If you see this email message, do not click the link. It’s a phishing scam:

More UDel spear phishing

This is the second well-crafted spear phishing attack we’ve seen at UD this week. It contains no obvious spelling or grammar issues and uses “IT Support Center” and “udel.edu” — terms aimed at the University of Delaware community. However, it contains the following traits that should help you recognize it as a phishing scam:

  • It uses the standard phishing formula — getting your attention with an urgent message (your email quota is used up) then asking you to click a link to “re-validate” your account.
  • This scam is addressed to “Dear UDEL.EDU Account User” — if YOUR account has exceeded its quota, why wouldn’t the email address you by name?
  • Note that this scam came from a stolen email account at Santa Clara University.
  • Note that the URL you are asked to click is not a udel.edu link. It’s a link cobbled together with a string of abbreviations used at UD, but it takes you to a URL located at my-free.website.

If you clicked the link in this email scam and supplied your UDelNet ID and password, go to My UD Settings and change your password immediately. If you are unable to change your password, contact the IT Support Center by calling (302) 831-6000.

If you take a moment to examine each email you receive, especially when you get email containing links or email including unexpected attachments, you should be able to avoid the dangers posed by phishing scams like this one.

Think B4 U Click!