Back to Explore
🕵️

Cash

Electronic Funds Fraud Losses

Electronic funds fraud losses track redirected state payments from beneficiary-banking changes, business email compromise and unauthorised EFT manipulation.

📖 6 min read🎯 Intermediate✍️ Updated 2026

Why EFT Fraud Tracking Matters

As state payments moved online, theft moved with them — from the till to the beneficiary banking field. Business email compromise and unauthorised changes to supplier or beneficiary account details now redirect large payments before anyone notices, and these losses are both fruitless expenditure and likely criminal conduct under PRECCA and cybercrime law. AuditPro Core tracks electronic funds fraud losses so the methods, controls and recovery outcomes are visible and the next redirection is harder to pull off.

The Numbers

AuditPro Core renders this view from your tenant's live, tamper-evident records. The figures below are illustrative sample data.

EFT fraud loss

R124 m

▲ 28%

Incidents

418

Funds recalled

R39 m

31%

Avg loss / incident

R297 k

EFT fraud loss by quarter (R m)

Losses by attack vector

VectorIncidentsLoss (R m)
Beneficiary banking change16858.2
Business email compromise11236.4
Compromised credentials8419.8
Insider EFT release549.6

Figures shown are illustrative sample data for demonstration. AuditPro Core renders these views from your own tenant's live, tamper-evident records.

Beneficiary-Banking Change

Most EFT fraud begins with a fraudulent change to a beneficiary's bank details. A legitimate payment then flows to the fraudster's account, often undetected until the real supplier complains.

Business Email Compromise

BEC uses spoofed or hijacked email to instruct a banking change or payment. It exploits trust in correspondence rather than any system weakness, which is why awareness is a control.

Verification Controls

Independent confirmation of banking changes through a trusted channel stops most of these frauds. Losses cluster precisely where that out-of-band verification was skipped.

Speed of Recovery

Recovering a redirected EFT depends on alerting the bank within hours. Tracking detection-to-report time directly shapes how much of each loss is recoverable.

How AuditPro Core Bridges the Gap

  • Loss tracking: AuditPro Core records each EFT fraud by method, amount and control failure so patterns inform prevention.
  • Change monitoring: beneficiary-banking changes are surfaced for independent verification before payment.
  • Exception workflow: suspected redirections route immediately to recovery and reporting channels.
  • Traceability to source: each loss links to the payment, banking change and instruction behind it for the criminal file.

Key Takeaways

  • Payment fraud has shifted from the till to the beneficiary-banking field.
  • Out-of-band verification of banking changes stops most EFT fraud.
  • BEC exploits trust in email, not a system flaw — awareness is the control.
  • Recovery is measured in hours; detection-to-report time is decisive.

See This on Your Own Data

AuditPro Core renders this dashboard from your tenant's live, tamper-evident records — every figure traceable to source.