Security Tip: Phishing emails sometimes contain “Re:” in the subject line to give a false indication that the sender is replying to a message you sent. Don’t fall for it!
Tips for Detection
- Important updates to the university plan for COVID-19 would be communicated officially and exist on the university’s response to COVID-19 website
- The language of “IT Helpdesk” should be a giveaway that the message did not originate from Technology Services
- The “To” field contains a bogus help desk address
- The display name and external email address of the sender do not match the information in the signature of the email
- Hovering over the link reveals a site hosted on cabanova[.]com and not pugetsound.edu
Original Phishing Message
Text of Phishing Message
Dear Staff,
As we are preparing to enter the new phase of COVID-19 level. IT Helpdesk has introduced the Alert System to manage and minimize the risk of COVID-19. All Staff are required to Login COVID-19 Alert System to see their tasks and schedules.
To access, Click on COVID-19 Alert System
Take care and keep safe.
Sincerely,
IT Helpdesk
©2020 All rights reserved