  • 2017-02-20 Identity 19/02/2017 09:15:03
This is a phishing attempt first reported to CSULB ITS on February 20, 2017.

Sent: Sunday, February 19, 2017 12:15 PM   
Subject: Identity 19/02/2017 09:15:03



The fraudulent email notifies recipients that their email account is inactive and to click on a link to activate the account.  The link goes to a fraudulent site which looks like the CSULB OWA login page.  For your protection, the link has been blocked so that anyone using the campus network cannot access it.  Note that the university does not notify you of "inactive" accounts that you must "activate."  All employees maintain access to their CSULB email until separation from the university.

Intent of the Email

The sender is attempting to capture personal and account information for their own malicious purposes. 


Figure 1: Screenshot of the phishing email


Figure 2: Screenshot of the fake OWA page to which the phishing email links

