Cybercriminals plant auto-forwarding rules on web-based email services to help them scam businesses. The FBI has warned businesses of the threat posed by cybercriminals. The problem has become worse with the huge shift towards remote working seen at many businesses following the COVID-19 pandemic. The onus is on system administrators to ensure that web and desktop email clients are routinely syncing their auto forwarding rules to ensure they are properly visible to IT personnel. Once an email forwarding rule is in place it continues to operate even if a user changes their email account password in the mistaken belief that that might lock out intruders.”]

