Original Phishing Message
From: akasaka[@]kpg[.]gr[.]jp
Subject: New Voicemail
Tips for Detection
- Legitimate voicemail notifications to your campus phone number will come from no-reply[@]zoom[.]us.
- Always check the email address as display names (e.g. “Pugetsound Voicemail System”) can be easily manipulated. akasaka[@]kpg[.]gr[.]jp is not a Puget Sound email address.
- Notice that “Pugetsound” is misspelled.
Where Did the Link Lead?
The link led to a fake Microsoft sign in page. Always look at the URL to make sure you are on a trusted site before entering credentials. taxichiangmai24hour[.]com is not a Microsoft website.
Text of Phishing Message
From: akasaka[@]kpg[.]gr[.]jp
Subject: New Voicemail
You have received a message from Caller (301)-369-4390***
Call Length: 00:00:55
Date/Time: 8/29/2023 11:23:26 a.m.
Play Your Message