{"id":12722,"date":"2018-01-29T12:58:38","date_gmt":"2018-01-29T10:58:38","guid":{"rendered":"http:\/\/blogs.sun.ac.za\/it\/?p=12722"},"modified":"2018-02-27T10:14:59","modified_gmt":"2018-02-27T08:14:59","slug":"phishing-your-email-account-has-been-compromise","status":"publish","type":"post","link":"https:\/\/blogs.sun.ac.za\/it\/2018\/01\/phishing-your-email-account-has-been-compromise\/","title":{"rendered":"[:en]PHISHING: \u201cYour Email Account Has Been Compromise\u201d[:]"},"content":{"rendered":"<p>[:en]<\/p>\n<p>Please be aware that there are e-mails being sent from an outside e-mail address <i>(@lasell.edu)<\/i> with the subject\u00a0\u00a0<b>\u201cYour Email Account Has Been Compromise\u201d<\/b> <i>(including capitalisation of every word and a spelling mistake at the end)<\/i><\/p>\n<p>The mail contains only the following:<\/p>\n<p><em>Verify <b><u>HERE<\/u><\/b><\/em><\/p>\n<p>This is a phishing scam. Information Technology will never send an email like this, ask you to provide your username or password or require you to click on a link in an e-mail.<\/p>\n<p>Here is an example of the phishing mail:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"align left size-large wp-image-12723\" src=\"http:\/\/blogs.sun.ac.za\/it\/files\/2018\/01\/compromised-account-500x107.jpg\" alt=\"\" width=\"500\" height=\"107\" srcset=\"https:\/\/blogs.sun.ac.za\/it\/files\/2018\/01\/compromised-account-500x107.jpg 500w, https:\/\/blogs.sun.ac.za\/it\/files\/2018\/01\/compromised-account-300x64.jpg 300w, https:\/\/blogs.sun.ac.za\/it\/files\/2018\/01\/compromised-account-768x165.jpg 768w, https:\/\/blogs.sun.ac.za\/it\/files\/2018\/01\/compromised-account.jpg 1010w\" sizes=\"auto, (max-width: 500px) 100vw, 500px\" \/><br \/>\n <!--[endif]--><\/p>\n<p>Many people, including students and staff can be easily fooled and manipulated by the social engineering tricks of the phishing scammers.<\/p>\n<p>Once they fall victim to this phishing scam and the scammers have control of an university account, they will stop using the outside e-mail address.<\/p>\n<p>Don\u2019t become one of these victims. If you receive and e-mail with the subject \u201cYour Email Account Has Been Compromise\u201d and it seems that comes from a university account (like a student number, or even a known university colleague), <u>do not<\/u> respond to it, forward it or click on the link.<\/p>\n<p>Report it to Information Technology\u2019s Cyber-Security Team (details below) and then delete or move it in your Junk E-mail folder. <i>You can use the Rules function in Outlook and Office365 Mail to delete all mail with those subject lines or senders.<\/i><\/p>\n<p>Here are the instructions again:<\/p>\n<p>If you have received mail that looks like this please immediately report it to Information Technology using the following method:<\/p>\n<p>Send the spam\/phishing mail to\u00a0<a href=\"mailto:help@sun.ac.za\">help@sun.ac.za\u00a0<\/a>and\u00a0<a href=\"mailto:sysadm@sun.ac.za\">sysadm@sun.ac.za.<\/a><\/p>\n<p>Attach the phishing or suspicious mail on to the message if possible. There is a good tutorial on how to do this at the following link (Which is safe): <a href=\"http:\/\/stbsp01.stb.sun.ac.za\/innov\/it\/it-help\/Wiki%20Pages\/Spam%20sysadmin%20Eng.aspx\">http:\/\/stbsp01.stb.sun.ac.za\/innov\/it\/it-help\/Wiki%20Pages\/Spam%20sysadmin%20Eng.aspx<\/a><\/p>\n<p>1. Start up a new mail addressed to <a href=\"mailto:sysadm@sun.ac.za\">sysadm@sun.ac.za<\/a> (CC: <a href=\"mailto:help@sun.ac.za\">help@sun.ac.za<\/a>)<\/p>\n<p>2. Use the Title \u201cSPAM\u201d (without quotes) in the Subject.<\/p>\n<p>3. With this New Mail window open, drag the suspicious spam\/phishing mail from your Inbox into the New Mail Window. It will attach the mail as an enclosure and a small icon with a light yellow envelope will appear in the attachments section of the New Mail.<\/p>\n<p>4. Send the mail.<\/p>\n<p>IF YOU HAVE FALLEN FOR THE SCAM:<\/p>\n<p>If you did click on the link of this phishing spam and unwittingly give the scammers your username, e-mail address and password you should immediately go to <a href=\"http:\/\/www.sun.ac.za\/useradm\">http:\/\/www.sun.ac.za\/useradm<\/a> and change the passwords on ALL your university accounts (making sure the new password is completely different, and is a strong password that will not be easily guessed.) as well as changing the passwords on your social media and private e-mail accounts (especially if you use the same passwords on these accounts.)<\/p>\n<p>IT have set up a website page with useful information on how to report and combat phishing and spam. The address is:\u00a0<a href=\"http:\/\/blogs.sun.ac.za\/it\/en\/2017\/11\/reporting-spam-malware-and-phishing\/\">http:\/\/blogs.sun.ac.za\/it\/en\/2017\/11\/reporting-spam-malware-and-phishing\/<\/a><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: right;\">[ARTICLE by David Wiles]<\/p>\n<p>[:]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[:en] Please be aware that there are e-mails being sent from an outside e-mail address (@lasell.edu) with the subject\u00a0\u00a0\u201cYour Email Account Has Been Compromise\u201d (including capitalisation of every word and a spelling mistake at the end) The mail contains only the following: Verify HERE This is a phishing scam. Information Technology will never send an [&hellip;]<\/p>\n","protected":false},"author":259,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20381,29187],"tags":[20381],"class_list":["post-12722","post","type-post","status-publish","format-standard","hentry","category-phishing","category-security-2","tag-phishing"],"publishpress_future_action":{"enabled":false,"date":"2026-05-08 07:09:55","action":"change-status","newStatus":"draft","terms":[],"taxonomy":"category","extraData":[]},"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12722","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/users\/259"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/comments?post=12722"}],"version-history":[{"count":2,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12722\/revisions"}],"predecessor-version":[{"id":12725,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/posts\/12722\/revisions\/12725"}],"wp:attachment":[{"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/media?parent=12722"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/categories?post=12722"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.sun.ac.za\/it\/wp-json\/wp\/v2\/tags?post=12722"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}