Skip to Navigation | Skip to Content

March 2010

« February 2010 | Main | May 2010 »

March 24, 2010

DaughtersOfColumbus "Lawsuit" Phishing attack

There are new reports about a sophisticated phishing message that purports to come from Crosby & Higgins LLP lawfirm. The message claims that there is "...a lawsuit that we filed against you in court on March 11, 2010... " and requests you click on an URL to open a Word DOC file containing the complaint. This email is NOT legitimate.

Phishing messages phishing messages should be forwarded as an attachment to our email filtering account phishing@nyu.edu. Doing so trains our email filters to prevent such types of messages from arriving into inboxes.

Please note: It is very important to forward the message as an attachment, otherwise our email filters will not be able to parse through the message correctly.

As a reminder of better security practices, always remember that:

  • No NYU community member will ever ask for your account password, especially not over email.
  • Never click on suspicious links in email, especially from unknown, untrusted sources
  • Do not reply back to emails from unidentified, untrusted sources.
  • Only the Office of the General Counsel can act on legal matters on behalf of the University
  • Forward all phishing messages as an attachment to phishing@nyu.edu. This helps train our email filters to block such messages in the future.
  • Messages that request personal information over plaintext email should be regarded as being suspicious. If it is spam, forward it to is.spam@nyu.edu. If you are unsure about the legitimacy of a message, contact the ITS Client Services Center at askits@nyu.edu or 212-998-3333.
  • If a message informs you of an impending "account closure" unless you comply with its demands, it is often a sign that the message is a phishing scam. Do not comply with its requests.

The following sites also provide several useful tips on defending against these types of phishing attacks:


Example Phishing Message


From: XXXXXX@crosbyhiggins.com
Date: Date: March 24, 2010 5:54:08 AM EDT
To: XXX@nyu.edu
Subject: Important Lawsuit notice.

March 20, 2010
Crosby & Higgins
350 Broadway, Suite 300
New York, NY 10013

To Whom It May Concern:

On the link bellow is a copy of the lawsuit that we filed against you in court on March 11, 2010. Currently the Pretrail Conference is scheduled for April 10th, 2010 at 9:30 A.M. in courtroom #33.The case number is 3485934. The reason the lawsuit was filed was due to a completely inadequate response from your company for copyright infrigement that our client Daughters Of Columbus org. is a victim of Copyright infrigement

http://www. daught3s 0f c0lumbus. c0m/XXXXX.XXXX.doc


Daughters of Columbus has proof of multiple Copyright Law violations that they wish to present in court on April 10th, 2010.

March 18, 2010

Connect-Direct, March 2010

Volume 18, No. 4
CONNECT-DIRECT is a monthly electronic publication of NYU's Information Technology Services (ITS), offering computer-related news, security alerts, and other information of interest to people who use IT at NYU. Thank you for reading Connect-Direct!

In This Issue:

News

Reminders

Support & Training

Did You Know?


NEWS

"IT SERVICE" PHISHING SCAM TARGETING NYU COMMUNITY

There are new reports of a sophisticated phishing email message that purports to come from "WEBCTSERVICE/Administrator". The message claims "You have exceeded the limit of your mailbox" and asks you to "re-validate" your account by clicking a link to a non-NYU website, where you are then asked to provide your NYU password, name, and other personal information. The fraudulent message requests that the recipient reply to a non-NYU email address — in recent cases, these have included "@bmc.org", "@yahoo.com.hk", "@admin.in.th", or "@hotmail.com" email addresses.

If you receive this phishing email, do NOT reply to it or click the link that it contains. If you have received this phishing email and have provided your information, you should IMMEDIATELY go to start.nyu.edu and change your password. (For instructions, see www.nyu.edu/its/askits/public/041206118012839.)

