{
  "slug": "public-sector-payment-redirect",
  "title": "Public bodies publish their vendor lists. Attackers read them.",
  "summary": "Local governments disclose who they pay, how much, and when. That transparency is a targeting file. Why training does not fix municipal vendor payment fraud.",
  "lede": "A county finance office runs on two clerks, a fifteen year old ERP, and a procurement code written before email. It also publishes, by law, exactly who it pays, how much, and roughly when. That combination is why local governments keep wiring seven figures to strangers, and why the auditor's recommendation to train staff will not stop the next one.",
  "date": "2026-09-28",
  "reading_time": "17 min read",
  "category": "Fraud",
  "tags": ["municipal wire fraud", "government BEC", "vendor payment fraud", "public sector security", "state auditor", "business email compromise"],
  "image": "https://cdn.twc.sh/images/igcache/Public%20Sector%20Payment%20Redirect/1200_630/blog.jpg",
  "url": "/blog/public-sector-payment-redirect.html",
  "wordcount": 3807,
  "related": ["vendor-bank-change-fraud", "callback-verification-fails", "agent-identity-government"],
  "schema": "Article"
}
