{"success":true,"data":{"id":"supply-chain-vendor-impersonation","label":"Supply-chain BEC — brand impersonation with payment language","description":"Display name impersonates a trusted vendor/brand (PayPal, Microsoft, Stripe, etc.) but the sender domain is completely unrelated, AND the body contains invoice/payment language (wire transfer, bank details, invoice, routing number, etc.). This is the signature of a supply-chain BEC attack — the victim believes they are paying a real vendor but the payment goes to the attacker. Only fires when the body contains payment context, distinguishing it from generic display-name spoofing.","tier":"danger","category":"phishing","isThin":false}}