23 April 2008 - 3:51Portland State University Students Fall For Bait In Phishing Attack

Thousands of teachers and students at Portland State University (PSU) received phishing emails recently. The email messages were designed to appear as if they had been sent by the university’s IT and User Support Services departments. The content of the email messages differed. However, they all requested users to disclose their passwords and usernames to the sender.
Spammers often generate this type of attack which is called “spear phishing.” The email accounts of many campus students in Oregon have been threatened by these spam attacks. Phishing involves scammers sending out bulk email messages that appear to be sent from trusted organizations such as financial institutions to convince users to respond. By pretending to be a trusted representative of the organization, the scammers are often able to establish trust of recipients.
The Associate CIO of Technology Services at PSU, Janaka Jayawardena, reported that the scammers got personal in this latest attack. The spear phishers decided to impersonate Jayawardena in the spam email messages. Although most recipients chose to report or ignore the emails, some users responded. Unfortunately, scammers were then able to compromise their email account and sent out mass emails using those accounts.
Jayawardena expresses concern that these spear phishers may target the PSU’s Student Information System, BanWeb. If these accounts are compromised, spammers could access students’ confidential information such as financial aid details, school schedules and contact details.
Email hosting firms such as Yahoo! and Hotmail began to notice a flood of spam email messages from pdx.edu accounts. They ended up blacklisting incoming emails from all Portland State users.
IT officials at the university believe these latest attacks were instigated by multiple groups, rather than just one. However, they have not identified who is responsible. Some of the ISPs have been traced to phishers in Nigeria and India, although many attackers used an ISP anonymizer program called Tor which disables any attempts at tracking.
No Comments | Tags: Link Spam, Spam