Remember: No one from NYU Information Technology Services will ever ask you for your email password. NYU community members should NEVER REPLY to any email that requests their email login or NYU NetID, password, and date of birth. Instead, they should forward phishing messages as attachments to phishing@nyu.edu. Doing so trains NYU email filters to prevent such types of spam from arriving in inboxes. For more information about phishing emails, read this Ask ITS knowledgebase article: www.nyu.edu/its/askits/public/041202716305490. For more details on this specific phishing scam, read the ITS Computer Security Alert here.

SETTING UP CONFERENCE CALLS AT NYU

Conference calls with six or fewer participants can be conducted from most NYU office phones (see www.nyu.edu/its/telephone/staff/features.html and click your phone model for more information). For conference calls with more than six participants, New York University has partnered with Connex International to provide a way for NYU faculty, administrators, and staff to communicate and collaborate by using audio and web conferencing solutions. Connex has many useful features — it can accommodate up to 125 participants, and offers operator-assisted login, call recording, participant reports, and more. And you can schedule a Connex conference call via an online request form: www.nyu.edu/its/forms/conferencing. For more information about the Connex service, please read this Ask ITS knowledgebase: Audio & Web Conferencing at NYU using Connex.


REMINDERS

NOMINATE A STUDENT FOR THE GOLDSTEIN OR SADOWSKY PRIZE

Each spring, ITS invites nominations of NYU students for two prizes. Nominations are accepted from any member of the NYU community.

The Max Goldstein Prize
The Max Goldstein Prize is awarded to an NYU undergraduate student who has applied computing in a creative and practical way to improve the academic, cultural, or social life of the NYU community. The prize consists of a cash award of $500.

The deadline for nominations is Friday, March 19. Please send nominations for the Goldstein award to William Fry, ITS Student Technology Services, at william.fry@nyu.edu. Include the student's full name, school and class year, your relationship to the nominee, and a description or example of the accomplishment(s) that qualify him or her for the prize.

The George Sadowsky Prize
The George Sadowsky Prize of $500 is awarded to a student who exhibits exemplary innovation in using the Internet for community service.

Nominations may be sent by Friday, March 19, to Heather Rogers, Office of the CITO, 10 Astor Place, 5th Floor, or via email to heather.rogers@nyu.edu. Please send a description of the nominee's work/project, contact information (mailing address, phone number, email) for both the student nominee and the nominator, and a description of the relationship of the nominator to the nominee. If a website is involved in the project, please send the website address as well.

PRINT FROM ANYWHERE ON NYU-NET TO ANY ITS PRINT STATION

The ITS Print Service offers convenient, easy-to-use printing while also conserving resources. NYU community members can send documents from any NYU-NET connected computer to the ITS Print Service, then print their documents at any ITS Print Service printer.

For example, you can send your document from your dorm room, from on-campus offices and labs, or from any NYURoam wireless location — and then print it at any ITS Print Service location! There are ITS Print Service printers at all ITS Academic Technology Centers & NYUHotSpots, and at the ITS-affiliated College of Arts & Science Learning Center (see www.nyu.edu/its/labs for locations & hours). And in the next several months, there will be ITS Print Service printers at additional locations, extending your options as well as the hours during which you can pick up your documents.

Students, faculty, and staff automatically receive an ITS Print Service grant every semester, from which printing charges are deducted. Should an individual use up his or her grant, Campus Cash or a Bobst Library Reusable Card can be used instead; faculty and staff may also obtain a departmental card. Please see www.nyu.edu/its/print for more about the ITS Print Service, and visit www.nyu.edu/its/software/#print to download the ITS Print Service software, which enables you to send documents to the ITS Print Service from your own Windows or Macintosh computer.


SUPPORT & TRAINING

USING MATLAB AT NYU: FREE MATLAB SEMINARS

MathWorks will be conducting two free, on-campus MATLAB seminars for NYU community members with beginner-to-expert MATLAB experience. "Technical Computing with MATLAB and Parallel Computing" will be taking place on March 29 from 9-11am and "Financial Modeling, Analysis, and Parallel Computing with MATLAB" on March 30 from 10-11am.

For further details and to register, interested NYU community members can visit Using MATLAB at New York University at the MathWorks website.

