+44 (0) 1604 420057
   
Alison Mead

The Blog of Silicon Bullet

By Alison Mead, Bookkeeping Mentor ...

How a Cyber Attack Compromised a Bookkeeper's Security

Alison Mead

CREATED BY ALISON MEAD

Published: 12/05/2025 @ 09:01AM

#cyberattack #cybersecurity #bookkeepers #dataprotection #scamawareness

When a cyber attack struck a bookkeeper friend of mine, it revealed the hidden dangers of downloading files from seemingly trustworthy sources. In this blog post, she chronicles the experience, offering essential insights into recognising threats and protecting sensitive information in the digital age ...

Cyber attack strikes hard, Codes and firewalls no match, Silent destruction

Cyber attack strikes hard, Codes and firewalls no match, Silent destruction

It all began with a simple login attempt. She went to access her agent account for self-assessment and CIS, only to be met with an unexpected roadblock: she was locked out. A call to HMRC revealed that her account had been suspended due to suspicious activity. Not exactly the kind of Monday motivation anyone hopes for.

Thankfully, two anxious weeks later, her
access was reinstated!

Naturally, the first thing she did was change her password. But when she checked the account, she noticed something alarming - an unfamiliar name had been added to her self-assessment section, and one of her CIS clients had mysteriously disappeared. She sprang into action, deleting the intruder, updating her password again (better safe than sorry), and launching a full investigation.

Being diligent and responsible, she reported the breach to the Information Commissioner's Office (ICO) and her professional body, the Institute of Certified Bookkeepers (ICB). She also took on the daunting task of contacting every single client and subcontractor who might've been affected - around 90 people in total. A full system scan revealed the presence of trojans. Not exactly the kind of house guests you'd want on your computer.

But here's the kicker – she was cyber-aware. She used a password manager. She kept her systems up to date. So, how on earth did someone breach her defences?

The answer came in the form of an AccountingWEB newsletter. The article that caught her eye was called, “Agent accounts under attack in new cybercrime wave”. It described a disturbing trend of scammers targeting accounting firm agent accounts to file bogus claims and reroute refunds into their own shady bank accounts.

That article turned on a lightbulb for her!

She went back through her records and found an email from a supposed new client, sent just before the breach happened. The client had attached a file - a zip folder, no less - claiming it contained her previous tax return. Inside was a sneaky little number pretending to be a PDF but in fact was an executable (.exe) file in disguise. She didn't run the file, but simply unzipping it had done enough damage. Talk about Trojan horse tactics.

Looking back, she describes feeling violated, confused, and - understandably - distrustful of every email attachment in her inbox. But with clarity came closure. She now knows what happened, and she shared her story with me so I could blog about it and reach others so they don't have to learn the hard way.

So what's the takeaway?

Be suspicious of files, especially zipped ones. Always double-check file extensions, too.  Something called 'pdf.exe' is not your friend. And remember, even the most cautious can get caught off guard.

Her final words? “I wish I hadn't had to learn this, but now that I have, I'll be soooo much more careful about what I open. I hope none of you have to go through this – stay safe out there!

And that, dear readers, is a reminder that even with bookkeeping, spreadsheets and self-assessments, danger can come zipped and disguised. Be careful!

Until next time ...


ALISON MEAD
I'm your Bookkeeping Buddy: Discover more by clicking here!

Would you like to know more?

If anything I've written in this blog post resonates with you and you'd like to discover more about how a bookkeeper can protect themselves from cyber-attacks, it may be a great idea to give me a call on 01604 420057 and let's see how I can help you.

Share the blog love ...

Share this to FacebookBuffer
Share this to FacebookFacebook
Share this to TwitterTwitter
Share this to Linkedin (popup window)Linkedin
Share this to Pinterest (popup window)Pinterest
Share this to WhatsApp (popup window)WhatsApp

#cyberattack #cybersecurity #bookkeepers #dataprotection #scamawareness

About Alison Mead ...

