<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0" xml:base="https://its.ucr.edu/">
  <channel>
    <title>Information Security</title>
    <link>https://its.ucr.edu/</link>
    <description/>
    <language>en</language>
    
    <item>
  <title>New Identity and Access Management Infrastructure at UCR </title>
  <link>https://its.ucr.edu/iamriverside-move</link>
  <description>&lt;span&gt;New Identity and Access Management Infrastructure at UCR &lt;/span&gt;
&lt;span&gt;&lt;span&gt;jmenende&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2023-03-13T12:10:48-07:00" title="Monday, March 13, 2023 - 12:10"&gt;Mon, 03/13/2023 - 12:10&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/blog"&gt;More Blog Posts&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-new-iam-2_0.png?h=3c4f9822&amp;amp;itok=sVtBOKha 1x" media="all and (min-width: 1401px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-new-iam-2_0.png?h=3c4f9822&amp;amp;itok=sVtBOKha 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/ucr-its-blog-new-iam-2_0.png?h=3c4f9822&amp;amp;itok=bUA71E7P 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/png" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/ucr-its-blog-new-iam-2_0.png?h=3c4f9822&amp;amp;itok=pjX7gKAC 1x" type="image/png" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-new-iam-2_0.png?h=3c4f9822&amp;amp;itok=sVtBOKha" alt="animated ribbon cutting of portal"&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2023-03-13T12:00:00Z"&gt;March 13, 2023&lt;/time&gt;
    
            &lt;h2&gt;Top 5 Things to Know:&lt;/h2&gt;

&lt;ul&gt;
	&lt;li&gt;Deployment is scheduled to commence March 16, 2023, and conclude &lt;strong&gt;March 21*, 2023&amp;nbsp;&lt;/strong&gt;

	&lt;ul&gt;
		&lt;li&gt;&lt;em&gt;(* Please note that the deployment window has been extended as the result of a campus outage on March 20)&lt;/em&gt;&lt;/li&gt;
	&lt;/ul&gt;
	&lt;/li&gt;
	&lt;li&gt;Campus can expect a disruption of IAM-dependent services during the deployment window&lt;/li&gt;
	&lt;li&gt;Identity creation and management processes previously performed in Enterprise Directory (eDir), eForms, and Temporary NetID System (TNS) will now be performed in IAMRiverside&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;eDir, eForms, and TNS will be decommissioned as part of the deployment of the new solution and, therefore, no longer accessible&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;Access managed through EACS will continue to be managed through EACS&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;em&gt;Read on for detailed information about IAMRiverside and how it affects you as a member of the UCR community.&amp;nbsp;&lt;/em&gt;&lt;/p&gt;

&lt;h2&gt;Deployment of IAMRiverside&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;Deployment of &lt;a href="https://its.ucr.edu/iamriverside" rel=" noopener" target="_blank" title="IAMRiverside Project Page"&gt;UCR’s new identity and access management solution, IAMRiverside&lt;/a&gt;, is scheduled to commence the afternoon of &lt;strong&gt;March 16, 2023&lt;/strong&gt;, and conclude in the early morning hours of &lt;strong&gt;March 21*, 2023&lt;/strong&gt;. &lt;a href="https://youtu.be/qu4kZnRCdFY" rel=" noopener" target="_blank" title="IAMRiverside Project Overview Video"&gt;Watch the IAMRiverside overview video to learn more&lt;/a&gt;.&lt;/p&gt;

&lt;h3&gt;Support Resources &amp;nbsp;&lt;/h3&gt;

&lt;p&gt;Information about IAMRiverside and support resources, including step-by-step guidance, are available on the IAMRiverside project page: &lt;a href="https://its.ucr.edu/iamriverside" rel=" noopener" target="_blank" title="IAMRiverside Project Page"&gt;https://its.ucr.edu/iamriverside&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Those looking for additional support after deployment can &lt;a href="https://docs.google.com/forms/d/e/1FAIpQLSf-wlPJBN3fRMdLJo48CMNgoA-QsoWwhCdLCRfgdNDylPlVUg/viewform?usp=sf_link" rel=" noopener" target="_blank" title="Express interest in attending IAMRiverside Office Hours"&gt;attend the IAMRiverside Office Hour&lt;/a&gt; on Tuesday, March 28, from 1:30 - 2:30 PM (more times to be announced shortly).&amp;nbsp;&lt;/p&gt;

&lt;h3&gt;User Experience During Deployment&amp;nbsp;&lt;/h3&gt;

&lt;p&gt;Campus can anticipate the following during the deployment window:&lt;/p&gt;

&lt;h4&gt;Delay in NetID Creation &amp;amp; Account Updates&lt;/h4&gt;

