Simulated Phishing Email of October 2023

On Tuesday 24 October, IT Security sent a number of staff a simulated phishing email claiming HR shared a file with you. The Subject was ‘Holiday Entitlement Changes’ available through SharePoint, and contained a link to a Word document called Holiday Entitlement Changes. If you tried to open that document you were asked for your … Continue reading “Simulated Phishing Email of October 2023”

Increase in Phishing Attacks

We have had a lot of phishing attacks recently, many coming from University staff and student accounts that have given their username and password in response to an earlier attack. A lot of people are responding to these.  The wording varies, but all follow a very traditional pattern for phishing messages.  They include emails telling … Continue reading “Increase in Phishing Attacks”

Important Message From Staff Portal

We have a huge number of reports of a phishing campaign which many people have recognised as such.  Some, however, appear to have been taken in by this.  Initial versions came from outside the University which were easy to spot as bogus. However,  once some people had given their passwords away their accounts were then … Continue reading “Important Message From Staff Portal”

Fake Email Administrator Message

Quite a few people have received a message asking you to login to “reset” their email.  This is something that IT services would never ask you to do.  It is similar to others that have asked you “verify” your email.  As it generated a few queries, I am posting an example with an explanation of … Continue reading “Fake Email Administrator Message”

Malicious email from Birmingham University account

The following are examples of phishing email sent from a Birmingham account that had been compromised.   If you look carefully at the content it should be clear that the messages are not genuine.  We think that the fact that it originated from within the University led some people to believe that it was real. … Continue reading “Malicious email from Birmingham University account”

Fake Speeding Notifications

Quite a few fake speeding tickets have been sent to University members.  There have been variations of this type of email, all claiming to be from  Greater Manchester Police.  The link in this example led to a page inviting you to open a document and asked for your username and password.  Another very similar message … Continue reading “Fake Speeding Notifications”

Recent Phishing Email

As part of this blog we intend to bring you examples of phishing and other malicious emails with highlighting suspicious characteristics.  It is hoped that this will help people spot malicious email more easily.  Additionally, it should also be useful in helping people avoid suspicious characteristics in genuine messages. Here is the first example which … Continue reading “Recent Phishing Email”