Alison Mead 

Alison loves bookkeeping and supporting bookkeepers. She has been helping clients to be better bookkeepers in Sage 50 for over 24 years and has been Xero Accredited in accounts and payroll for a number of years too.

She specialises in a very unique hand-holding method of training, helping bookkeepers and business owners to use their accounts software as and when they need support in setting up and producing their invoices, reports and financial information.

Alison combines her role at Silicon Bullet with her Forever Living network marketing businesses and is often to be seen at business networking meetings as she likes to keep busy.

You know what they say: if you want something done well ask a busy person!

More blog posts for you to enjoy ...

Click here to view this blog post


Sage 50 Accounts and Payroll subscription changes

Here's the Sage 50 accounts and payroll subscription changes in plain English. Direct prices rose earlier, partner-billed rises land later. Learn how timing and route to purchase affect your bill ......

Click here to view this blog post


Why side hustlers should try the Etsy app for Xero today

The Etsy app for Xero helps side hustlers automate sales, fees, and taxes, cutting administration and accounting errors. It turns messy payouts into clear records. It's a smart, simple boost for your bookkeeping ......

Click here to view this blog post


Autumn Budget 2025: What Every Bookkeeper Needs to Know

The 2025 Autumn Budget arrived with its usual mix of political theatre and careful phrasing, but beneath the headlines sit several changes that every bookkeeper should be aware of ......

Click here to view this blog post


AI bank reconciliation in Xero: will it transform your monthly close?

AI bank reconciliation in Xero promises faster month-end with automation and human review. It can streamline matching while maintaining oversight. Here's what to consider before switching it on, because I wonder if it is a go...

Click here to view this blog post


Bookkeeping Buddy: Why DIY Bookkeeping Doesn't Mean Doing It Alone

Many small business owners attempt DIY bookkeeping to save costs and maintain control. Yet, this path can be daunting. Learn how you can manage your finances more effectively with my Bookkeeping Buddy subscription, ensuring y...

Click here to view this blog post


Being a Bookkeeping Buddy Means Being Part Of A Community

I created my Bookkeeping Buddy community last year to offer a higher level of support to bookkeepers across the country, and it really has turned into a community. At a recent Accountex London exhibition, two of my Bookkeepin...

Click here to view this blog post


Building A Bookkeeping Business: Increasing Your Prices

You may have already done the difficult part of starting your own bookkeeping business; you've found clients, you've decided on your pricing, and now you're getting on with the day-to-day of looking after the clients you've ....

Click here to view this blog post


How Small Creators Can Earn Money From TikTok

I have been experimenting with monetising on social media to see how easy it is and how it all works, so I am better able to help and advise those with side hustles and the self-employed on how to report their income, and eve...

Other bloggers you may like ...

Click here to view this blog post


Steffis slightly interesting review of coding in 2025

Posted by Steffi Lewis on https://www.steffilewis.com

It's been quite some time since I wrote a review of the year. I'm not sure why I got out of the habit of doing them, but here we are again. This is my ...

Click here to view this blog post


Renovating in 2026? Choose MK serviced accommodation for calm, flexible living

Posted by Emily Freeman on https://blog.shortstay-mk.co.uk

Thinking ahead to 2026? Our MK serviced accommodation makes a home renovation stay peaceful and practical for you. Enjoy space, privacy, and flexible ...

Click here to view this blog post


10 ways to relax and recharge over the festive period for career clarity in the New Year

Posted by Dave Cordle on https://blog.davecordle.co.uk

Here are 10 ways to relax and recharge over the festive period without losing career momentum. It blends rest with light learning to reduce stress. Us ...

Click here to view this blog post


Mandatory payrolling of Benefit-In-Kind delayed until 2027

Posted by Roger Eddowes on https://blog.essendonaccounts.co.uk

Mandatory payrolling of Benefit-in-Kind, originally slated to arrive in April 2026, has now been delayed until 2027. Employers will eventually shift t ...

Privacy & Cookies Policy

Click here to discover sBlogIt! The done-for-you blogging service