&lt;p&gt;It is important to note that NetIDs cannot be provisioned during the deployment window. As a result, folks should expect delays in providing system access to new persons, as well as delays in processing any changes made in sources of authority (e.g., UCPath, Banner, etc.) for an existing person. This inconvenience is an unfortunate byproduct of the cutover to the new solution, but also a reminder of how critical this infrastructure is to UCR operations. Please share this information with your unit and try to plan accordingly.&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;h4&gt;Decommissioning of eForms, Enterprise Directory (eDir), and Temporary NetID System (TNS)&lt;/h4&gt;

&lt;p&gt;eForms, eDir, and TNS will be decommissioned as part of the deployment. As a result, these systems will no longer be accessible. Once IAMRiverside is live, functions currently performed in those systems will be performed in IAMRiverside.&amp;nbsp;&lt;/p&gt;

&lt;h4&gt;Disruption to Password Reset&lt;/h4&gt;

&lt;p&gt;Additionally, near the beginning of the deployment window, the ability to reset one’s password in MyAccount will be unavailable for approximately one hour. An alert will be posted in MyAccount to make users aware of this planned service disruption.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;h4&gt;Email Alias Limitation in R’Mail&lt;/h4&gt;

&lt;p&gt;Similarly, during the deployment window, those with R’Mail (Google) email accounts will be unable to use the “send as” alternate alias function when composing emails. Any emails sent during this time will leverage the default setting to “send as” the user’s netID@ucr.edu. However, it should be noted that users can still “send to” all alias email accounts (e.g., scotty.bear@ucr.edu).&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;h4&gt;UCPath Will Be Authoritative Source for Employee and Contingent Worker Account Types&lt;/h4&gt;

&lt;p&gt;Finally, it should be noted that IAMRiverside will look to UCPath as the authoritative source for account type. As a result, some users may notice a change in their access if there is currently a discrepancy between their UCPath designation and any alternate designation provided by eDir or eForms. We believe there are only a handful of units that this applies to, but if you or your staff experience any access issues after Go Live, please ensure that proper attributions have been applied in UCPath and EACS. If access issues persist, please &lt;a href="https://ucrsupport.service-now.com/ucr_portal?id=ucr_home_new&amp;amp;logged_in=false" rel=" noopener" target="_blank" title="Submit a support ticket in the IT service portal"&gt;submit a ticket&lt;/a&gt; to the Identity and Access Management (IAM) team.&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;h3&gt;User Experience After Deployment&amp;nbsp;&lt;/h3&gt;

&lt;p&gt;Upon successful deployment, IAM-related services are expected to resume operations as usual.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;If you experience any access issues after March 20, please ensure that proper attributions have been applied in UCPath and EACS. If access issues persist, please &lt;a href="https://ucrsupport.service-now.com/ucr_portal?id=ucr_home_new&amp;amp;logged_in=false" rel=" noopener" target="_blank" title="Submit a support ticket in the IT service portal"&gt;submit a ticket&lt;/a&gt; for the Identity and Access Management (IAM) team or call BearHelp during normal business hours at 951-827-4848.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Those who previously held eForms and/or eDir permissions will be able to log into iamriverside.ucr.edu using their NetID credentials. For guidance on how to perform specific functions, please refer to the &lt;a href="https://its.ucr.edu/iamriverside#knowledge" rel=" noopener" target="_blank" title="IAMRiverside Knowledge Resources"&gt;knowledge documentation&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;

&lt;h3&gt;Key Features to Note:&lt;/h3&gt;

