Alert
KU IT Security Office receiving reports of phishing messages re: mailbox quotas, unusual activity
Posted: 2009-08-05 10:30:00
Summary: Large numbers of phishing messages with Subjects of "Your Webmail Quota Has Exceeded Limit" and "SCREENING PROGRAM" and with a From address of "i.tservice@live.com" have been reported to the IT Security Office.
Please Note:
  • @live.com is not a valid e-mail address domain for the KU Customer Service Center nor any other KU administrative office.
  • The CSC and all other groups in IT will NEVER ask you to e-mail your password to them.
  • While you will receive e-mail reminders to change your password every semester, they look nothing like this message.
Overview:

The IT Security Office has received multiple reports of e-mails claiming to be from "Webmail I.T Service Center"
and refering to your email mailbox being over its storage limits.

Two examples...[click to enlarge]:

Fake E-mail Example

Fake E-mail Example

A note about this message:

  • KU will never ask you to provide your password via e-mail, as this is an insecure means of communication. (Remember, e-mail is just like a postcard--anyone can read it along the way.)
Solution:

If you receive a message like this and you are unsure of its legitimacy, you should call the CSC at (785) 864-8080 to ask about it. Do not click any links in the e-mail, respond to the e-mail, or dial any telephone numbers listed in the e-mail. You should also forward the message as an attachment to abuse@ku.edu. Instructions on how to do this are at http://www.email.ku.edu/spam.

If you responded to one of these messages and provided the sender with any information, you should consider your KU Online ID to be compromised. Contact the KU Customer Service Center at 864-8080 IMMEDIATELY for assistance with resetting your passwords and other security information.

RSS Feeds