[CCoE Notice] FW: Important Notice from Employee Portal
Luong, Kiet A
KDLuong at Central.UH.EDU
Tue May 8 09:06:50 CDT 2018
Good morning,
I received several questions about this email already, so wanted to share it with you. Hopefully you've identified the same "red flags" as I did below in your careful analysis of this email:
-the sender seems to be a legitimate UH email address. However, this does not guarantee the message itself is. An email address can be spoofed (fake) or email accounts can be compromised to send out phishing/SPAM emails
-our employee and student portal is called "access.uh.edu" but there's no mention of that in the email message. Besides, I don't remember the last time an important notice came into my "employee portal" and not directly from an email with that important message
-always be wary of "click here" or other hyperlinks in emails, regardless of who the email is from. In this case, hovering the cursor over the hyperlink reveals the web destination to be http://rosefoundationtt.org/uh/. We've seen this many times before where the hacker/spammer disguises the web address by adding /uh or something relevant to the receiving organization. The real website is at the beginning of the URL, namely rosefoundationtt.org. That's obviously not a "UH employee portal" website
-the signature is a poor attempt to perpetrate the UIT Security signature. We've seen many important notifications before from IT Security (Mary Dickerson), and this signature is nothing like it.
As you can see, any one of these "red flags" alone is enough to declare it a phishing email. There are many red flags in this email. Hope this helps to familiarize you with ways to identify phishing/SPAM emails. The UIT website also has a phishing email link that helps to notify of a popular phishing email being circulated on campus, and ways to identify phishing emails. You can type in w ww.uh.edu/phishing on a web browser to get there.
Thank you for staying alert!
Kiet Luong
Director of Engineering Computing
College Information Security Officer
Cullen College of Engineering
University of Houston
Email: KietL at uh.edu<mailto:KietL at uh.edu>
Voice: 713.743.9974
From: University of Houston [mailto:rcomito at central.uh.edu]
Sent: Monday, May 07, 2018 4:29 PM
To: xxxxxxx at uh.edu<mailto:xxxxxxx at uh.edu>
Subject: Important Notice from Employee Portal
Importance: High
Dear Employee
You have a new Important Notice from Employee Portal.
Click here<http://rosefoundationtt.org/uh/> to read
Thank You
Information Technology Services
CONFIDENTIALITY NOTE: The information transmitted, including attachments, is intended only for the person(s) or entity to which it is addressed and may contain confidential and/or privileged material. Any review, retransmission, dissemination or other use of, or taking of any action in reliance upon this information by persons or entities other than the intended recipient is prohibited. If you received this in error, please contact the sender and destroy any copies of this information.
Please consider the environment before printing this e-mail.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://Bug.EGR.UH.EDU/pipermail/engi-dist/attachments/20180508/3beb9f35/attachment-0001.html
More information about the Engi-Dist
mailing list