MATLAB is a technical computing environment for high performance numeric computation and visualization. Matlab integrates numerical analysis, matrix computation, signal processing, and graphics in an easy to use environment without using traditional programming. For more information on MATLAB's availability at NYU, visit the Research Software page within the ITS website.

ITS & NYU LIBRARIES CLASSES

ITS and the NYU Libraries offer a variety of free classes that can help you take advantage of the technology and Library resources available to you in support of your research and coursework.

ITS classes (www.nyu.edu/its/classes) include NYU Blackboard training, as well as workshops in the use of the NYURoam wireless network and (in collaboration with the Libraries) statistics and mapping software.

NYURoam Wireless Workshops are held throughout the semester every Wednesday from 4-6pm in the Kimmel Center Second Floor Commuter Lounge. Please see www.nyu.edu/its/forms/wireless for the full schedule and to register for a workshop session.

The Libraries also offer an extensive set of workshops, classes, and tours on the topic of Library resources and tools. Visit http://webapps.library.nyu.edu/classes for details and to register.

DID YOU KNOW?

SEARCH THE SOFTWARE & TECHNOLOGY RESOURCES AVAILABLE AT THE ITS LABS

The ITS website features robust, searchable lists of all ITS Lab software and hardware resources at www.nyu.edu/its/labs/software.html and www.nyu.edu/its/labs/hardware.html. These are easy to use and allow you to tailor the search function to suit your particular technology needs.


MORE ABOUT CONNECT-DIRECT
CONNECT-DIRECT is a monthly electronic publication of NYU's Information Technology Services (ITS). The first issue of each semester is mailed to the entire NYU community to convey important information, and all faculty, staff, students, and administrators are automatically subscribed to receive this newsletter each month. We hope you will find it useful and informative. For more about this publication, including information on subscribing/unsubscribing from the email newsletter, please visit www.nyu.edu/its/pubs/connect/direct.

Thank you for reading Connect-Direct!

March 09, 2010

Beware of "IT Service" phishing message

There are new reports about a sophisticated phishing message that purports to come from "WEBCTSERVICE/Administrator". The message claims that "You have exceeded the limit of your mailbox" and requests you "re-validate" your account by clicking on a link to a non-NYU website. This website then asks for your NYU password, name, and other personal information to avoid shutting down your NYU email account. The fraudulent message requests that the recipient reply back to non-NYU email accounts, and in this case, "@bmc.org", "@yahoo.com.hk", "@admin.in.th" or "@hotmail.com" email addresses.

NYU community members should NEVER REPLY TO ANY email that requests the recipient's email login name and password. Instead, forward phishing messages as an attachment to our email filtering account phishing@nyu.edu. Doing so trains our email filters to prevent such types of spam from arriving into inboxes.

Please note: It is very important to forward the message as an attachment, otherwise our email filters will not be able to parse through the message correctly.

As a reminder of better security practices, always remember that:

  • No NYU community member will ever ask for your account password, especially not over email.
  • Do not reply back to emails from unidentified, untrusted sources.
  • Forward all phishing messages as an attachment to phishing@nyu.edu. This helps train our email filters to block such messages in the future.
  • Messages that request personal information over plaintext email should be regarded as being suspicious. If it is spam, forward it to is.spam@nyu.edu. If you are unsure about the legitimacy of a message, contact the ITS Client Services Center at askits@nyu.edu or 212-998-3333.
  • If a message informs you of an impending "account closure" unless you comply with its demands, it is often a sign that the message is a phishing scam. Do not comply with its requests.

The following sites also provide several useful tips on defending against these types of phishing attacks:


Example Phishing Message


You have exceeded the limit of your mailbox set
by your WEBCTSERVICE/Administrator, and you will be having
problems in sending and recieving mails Until You Re-Validate.
To prevent this, please click on the link below to reset your account.
CLICKHERE: http://xxxxx.1x2x3x4.com

Regards,
IT Service
System Administrator