&lt;ul&gt;
	&lt;li&gt;IAMRiverside introduces a way to provision NetIDs prior to UCPath approval (&lt;a href="https://o365ucr.sharepoint.com/:v:/t/ITSResources/ERbyQqg1HJ1AkEQoTHrjtBkBgItmwPPv42_YVuyMtb4zDQ" rel=" noopener" target="_blank" title="IAMRiverside Interface Overview Video"&gt;watch the interface overview video to learn more&lt;/a&gt;)&lt;/li&gt;
	&lt;li&gt;An automated user match process will help to ensure duplicate accounts are not created for the same individual so long as those creating the account complete important form fields, such as the user’s birthdate and personal email address&amp;nbsp;&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;An individual’s NetID can now be found by searching for the user at &lt;a href="https://profiles.ucr.edu/" rel=" noopener" target="_blank" title="UCR Profiles"&gt;profiles.ucr.edu&lt;/a&gt; and clicking on their profile card (please note that you must be logged into Profiles in order to view)&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;The IAMRiverside system will send notifications to interested parties to communicate system actions and events (e.g., account expiration, creation, modification)&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;Administrators now have access to identity and access reports&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;To learn more, visit &lt;a href="https://its.ucr.edu/iamriverside" rel=" noopener" target="_blank" title="IAMRiverside Project Page"&gt;https://its.ucr.edu/iamriverside&lt;/a&gt;&amp;nbsp;&lt;/p&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/iamriverside-move" data-a2a-title="New Identity and Access Management Infrastructure at UCR "&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fiamriverside-move&amp;amp;title=New%20Identity%20and%20Access%20Management%20Infrastructure%20at%20UCR%20"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Mon, 13 Mar 2023 19:10:48 +0000</pubDate>
    <dc:creator>jmenende</dc:creator>
    <guid isPermaLink="false">1442 at https://its.ucr.edu</guid>
    </item>
<item>
  <title>Information on LastPass Security Breach</title>
  <link>https://its.ucr.edu/iso-alert/information-lastpass-security-breach</link>
  <description>&lt;span&gt;Information on LastPass Security Breach&lt;/span&gt;
&lt;span&gt;&lt;span&gt;npill005&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2023-01-20T11:15:25-08:00" title="Friday, January 20, 2023 - 11:15"&gt;Fri, 01/20/2023 - 11:15&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/iso-alert"&gt;More Security Alert&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/UCR%20ITS%20Blog%20-%20Central%20IT%20Resources.png?h=3c4f9822&amp;amp;itok=uz0WyCH_ 1x" media="all and (min-width: 1401px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/UCR%20ITS%20Blog%20-%20Central%20IT%20Resources.png?h=3c4f9822&amp;amp;itok=uz0WyCH_ 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/UCR%20ITS%20Blog%20-%20Central%20IT%20Resources.png?h=3c4f9822&amp;amp;itok=xqSYZJPn 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/png" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/UCR%20ITS%20Blog%20-%20Central%20IT%20Resources.png?h=3c4f9822&amp;amp;itok=jpc-CMH9 1x" type="image/png" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/UCR%20ITS%20Blog%20-%20Central%20IT%20Resources.png?h=3c4f9822&amp;amp;itok=uz0WyCH_" alt&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2023-01-20T12:00:00Z"&gt;January 20, 2023&lt;/time&gt;
    
            &lt;p&gt;Updated on 3/10/23 to reflect new information&amp;nbsp;&lt;/p&gt;

&lt;p&gt;On December 22nd, LastPass notified its customers that, late in 2022, a hacker was able to obtain the full, encrypted vaults for many or all of its customers. &amp;nbsp;On March 1st, LastPass released an update on the details of the security breach. You can read all the details here &lt;a href="https://blog.lastpass.com/2023/03/security-incident-update-recommended-actions/" title="https://blog.lastpass.com/2023/03/security-incident-update-recommended-actions/"&gt;https://blog.lastpass.com/2023/03/security-incident-update-recommended-actions/&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;Given this new information, the Information Security Office is now recommending that users move from LastPass to a different password management tool.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Please note that the security of the data you store in any password management tool is entirely dependent on the strength of your master password. The weaker your master password is, the easier it will be to break it and allow someone to gain access to your vault. While weaker passwords will be cracked sooner, even stronger passwords will very likely be cracked over time. Because of this, we strongly recommend that you change all passwords, particularly any involved with high-value accounts such as banking accounts.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;UCR staff, faculty, and students who use LastPass should take the following steps to ensure the safety of their accounts.&amp;nbsp;&lt;/p&gt;

&lt;ol&gt;
	&lt;li&gt;Change your LastPass master password.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;Change every password/credential stored within your LastPass vault/account.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;Enable multi-factor authentication for your LastPass account.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;Strongly consider using a different password management tool&amp;nbsp;&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;For updates on this incident, please visit &lt;a href="https://blog.lastpass.com" title="https://blog.lastpass.com"&gt;https://blog.lastpass.com&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;&amp;nbsp;&lt;/p&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/iso-alert/information-lastpass-security-breach" data-a2a-title="Information on LastPass Security Breach"&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fiso-alert%2Finformation-lastpass-security-breach&amp;amp;title=Information%20on%20LastPass%20Security%20Breach"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Fri, 20 Jan 2023 19:15:25 +0000</pubDate>
    <dc:creator>npill005</dc:creator>
    <guid isPermaLink="false">1434 at https://its.ucr.edu</guid>
    </item>
<item>
  <title>Notice of Smishing Texts Targeting UCR Community</title>
  <link>https://its.ucr.edu/iso-alert/2022/12/15/notice-smishing-texts-targeting-ucr-community</link>
  <description>&lt;span&gt;Notice of Smishing Texts Targeting UCR Community&lt;/span&gt;
&lt;span&gt;&lt;span&gt;npill005&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2022-12-14T16:45:14-08:00" title="Wednesday, December 14, 2022 - 16:45"&gt;Wed, 12/14/2022 - 16:45&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/iso-alert"&gt;More Security Alert&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29%20%281%29.jpg?h=3c4f9822&amp;amp;itok=uVF9Wb9n 1x" media="all and (min-width: 1401px)" type="image/jpeg" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29%20%281%29.jpg?h=3c4f9822&amp;amp;itok=uVF9Wb9n 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/jpeg" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29%20%281%29.jpg?h=3c4f9822&amp;amp;itok=qUTc732_ 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/jpeg" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29%20%281%29.jpg?h=3c4f9822&amp;amp;itok=mw_0WR_B 1x" type="image/jpeg" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29%20%281%29.jpg?h=3c4f9822&amp;amp;itok=uVF9Wb9n" alt&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2022-12-15T12:00:00Z"&gt;December 15, 2022&lt;/time&gt;
    
