Close Menu
    Facebook X (Twitter) Instagram
    Trending
    • 5 Active Malware Campaigns in Early 2025: What You Need to Know
    • 10 Critical Network Pentest Findings IT Teams Overlook
    • Report Phishing Instantly with PhishAlarm
    • Password Reuse Epidemic: Nearly Half of User Logins Compromised
    • Women in Cybersecurity: Interest, Exposure, or Just Stereotypes??
    • Stay Ahead of Scammers in 2025
    • Cybersecurity Alert: Risks of Abandoned Websites
    • DHS Unveils Playbook for the Deployment of Artificial Intelligence for the Public Sector
    Fordham University Information Security and Assurance
    • Information Security and Assurance Homepage
    • Privacy Blog
    • About
    Fordham University Information Security and Assurance
    You are at:Home»Cyber Security Awareness Month Tip»Phishing & Spoofing
    Cyber Security Awareness Month Tip

    Phishing & Spoofing

    By Gerald Johnson Jr.October 14, 20213 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Copy Link

    Phishing is a type of cyber attack that utilizes emails or malicious websites to collect your personal and financial information or delivers malware to your machine. Cybercriminals try to hook or bait you to click on a link or open an attachment to infect your machine and create vulnerabilities.

    Spoofing attacks disguise email addresses, sender names, phone numbers, and websites that you trust and they use this trust to deceive you. The deception is usually done by changing one letter, symbol, or number within the name of the trusted source. This leads you to believe that you are actually interacting with the trusted source and leads you to inadvertently download malicious content, disclose sensitive information, or even send money.

    Here are some examples from the Federal Trade Commission’s OnGuardOnline of what attackers may send to phish for sensitive information:

    • “We suspect an unauthorized transaction on your account. To ensure that your account is not compromised, please click the link below, and confirm your identity.”
    • “During our regular verification of accounts, we couldn’t verify your information. Please click here to update and verify your information.”
    • “Our records indicate that your account was overcharged. You must call us within 7 days to receive your refund.”

    What Can You Do?

    1. Play hard to get with strangers
      If you are unsure about an email sender, do not repond or click any links or open attachments. Consider reaching out to the email sender through a second means of communication to confirm the legitimacy of the email. Always be cautious of emails with generic greetings and emails from strangers.
    2. Think before you act
      Cybercriminals attempt to create a sense of urgency to cause you to act immediately. They try to create fear that something is wrong with your account or information. Practice caution with emails that try to get you to act immediately.
    3. Protect your personal information
      Cyber criminals try to use your personal information and details about your life to for social engineering attempts to get you to skip normal security protocols.
    4. Be wary of hyperlinks
      Avoid clicking on links in emails. It is better to open a new web browser and go directly to the website of the intended company. If you want to click a link make sure to hover over it and confirm and verify the authenticity of the link. Ensure URLs begin with “https.” The ‘s’ indicates encryption is used which can help protect your information.
    5. Double your login protection
      Enable multi-factor authentication (MFA) on your accounts.
    6. Use strong passwords
    7. Install and update anti-virus software
      All your connected devices should have an antivrus software which you regularly update. Consider setting up automatic updates for that software.

    How to report

    You may report potential phishing and malicious emails with one click from your Fordham Gmail safely and in real-time with the Cofense Reporter Gmail add-on.  On web browsers the Cofense Reporter button (which looks like a fish) will appear on the right side of the page in Gmail and on mobile devices it will appear below the opened email. You can learn more about Cofense here: https://secureit.fordham.edu/cofense-reporter/

    Remember to reach out to your Fordham IT team if you are unsure about something or have a question or concern. IT Customer Care can be reached by calling (718) 817-3999 or via email HelpIT@fordham.edu.

    Sources: cisa.gov

    Share this:

    • Click to share on X (Opens in new window) X
    • Click to share on Facebook (Opens in new window) Facebook
    • Click to share on LinkedIn (Opens in new window) LinkedIn

    Like this:

    Like Loading...
    Cybersecurity Awareness Month Tip Phishing Security Awareness
    Previous ArticleProtecting Your Privacy Online
    Next Article Phishing with Shortened LinkedIn® URLs

    Related Posts

    5 Active Malware Campaigns in Early 2025: What You Need to Know

    10 Critical Network Pentest Findings IT Teams Overlook

    Report Phishing Instantly with PhishAlarm

    Follow Us on Twitter!
    Follow @FordhamSecureIT
    My Tweets
    Archives
    Categories
    • AI (1)
    • Alerts (384)
    • CISO (19)
    • Cyber Security Awareness Month Tip (150)
    • Data Privacy Week (2)
    • Executive Director (1)
    • Exploits and Vulnerabilities (35)
    • General Information (34)
    • Identity and Access Management (12)
    • Identity Theft (26)
    • Jason Benedict (19)
    • Legitimate Email (14)
    • Malicious Email (24)
    • Mobile (25)
    • Network Security (2)
    • News and Events (143)
    • Newsletter (13)
    • Password (17)
    • Phishing (333)
    • Phishing Email (340)
    • Privacy (10)
    • Ransomware (9)
    • Scam (104)
    • Security Awareness (262)
    • Security Guides (34)
    • Social Engineering (12)
    • SPAM (40)
    • Suspicious (6)
    • Telework (2)
    • Teleworking (3)
    • Trojan (7)
    • Uncategorized (9)
    • Virtual Meeting (4)
    • Virus (28)
    • Viruses (8)
    • World Backup Day (1)
    • Zoom (6)
    Tag Cloud
    Alerts Artificial Intelligence Backups cell phones CISO Cybersecurity Awareness Month Tip Cybersecurity Month Data Privacy Device email Exploits and Vulnerabilities fordham fraud Identity and Access Management Identity Theft Information Security Guides Jason Benedict Legitimate Email malicious email Mobile Multi-Factor Authentication networks Network Security News and Events Newsletter online safety Online Shopping Password Phishing Phishing Email Privacy ransomware scam scams Security Awareness social engineering Social Media spam trojan Virus Viruses Wireless wire transfer scam World Backup Day zoom
    About
    About

    Founded in 1841, Fordham is the Jesuit University of New York, offering exceptional education distinguished by the Jesuit tradition to more than 15,100 students in its four undergraduate colleges and its six graduate and professional schools.

    Copyright © Fordham University
    Facebook X (Twitter) Instagram YouTube LinkedIn
    © 2025 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.

    %d