Students Computer Service
Warning high phishing danger!
Magnus Stuve Thomassen
Phishing email is gaolseeking fraud mail, created to hijack user accounts and getting sensitive information. This article contain a Phishing example. Got fooled? There are some simple but effective ways to not getting fooled. And to repair the damage.
There has been a lot of Phishing lately, which has attempted to hijack UMB user accounts. We have recieved mail from fellow students with warnings about the fraud attempts.
There is a example given on phishing mail below.
The computer service need to remind that you
never send passwords through email, or through suspicious webpages.
So what, they can't use my credentials for anything, or?Well they might, they might send email to friends and family though your email, and fool them aswell, asking for creditcard numbers, credentials and so on. And they might use your account to do illegal activities on UMB network or in the name of UMB.
It wasn't my fault, or?Worst case scenario; you'll be hold responsible for damages and economical losses that the frauders might have caused. Or we might need to make changes like fortifying our defences if enough people take the bait, that will effect yourself and fellow students.
If I took the bait..No need to worry, access the computer service webpage and change your password.
The mail below is a typical phishing mail.
Your webmail quota has exceeded the agreed quota is 2GB. For
Currently running at 2.3GB.
To activate and increase your webmail quota check and update
your webmail account
To re-enable and increase your webmail quota click on the link below.
http://strange.adress/typical.UMB/serious.adress/update
Failure to do so may result in termination of your webmail account.
Thanks, and sorry for the inconvenience
Admin / Webmaster / Local hostPhishers might create false but pages looking alot like UMB pages. One way to see if the page is a fraud is the URL adress. The first part of the URL is where the page is located. So if it has a foreign ending it might be a fraud attempt.
Phishing example
Photo: Magnus S. Thomassen
Updated: 04.11.11
Printerfriendly version
Del med en venn: