<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=Windows-1252">
<style type="text/css" style="display:none;"> P {margin-top:0;margin-bottom:0;} </style>
</head>
<body dir="ltr">
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
Good morning,</div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
<br>
</div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
Hopefully, everyone in the college received this alert from UIT about scams that we've been seeing in the college. The scams may vary in form, but the intent is the same: contacting you via a
<u>non-UH email</u> address using UH names and titles, then asking you to buy gift cards or send money. The scammers will create a sense of urgency, hoping you will act without thinking it through. Please remember to forward any suspicious emails back to
the official UH email address to confirm with the sender. Official UH email addresses usually end with @central.uh.edu, @egr.uh.edu, and sometimes @uh.edu. Anything before the @ symbol is not necessarily an official name or title, as detailed in the alert
below. </div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
<br>
</div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
As always, you're welcome to forward me any suspicious emails with a brief analysis noting what you thought was legitimate and what was not. If you already know that the email is a scam, you can just forward it to abuse@uh.edu and not have to forward to me.
</div>
<div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
<br>
</div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
Thanks and stay safe.</div>
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
<br>
</div>
<div id="Signature">
<div id="divtagdefaultwrapper" dir="ltr" style="font-size:12pt; color:#000000; font-family:Calibri,Helvetica,sans-serif">
<p style="margin-top: 0px; margin-bottom: 0px;margin-top:0; margin-bottom:0"><span id="ms-rterangepaste-start"></span></p>
<div>Kiet Luong</div>
<div>Director of Engineering Computing</div>
<div>College Information Security Officer</div>
<div>Cullen College of Engineering</div>
<div>University of Houston</div>
<div>Email: KietL@uh.edu</div>
<div>Voice: 713.743.9974</div>
<span id="ms-rterangepaste-end"></span><br>
<p style="margin-top: 0px; margin-bottom: 0px;"></p>
</div>
</div>
</div>
<div>
<div id="appendonsend"></div>
<hr tabindex="-1" style="display:inline-block; width:98%">
<div id="divRplyFwdMsg" dir="ltr"><font face="Calibri, sans-serif" color="#000000" style="font-size:11pt"><b>From:</b> University Information Technology <it@uh.edu><br>
<b>Sent:</b> Wednesday, May 13, 2020 9:55 AM<br>
<b>To:</b> Luong, Kiet A <KDLuong@Central.UH.EDU><br>
<b>Subject:</b> UHS Information Security Flash Alert: Gift Card/Wire Transfer Scam Messages</font>
<div> </div>
</div>
<div>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="650">
<tbody>
<tr>
<td bgcolor="#FFFFFF" style="vertical-align: top;">
<table bgcolor="white" border="0" cellpadding="20" cellspacing="0" width="100%">
<tbody>
<tr>
<td style="vertical-align: top;"><img alt="University of Houston - University Information Technology" border="0" height="84" width="750" src="https://uh.edu/ecomm/images/header_uitsecurity.png">
<p>This is an official alert issued by UHS Information Security. To verify the validity of this message, you can visit the UH IT website at uh.edu/uit or contact UIT Security at 832-842-4695 or via email at
<a href="mailto:security@uh.edu" style="text-decoration: none; color: rgb(200, 16, 46);">
security@uh.edu</a>.</p>
<hr noshade="noshade" size="1">
<p>UH Staff and Faculty:<br>
<br>
We are currently seeing UH users in all departments being inundated with waves of phishing messages designed to scam you out of money.</p>
<p>These messages are appearing to be sent by people in university leadership roles: Deans, Department Chairs, Division Heads, Managers, Supervisors, etc. The scammers are doing their homework and using publically available organizational charts to determine
the appropriate recipients of the message-people within the same department as the leader being impersonated. Next, the scammers try to mislead you into thinking that the sender’s address is a university address, when it is actually not. Typically, these
addresses are in the format: <leader’s name/initials><a href="mailto:.uh@gmail.com" style="text-decoration: none; color: rgb(200, 16, 46);">.uh@gmail.com</a>. NOTE: Look closely- even though UH is listed in the address – this is actually a gmail account.</p>
<p>The initial message usually asks if you are available and if you respond yes, you are provided with instructions to purchase a significant amount of gift cards and send pictures of the numbers to the scammers. We have also seen the scammers trying to trick
staff into initiating wire transfers of university funds.</p>
<p>Your supervisors are likely NOT requesting you to immediately take actions such as to purchase gift cards or transfer university funds. These messages are designed to trick you into funding criminal activity.</p>
<p class="red" style="color: rgb(200, 16, 46);">Do not respond to the messages or spend any money (including personal funds) without going through all appropriate university processes. Verify any necessary transactions by phone calls or emails to official
university numbers/addresses. Delete any fraudulent messages immediately.</p>
<p>If you have questions about the validity of any message you receive, contact UHS Information Security at
<a href="mailto:security@uh.edu" style="text-decoration: none; color: rgb(200, 16, 46);">
security@uh.edu</a>. If you responded to any of these messages with personal information or spent any money purchasing gift cards related to these scams, contact UHS Information Security or the UH Police.</p>
<p>Be a “Curious Cougar” – Be skeptical, ask questions and outsmart the scammers!</p>
Mary E. Dickerson, MBA, CISSP, CISM, PMP<br>
Assistant Vice-President | Assistant Vice-Chancellor, IT Security<br>
Chief Information Security Officer<br>
University of Houston | University of Houston System<br>
<em>A Carnegie-designated Tier One public research university</em><br>
IT Security Phone: 832-842-4695<br>
Email: <a href="mailto:mdickerson@uh.edu" style="text-decoration: none; color: rgb(200, 16, 46);">
mdickerson@uh.edu</a></td>
</tr>
</tbody>
</table>
</td>
</tr>
<tr>
<td style="vertical-align: top;"> </td>
</tr>
<tr>
<td align="center" style="vertical-align: top;"><a href="https://cloudapps.uh.edu/sendit/w/48V9EUUcJN8WEzgWiiZslg/YnMQUW1VLUcjNrID5m0zPA/RXcWkMOD8Q763cJwXFIcHsYg" style="text-decoration: none; color: rgb(200, 16, 46);">View web version</a></td>
</tr>
<tr>
<td style="vertical-align: top;">
<div align="center"><a href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/HDGU8dTiJgwekkE438tcFA/RXcWkMOD8Q763cJwXFIcHsYg" style="text-decoration: none; color: rgb(200, 16, 46);"><img alt="" border="0" usemap="#Map2" src="https://uh.edu/ecomm/images/uh_socialmedia_png.png"></a><map name="Map2"><area coords="69,10,114,61" href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/HDGU8dTiJgwekkE438tcFA/RXcWkMOD8Q763cJwXFIcHsYg" shape="rect">
<area coords="15,13,65,61" href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/vukepsUNWhHtV7XFywYCQA/RXcWkMOD8Q763cJwXFIcHsYg" shape="rect">
<area coords="117,14,165,62" href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/ny0j6z8vwOqPcxri2VzzXQ/RXcWkMOD8Q763cJwXFIcHsYg" shape="rect"><area coords="168,14,217,60" href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/DrjMZA7MVR4UB7631n2y01Mg/RXcWkMOD8Q763cJwXFIcHsYg" shape="rect"><area coords="220,13,269,60" href="https://cloudapps.uh.edu/sendit/l/48V9EUUcJN8WEzgWiiZslg/zf2GGtN892Uysv892OdTkKCIog/RXcWkMOD8Q763cJwXFIcHsYg" shape="rect"></map></div>
</td>
</tr>
<tr>
<td style="vertical-align: top;"> </td>
</tr>
<tr>
<td style="vertical-align: top;">
<div align="center"><span class="small" style="font-size: 10pt;">This is an official message sent by the University of Houston. To verify the validity of this message, email
<a href="mailto:security@uh.edu" style="text-decoration: none; color: rgb(200, 16, 46);text-decoration:underline">
security@uh.edu</a>.</span></div>
</td>
</tr>
</tbody>
</table>
<img alt="" style="width:1px; height:1px" src="https://cloudapps.uh.edu/sendit/t/RXcWkMOD8Q763cJwXFIcHsYg/48V9EUUcJN8WEzgWiiZslg">
</div>
</div>
</body>
</html>