Latest Entries > Latest Entries

2013/10/23 - Phishing Attempt

Updated October 23, 2013, at 8:05AM by Ron Kimberly  | Latest Entries

As of Wednewsday, October 23, 2013, ITS received reports that users were receiving emails with subject "Please verify your FSU account"  - The content of the email has been provided below.  This email was not a legitimate email from the University and is classified as a phishing email.  This is a reminder to be very cautious in how you handle these types of messages.   

-----------------------------------------------

Subject: Please verify your FSU account

Body: 

Dear FSU User,

As part of our regular maintenance done on the exchange mail servers, we are currently reconfiguring FSU webmail users email account to improve our security, functionality and performance of our webmail access accounts as we periodically review certain security and functionality features which may/are vulnerable to unauthorized access to webmail accounts and webmails that has not been used/accessed over a period of time will be deleted to conserve storage. However, your FSU webmail account has to be verified and revalidated to avoid been deleted or suspended from our database.

To Re-Validate your FSU email click this link or copy and paste on your web browser and complete the form with your accurate information:    <-------- link removed -------->

Thank you for your co-operation

FSU webmail Management Team

-----------------------------------------------

The University email scanning service scans email for spam and viruses and prevents a large portion of these emails from reaching our environment, however, there are occasions where a cleverly crafted phishing message will get past the scanners -- and these are typically crafted in such a way as to appear to be legitimate on a cursory inspection.  When such a message gets past the scanners, ITS reports the messages to the scanning vendor and, when possible, removes the phishing messages from its email systems. These measures mitigate the exposure.  They do not prevent or eliminate it.  Remember -- NEVER PROVIDE YOUR PASSWORD TO ANYONE -- even if the request appears legitimate.

Please remember to use caution when you receive email that asks you for personal information or requires you to click on a link.  FSU will never ask for your FSUID and password credentials or other sensitive, personal information in an email. If an e-mail contains a link to click on and you are unsure of the validity of the e-mail, never click on the link. To confirm the validity of any email of this nature, you should immediately contact the ITS Service Desk at 850-644-HELP(4357). To report email messages that are either offensive or appear to be spam, forward the email message along with the full email headers to abuse@fsu.edu.