 according to UK Gov data
Once a payment has been made to a fraudulent account, recovery is rarely possible. Banks can attempt recalls but there is no guarantee. The most effective protection is verification before any action is taken.

How attackers target your finances

Financial fraud via email comes in several forms. Knowing what to look for makes it significantly easier to spot before any damage is done.

High Risk

CEO / Director fraud (mandate fraud)

An attacker impersonates a senior member of staff — often a director or CEO — and urgently requests a payment to a new account or asks for bank details. The email looks legitimate and may even come from a compromised company account.

High Risk

Invoice fraud (payment redirect)

A fraudster intercepts or spoofs a supplier email and sends a fake invoice — or a message claiming the supplier's bank details have changed. Payments then go directly to the attacker's account instead of the real supplier.

Medium Risk

Payroll / HR diversion

An attacker poses as an employee (or uses a compromised account) to request a change to payroll bank details shortly before payday. Salary is then paid to a fraudulent account.

Medium Risk

Supplier impersonation

Fraudsters create email addresses very similar to a known supplier (e.g. changing one letter) and send routine-looking messages requesting financial information or confirming updated payment details.

What a financial fraud email looks like

These emails are often well-written, appear to come from a trusted sender, and create a sense of urgency. Here is a typical example.

Always verify before you act

The most effective defence against financial fraud is a simple one: before transferring any money or sharing any financial details in response to an email, always verify the request through a separate, trusted channel.

Call back using a number you already have — not one in the email

If you receive a request to make a payment or change bank details, phone the person or company using a number from your contacts, a previous invoice, or your company directory. Never use a number provided in the suspicious email itself — it may connect you directly to the fraudster.

Genuine urgency does not bypass verification. Legitimate suppliers, directors, and colleagues will understand a brief delay for a security check. If someone pushes back aggressively when you say you need to verify — that itself is a warning sign.

What to do if you receive a suspicious financial email

Follow these steps if you receive an unexpected request involving bank details, payments, or financial information.

1

Do not reply, pay, or share any details

Stop immediately. Do not respond to the email, click any links, or provide any financial information. Even acknowledging the email can encourage further attempts.

2

Contact your finance team or manager directly

Speak to your finance team, line manager, or the person the email claims to be from — using a known, trusted contact method. Do not reply to the email to check if it is genuine.

3

Report it to your IT team immediately

Forward the email to your IT support team so they can investigate whether an account has been compromised and alert others in the organisation if necessary.

4

If a payment has already been made — act fast

Contact your bank immediately to request a recall. Report it to Action Fraud (0300 123 2040 or actionfraud.police.uk). Speed is critical — the sooner you act, the greater the chance of recovery.

5

Contact The Cloud Network if your IT systems may be involved

If you suspect an email account has been compromised or you need help securing your systems, call us on 0345 450 9666 and we will assist immediately.

Pausing before acting is never the wrong decision. A few minutes spent verifying a payment request could save thousands of pounds and significant disruption. Your finance team will not be frustrated — they will be grateful.

Dos and don'ts for financial emails

These apply to everyone who handles payments, invoices, or financial information.

✓ Do this
  • Verify any new or changed bank details by phone before making payment
  • Use a two-person authorisation process for large or unusual payments
  • Check the sender's full email address carefully before trusting a message
  • Report suspicious emails to IT and your manager immediately
  • Keep a record of all payment requests and approvals
✗ Never do this
  • Send bank details, card numbers, or financial credentials via email
  • Act on urgent payment requests without independent verification
  • Use a callback number provided in the suspicious email itself
  • Assume an email is safe because it appears to come from a director or colleague
  • Let urgency or pressure override your verification process

Need help or have a concern?

Our team is available to advise on any security concerns, investigate suspicious activity, or help you improve your organisation's security posture.

Please use our contact details below to get in touch