Security Tip: Phishing emails sometimes contain “Re:” in the subject line to give a false indication that the sender is replying to a message you sent. Don’t fall for it!

Tips for Detection

  • Important updates to the university plan for COVID-19 would be communicated officially and exist on the university’s response to COVID-19 website
  • The language of “IT Helpdesk” should be a giveaway that the message did not originate from Technology Services
  • The “To” field contains a bogus help desk address
  • The display name and external email address of the sender do not match the information in the signature of the email
  • Hovering over the link reveals a site hosted on cabanova[.]com and not pugetsound.edu

Original Phishing Message

Text of Phishing Message

Dear Staff,

As we are preparing to enter the new phase of COVID-19 level. IT Helpdesk has introduced the Alert System to manage and minimize the risk of COVID-19. All Staff are required to Login COVID-19 Alert System to see their tasks and schedules.

To access, Click on COVID-19 Alert System

Take care and keep safe.

Sincerely,
IT Helpdesk
©2020 All rights reserved