74. An unexpected and out-of-character email message from a Chief Executive Officer's corporate account asked an employee to provide financial information and to change the recipient's contact number. Which of the following attack vectors is most likely being used?

Answer: A

Explanation:

Business email compromise

The scenario described indicates a situation involving a Chief Executive Officer's account requesting sensitive financial information and changes to contact details, which aligns with tactics commonly employed in business email compromise (BEC) attacks.

A) Business email compromise

Business email compromise is a form of cyber attack where an attacker impersonates a high-ranking official, such as a CEO, to deceive employees into divulging confidential information or transferring funds. In this case, the email’s unexpected nature and the specific request for financial information strongly suggest a BEC attack, aimed at exploiting the trust placed in a corporate leader.

B) Phishing

While phishing generally involves fraudulent attempts to obtain sensitive information by disguising as a trustworthy entity, it typically occurs on a broader scale and may not necessarily involve impersonating a specific high-ranking individual within an organization. In this scenario, the specificity of the impersonation indicates a more targeted attack strategy than typical phishing.

C) Brand impersonation

Brand impersonation involves creating a fake identity or brand to deceive individuals into providing information. Although this could be a related tactic, the particular focus on the CEO's account and the nature of the request align more closely with business email compromise rather than simply impersonating a brand.

D) Pretexting

Pretexting involves creating a fabricated scenario to obtain information from a target. While this could apply to the situation, the specificity and context of an email from a CEO asking for sensitive financial data is more characteristic of business email compromise, which specifically exploits the authority of the impersonated individual to achieve its objectives.

Conclusion

The correct answer is business email compromise, as the scenario clearly depicts an attack that leverages the trust in a CEO to solicit sensitive information. Other options, while related to social engineering attacks, do not encapsulate the targeted and authoritative nature of the request made in this instance, thus making them less applicable.