            &lt;p&gt;The Information Security Office has become aware of an increase in spam SMS also known as “smishing” being sent to the UCR community. When cybercriminals "phish," they are sending fraudulent emails that aim to trick the recipient into opening a malware attachment or clicking on a malicious link, and they “smish” when they try to engage potential victims in the same way via text messages.&lt;br&gt;
&amp;nbsp;&lt;br&gt;
This recent campaign, Impersonation of Kim Wilcox targeting – staff and faculty especially middle and upper level management was very active in November, 2022.&lt;/p&gt;

&lt;p style="text-align:center"&gt;&lt;img alt height="232" src="https://lh4.googleusercontent.com/_X0LdBtJhjotuH_-wXpY_nLwjc_XDWVLlS2YbZBiMa7_oJ_yahcbfdVYkeQ3IK0L47uVn4xHJzJmebamvw_wNWsB0ljUbOpvbPurMYYvw5Q8_VP-GrbB4bFXQm6Dy9ILjCFt64FWPrVhHgIBspOXyAzUx6VXiJvOOlO0GxfJqsQNHgYwb7dxP93A-yJTJw" width="402" loading="lazy"&gt;&lt;/p&gt;

&lt;p&gt;Some helpful ways to protect yourself from these smishing attacks include:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Read messages carefully. Oftentimes spam and phishing messages will have weird spacing, incorrect spelling, poor grammar, asking for personal information or requesting you perform some sort of action like logging into a website that looks legitimate but is not.&lt;/li&gt;
	&lt;li&gt;Never click a link from a number you are unsure about. Verify information from the sender via a known safe method of communication.&lt;/li&gt;
	&lt;li&gt;Do not respond to smishing messages instead Report spam texts to your wireless carrier forward all spam text messages to 7726. (Note: not all carriers offer this)&lt;/li&gt;
	&lt;li&gt;SMS is not a secure way of sharing personal information so be wary of anyone requesting this information via SMS. A legitimate business will never request information from you via text messages, unless you have “opted-in” to text messages with them, and then it’s usually just to send you information or ask for verification of services.&lt;/li&gt;
	&lt;li&gt;If you haven’t yet done so, get antivirus for your phone and other handheld devices. Keep the software on them up-to-date.&lt;/li&gt;
	&lt;li&gt;Remove any apps from your devices that you don’t use.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/iso-alert/2022/12/15/notice-smishing-texts-targeting-ucr-community" data-a2a-title="Notice of Smishing Texts Targeting UCR Community"&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fiso-alert%2F2022%2F12%2F15%2Fnotice-smishing-texts-targeting-ucr-community&amp;amp;title=Notice%20of%20Smishing%20Texts%20Targeting%20UCR%20Community"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Thu, 15 Dec 2022 00:45:14 +0000</pubDate>
    <dc:creator>npill005</dc:creator>
    <guid isPermaLink="false">1429 at https://its.ucr.edu</guid>
    </item>
<item>
  <title>Known Issue with PhishAlarm When Using R'Mail to Report</title>
  <link>https://its.ucr.edu/iso-alert/2022/12/14/known-issue-phishalarm-when-using-rmail-report</link>
  <description>&lt;span&gt;Known Issue with PhishAlarm When Using R'Mail to Report&lt;/span&gt;
&lt;span&gt;&lt;span&gt;npill005&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2022-12-14T15:54:02-08:00" title="Wednesday, December 14, 2022 - 15:54"&gt;Wed, 12/14/2022 - 15:54&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/iso-alert"&gt;More Security Alert&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29.jpg?h=3c4f9822&amp;amp;itok=y1osY0Fw 1x" media="all and (min-width: 1401px)" type="image/jpeg" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29.jpg?h=3c4f9822&amp;amp;itok=y1osY0Fw 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/jpeg" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29.jpg?h=3c4f9822&amp;amp;itok=i1TWjhb3 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/jpeg" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29.jpg?h=3c4f9822&amp;amp;itok=bFLv9n8h 1x" type="image/jpeg" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ITS%20Article%20-%20Page%20Header%20%20%281540%20%C3%97%20578%20px%29.jpg?h=3c4f9822&amp;amp;itok=y1osY0Fw" alt&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2022-12-14T12:00:00Z"&gt;December 14, 2022&lt;/time&gt;
    
