You are here: Home - Household Bills - News -

Parents warned on school fees hacking scams

Written by:
Parents paying private school fees have been warned that imminent fee payments are December’s top target for criminals, warns cyber insurance group Cyber|Decider.

Private school fee payments have become a target because they are large (generally £4,000-£10,000 per term), and security within schools is generally poor.

Neil Hare-Brown, the CEO of Cyber|Decider said: “In 2017 we saw schools generally become a big target for cybercriminals. Their security is often poor, and their fees administration is largely undertaken out of their electronic mailbox which is often hosted online, making it easy to hijack.”

Scammers will typically send parents an email giving them payment details for school fees, saying these have changed. At the same time, hackers will have gained access to the school’s email, usually through an undiscovered phishing attack and the payments will be channelled through the hacker’s account. They also set up automatic rules so responses from parents requesting confirmation of authenticity get diverted to the hackers, so the school does not see them.

Other details gleaned from these phishing attacks, such as personal details of staff, children and parents, are sold to other cybercriminals using sites on the “dark web” for identity frauds.

Cyber|Decider said parents need to be wary of payment requests from schools or anyone by email, particularly those changing the previous arrangements. It recommends telephoning the school on its usual number, rather than emailing them, and double-checking verbally with the school before making the payment.

Hare-Brown added: “Parents with whom schools communicate generally use webmail, and often from insecure systems. Families and schools are sharing lots of information about payments for fees, trips and everything else, so these mailboxes hold lots of important personal data such as bank and credit card details, passport images, medical and family information. Many schools have moved their email systems online and use payment gateways, but often they use systems that are insecure.

“Also, school staff and parents are easily deceived, and scams operated over the holiday period when schools are closed, mean the alert won’t be raised quickly. This gives the criminals time to transfer funds with little chance of them returned.”

Related: See’s How to pay for private school fees for more information.

There are 0 Comment(s)

If you wish to comment without signing in, click your cursor in the top box and tick the 'Sign in as a guest' box at the bottom.

Your back-to-basics ISA guide for 2020/21

You have until 5 April to use up the remainder of this year’s ISA allowance before it’s gone for good. Her...

A guide to Sharia savings accounts

A number of Sharia savings products have upped their game in recent months, beating more familiar competitors ...

Five ways to get on the property ladder without the Bank of Mum and Dad

A report suggests the Bank of Mum and Dad is running low on funds. Fortunately, there are other options for st...

What will happen if rates change

How your finances will be impacted by a rise in interest rates.

Regular Savings Calculator

Small regular contributions can build up nicely over time.

Online Savings Calculator

Work out how your online savings can build over time.

Having a baby and your finances: seven top tips

We’re guessing the Duchess of Cambridge won’t be fretting about maternity pay or whether she’ll still be...

Protecting family wealth: 10 tips for cutting inheritance tax

Inheritance tax - sometimes known as 'death tax' - can cause even more heartache for bereaved families. But th...

Travel insurance: Five tips to ensure a successful claim

Ahead of your summer holiday, it’s important to make sure you have the right level of travel cover or you co...

Money Tips of the Week

Read previous post:
Water bills to fall from 2020

Water bills are set to fall by up to £25 a year from 2020 onwards, the water regulator, Ofwat, has...