            &lt;p&gt;The UCR Information Security Office is aware there is an issue with the PhishAlarm reporting tool not working properly for some users on R'Mail. This is an intermittent problem and only affecting some R'Mail users. We are working to find a solution and will provide an update to users once the issue is resolved.&lt;/p&gt;

&lt;p&gt;If PhishAlarm is not working for you, please put in a ticket in SNOW to notify us and we will contact you if we need more information. You can also forward the entire email including headers to Abuse@ucr.edu. Instructions on how to do so can be found in the knowledge base (&lt;a href="https://ucrsupport.service-now.com/ucr_portal?id=kb_article&amp;amp;sys_id=2af24d121b0b849026bd635bbc4bcba1"&gt;KB0011368&lt;/a&gt;).&lt;/p&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/iso-alert/2022/12/14/known-issue-phishalarm-when-using-rmail-report" data-a2a-title="Known Issue with PhishAlarm When Using R'Mail to Report"&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fiso-alert%2F2022%2F12%2F14%2Fknown-issue-phishalarm-when-using-rmail-report&amp;amp;title=Known%20Issue%20with%20PhishAlarm%20When%20Using%20R%27Mail%20to%20Report"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Wed, 14 Dec 2022 23:54:02 +0000</pubDate>
    <dc:creator>npill005</dc:creator>
    <guid isPermaLink="false">1428 at https://its.ucr.edu</guid>
    </item>
<item>
  <title>UCR Calls for Cyber Security Superheroes!</title>
  <link>https://its.ucr.edu/blog/2022/10/01/ucr-calls-cyber-security-superheroes</link>
  <description>&lt;span&gt;UCR Calls for Cyber Security Superheroes!&lt;/span&gt;
&lt;span&gt;&lt;span&gt;ikruc001&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2022-10-11T09:03:54-07:00" title="Tuesday, October 11, 2022 - 09:03"&gt;Tue, 10/11/2022 - 09:03&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/blog"&gt;More Blog Posts&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/its-blog-page-header-1540-578-px-4_0.png?h=3c4f9822&amp;amp;itok=UHKyhylE 1x" media="all and (min-width: 1401px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/its-blog-page-header-1540-578-px-4_0.png?h=3c4f9822&amp;amp;itok=UHKyhylE 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/its-blog-page-header-1540-578-px-4_0.png?h=3c4f9822&amp;amp;itok=5pydTId9 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/png" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/its-blog-page-header-1540-578-px-4_0.png?h=3c4f9822&amp;amp;itok=turInyBe 1x" type="image/png" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/its-blog-page-header-1540-578-px-4_0.png?h=3c4f9822&amp;amp;itok=UHKyhylE" alt="Cyberhero smiles and raises fist prepared to fight the criminals!"&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2022-10-01T12:00:00Z"&gt;October 01, 2022&lt;/time&gt;
    
            &lt;p&gt;As a University on the rise, UC Riverside is on the radar of brilliant students and researchers across the globe. Unfortunately, this global recognition also puts our university on the radar of cyber criminals looking to maliciously exploit our systems and victimize our community.&lt;/p&gt;

&lt;p&gt;Now more than ever, UC Riverside needs heroes—cyber security superheroes, to be exact. That’s why UCR Information Technology Solutions (ITS) &lt;a href="https://its.ucr.edu/cybersmart" rel=" noopener" target="_blank" title="UCR ITS - Cyber Security Awareness Month 2022"&gt;invites you to participate in national Cyber Security Awareness Month&lt;/a&gt; and gain the &lt;a href="https://youtu.be/y0Uh1m_2lHQ" rel=" noopener" target="_blank" title="UCR ITS - Cyber Security Superpowers"&gt;cyber security superpowers&lt;/a&gt; needed to keep our campus safe! &amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Throughout the month of October, the ITS booth will be set up near Coffee Bean &amp;amp; Tea Leaf every Monday and on the east side of the Bell Tower every Thursday. Students, faculty, and staff who visit the booth will be invited to take the Cyber Security Superhero Challenge. &lt;strong&gt;Challenge participants who demonstrate that they have cyber security “superpowers” will be eligible to win fun prizes, including power banks, water bottles, wireless charging pads, and a coveted Cyber Hero t-shirt!&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;In addition to the on-campus events, ITS will run a blind fishing derby in October. At some point during the month, the ITS Information Security Office will send out an email phishing lure to campus. What makes this lure blind compared to ITS’ normal campus phishing simulations is that if you interact with the email you will not be notified that it is a UCR-sanctioned simulation. &lt;strong&gt;The first 10 people to successfully report the tagged blind phish using &lt;a href="https://its.ucr.edu/phishalarm" rel=" noopener" target="_blank" title="UCR ITS - How to Report Suspicious Emails"&gt;PhishAlarm&lt;/a&gt; will receive a $25 Amazon gift card and a limited-edition UCR cyber security challenge coin! &lt;/strong&gt;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;So, do you have what it takes to keep our campus safe? Find out and earn your Cyber Hero cape! Visit &lt;a href="https://its.ucr.edu/cybersmart" rel=" noopener" target="_blank" title="UCR ITS - Be Cybersmart!"&gt;https://its.ucr.edu/cybersmart&lt;/a&gt; to learn how to participate in Cyber Security Awareness Month and strengthen your cyber security superpowers.&amp;nbsp;&lt;/p&gt;

&lt;div style="position:relative;padding-bottom:56.25%;"&gt;&lt;iframe allow="autoplay" allowfullscreen aria-label="UCR Calls for Cybersecurity Superheroes" frameborder="0" height="100%" src="https://www.youtube.com/embed/y0Uh1m_2lHQ" style="width:100%;height:100%;position:absolute;left:0px;top:0px;" title="UCR Calls for Cybersecurity Superheroes" width="100%"&gt;&lt;/iframe&gt;&lt;/div&gt;

&lt;p&gt;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;&amp;nbsp;&lt;/p&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/blog/2022/10/01/ucr-calls-cyber-security-superheroes" data-a2a-title="UCR Calls for Cyber Security Superheroes!"&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fblog%2F2022%2F10%2F01%2Fucr-calls-cyber-security-superheroes&amp;amp;title=UCR%20Calls%20for%20Cyber%20Security%20Superheroes%21"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Tue, 11 Oct 2022 16:03:54 +0000</pubDate>
    <dc:creator>ikruc001</dc:creator>
    <guid isPermaLink="false">1409 at https://its.ucr.edu</guid>
    </item>
<item>
  <title>Notice of Job Offer Scams Targeting UCR Students</title>
  <link>https://its.ucr.edu/iso-alert/2021/07/28/notice-job-offer-scams-targeting-ucr-students</link>
  <description>&lt;span&gt;Notice of Job Offer Scams Targeting UCR Students&lt;/span&gt;
&lt;span&gt;&lt;span&gt;alexandc&lt;/span&gt;&lt;/span&gt;
&lt;span&gt;&lt;time datetime="2021-07-28T15:26:54-07:00" title="Wednesday, July 28, 2021 - 15:26"&gt;Wed, 07/28/2021 - 15:26&lt;/time&gt;
&lt;/span&gt;

            &lt;a href="https://its.ucr.edu/iso-alert"&gt;More Security Alert&lt;/a&gt;
    
            
                &lt;picture&gt;
                  &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-job-offer-scams.png?h=3c4f9822&amp;amp;itok=jJnxb6bH 1x" media="all and (min-width: 1401px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-job-offer-scams.png?h=3c4f9822&amp;amp;itok=jJnxb6bH 1x" media="all and (min-width: 1025px) and (max-width: 1400px)" type="image/png" width="1170" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_m/public/ucr-its-blog-job-offer-scams.png?h=3c4f9822&amp;amp;itok=FJhRUuv1 1x" media="all and (min-width: 768px) and (max-width: 1024px)" type="image/png" width="1023" height="450"&gt;
              &lt;source srcset="https://its.ucr.edu/sites/default/files/styles/article_header_s/public/ucr-its-blog-job-offer-scams.png?h=3c4f9822&amp;amp;itok=gr2Gyjv9 1x" type="image/png" width="767" height="767"&gt;
                  &lt;img loading="eager" width="1170" height="450" src="https://its.ucr.edu/sites/default/files/styles/article_header_l/public/ucr-its-blog-job-offer-scams.png?h=3c4f9822&amp;amp;itok=jJnxb6bH" alt="A suspicious animated envelope that says job"&gt;

  &lt;/picture&gt;

        
            &lt;time datetime="2021-07-28T12:00:00Z"&gt;July 28, 2021&lt;/time&gt;
    
            &lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;The Information Security Office has been working diligently to investigate and defend UCR against a Job Offer Scam that is primarily targeting UCR students. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;div alt="email" data-embed-button="media_browser" data-entity-embed-display="media_image" data-entity-embed-display-settings="{&amp;quot;image_style&amp;quot;:&amp;quot;scale_550&amp;quot;,&amp;quot;image_link&amp;quot;:&amp;quot;&amp;quot;}" data-entity-type="media" data-entity-uuid="f38bb926-5c9f-4bf9-936c-aed34073e810" data-langcode="en" title="email" class="embedded-entity align-right"&gt;  &lt;img loading="lazy" src="https://its.ucr.edu/sites/default/files/styles/scale_550/public/brett-jordan-LPZy4da9aRo-unsplash.jpg?itok=Te43K4LF" alt="email" title="email"&gt;


&lt;/div&gt;


&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;This is a type of email scam in which the attacker will impersonate the identity of a UCR faculty member or administrator. Using social engineering tactics, the attacker will try to trick their targeted victims into sending money or sensitive information through email. For example, these fraudulent emails may ask students to send resumes, bank account numbers, social security numbers, addresses, birthdays, research data, gift card codes, etc. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;In this recent campaign targeting students, the attackers will impersonate UCR faculty and administrators and email students from Gmail accounts. The email is worded like a job offer to solicit personally identifiable information, which is then used to contact the student directly via personal email or phone to persuade the student to provide money or sensitive information, such as a social security number or bank account number. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;In one recent attack the victim believed they received a virtual personal assistant job. The victim received a check and explicit instructions to deposit the check into their personal bank account to purchase gift cards on behalf of the person impersonating a UCR employer. Once the victim sent the gift card codes to the scammer the check was voided, resulting in the gift card money being deducted from the student’s own personal savings.&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;This kind of attack is very similar to &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://its.ucr.edu/BEC-Attacks" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;previous Business Email Compromise (BEC)&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt; scams targeting students, faculty, and staff. As a reminder, here are some tips to prevent yourself from falling victim to these kinds of cyberattacks:&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;ol&gt;
	&lt;li&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="color:#455a64"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="tab-stops:list .5in"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;Locate the “From” field of the email and double-check that the email address of the sender matches&amp;nbsp;&lt;i&gt;exactly&lt;/i&gt;&amp;nbsp;with the address of a trusted UCR faculty or staff member. Next, hit “Reply” and make sure the address showing in the “reply-to” field is the same ucr.edu campus address. Keep in mind that scammers can spoof an email address to make it appear real, so it’s important to ensure the reply-to address isn’t going to a non-campus email address. When in doubt, you can find contact information for faculty and staff at &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://profiles.ucr.edu/app/home" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;profiles.ucr.edu&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;. If you believe the email address to be illegitimate, &lt;u&gt;do not&lt;/u&gt; send a reply to the email or open any attachments. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
	&lt;li&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="color:#455a64"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="tab-stops:list .5in"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;Validate any requests for monetary funds or protected information by taking additional actions, such as calling the person on their UCR office phone number or physically visiting the person’s office or department office to verify the legitimacy of the email.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
	&lt;li&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="color:#455a64"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="tab-stops:list .5in"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;Never send sensitive information over email (i.e., credit card numbers, bank account routing numbers, social security numbers, etc.). If asked to provide sensitive information over the phone, verify that the phone number matches the UCR office phone number of the person you believe you’re speaking with, or ask to call them back at the office number listed on an official UCR directory or website. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
	&lt;li&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="color:#455a64"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="tab-stops:list .5in"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;Other red flags to watch out for include: &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;
	&lt;ul style="list-style-type:disc"&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Having to open an email attachment in order to view the offer&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;No company name provided &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Promise of high pay for very little work&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Spelling and grammar errors or awkward phrasing &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Offers to send money&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Requests for money or gift card codes &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;Requests to communicate using non-UCR channels (text message, non-UCR email, other applications, etc.)&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
		&lt;li&gt;&lt;span style="color:#000000;"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Helvetica&amp;quot;,sans-serif"&gt;You received a job offer but didn’t apply for/are not actively looking for a job &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
	&lt;/ul&gt;
	&lt;/li&gt;
&lt;/ol&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:black"&gt;In general, ITS advises all UCR students, faculty, and staff to be wary of any suspicious emails and to always think twice before responding to any email. Please report any suspicious emails to&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#000000;"&gt;abuse@ucr.edu&lt;/span&gt; (&lt;/span&gt;&lt;/span&gt;&lt;a href="https://ucrsupport.service-now.com/ucr_portal?id=kb_article&amp;amp;sys_id=2af24d121b0b849026bd635bbc4bcba1" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;see complete instructions here&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;). &lt;span style="background:white"&gt;&lt;span style="color:#222222"&gt;To learn more about job fraud, visit the &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://careers.ucr.edu/students/student-jobs/avoid-scams-and-fraud" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;UCR Career Center’s website&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt;. For more cybersecurity tips to protect yourself, visit our website at &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://its.ucr.edu/cybersmart" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;its.ucr.edu/cybersmart&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt;.&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt;If you are a victim of a Job Offer Scam and lost money or sent personal information to the attacker, you should &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://police.ucr.edu/contact" style="color:blue; text-decoration:underline" title="File a report with UCPD"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;file a report with UCPD&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt;. In the event you sent personally identifiable information, it is a common practice to put a &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="https://www.experian.com/blogs/ask-experian/credit-education/preventing-fraud/security-freeze/" style="color:blue; text-decoration:underline"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;Credit Lock&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt; on your credit reports with three major credit bureaus (Equifax, Experian, and Transunion) to mitigate identity theft.&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;

&lt;p style="margin-bottom:11px"&gt;&lt;span style="font-size:11pt"&gt;&lt;span style="background:white"&gt;&lt;span style="line-height:normal"&gt;&lt;span style="font-family:Calibri,sans-serif"&gt;&lt;span style="font-size:12.0pt"&gt;&lt;span style="background:white"&gt;&lt;span style="font-family:&amp;quot;Arial&amp;quot;,sans-serif"&gt;&lt;span style="color:#222222"&gt;ITS would like to thank you for your deliberate efforts in keeping the campus secure. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
    &lt;div class="tags-title"&gt;Tags&lt;/div&gt;
  &lt;div class="tags-list"&gt;
          &lt;div&gt;&lt;a href="https://its.ucr.edu/tags/information-security" hreflang="en"&gt;Information Security&lt;/a&gt;&lt;/div&gt;
      &lt;/div&gt;
&lt;div class="sharing-title"&gt;Share This&lt;/div&gt;&lt;span class="a2a_kit a2a_kit_size_32 addtoany_list" data-a2a-url="https://its.ucr.edu/iso-alert/2021/07/28/notice-job-offer-scams-targeting-ucr-students" data-a2a-title="Notice of Job Offer Scams Targeting UCR Students"&gt;&lt;a class="a2a_button_facebook"&gt;&lt;/a&gt;&lt;a class="a2a_button_x"&gt;&lt;/a&gt;&lt;a class="a2a_button_linkedin"&gt;&lt;/a&gt;&lt;a class="a2a_button_google_plus"&gt;&lt;/a&gt;&lt;a class="a2a_button_email"&gt;&lt;/a&gt;&lt;a class="a2a_button_printfriendly"&gt;&lt;/a&gt;&lt;a class="a2a_dd addtoany_share" aria-label="more options to share" href="https://www.addtoany.com/share#url=https%3A%2F%2Fits.ucr.edu%2Fiso-alert%2F2021%2F07%2F28%2Fnotice-job-offer-scams-targeting-ucr-students&amp;amp;title=Notice%20of%20Job%20Offer%20Scams%20Targeting%20UCR%20Students"&gt;&lt;/a&gt;&lt;/span&gt;&lt;script&gt;
    (function () {
        const customClassName = 'show-for-sr';
        const targetContainer = document.querySelector('.a2a_kit.addtoany_list');
        
        if (!targetContainer) return;

        const addClassToLabels = () =&gt; {
            const labels = targetContainer.querySelectorAll('.a2a_label');
            if (labels.length &gt; 0) {
                labels.forEach(label =&gt; {
                    if (!label.classList.contains(customClassName)) {
                        label.classList.add(customClassName);
                    }
                });
                console.log('Successfully applied show-for-sr class to AddToAny labels.');
                return true;
            }
            return false;
        };

        const observerConfig = { childList: true, subtree: true };
        const observer = new MutationObserver((mutationsList, observer) =&gt; {
            if (addClassToLabels()) {
                observer.disconnect();
            }
        });

        if (!addClassToLabels()) {
            observer.observe(targetContainer, observerConfig);
        }
    })();
&lt;/script&gt;</description>
  <pubDate>Wed, 28 Jul 2021 22:26:54 +0000</pubDate>
    <dc:creator>alexandc</dc:creator>
    <guid isPermaLink="false">1066 at https://its.ucr.edu</guid>
    </item>

  </channel>
</rss>
