Screenshot of malicious email:

A screenshot of a malicious email. The email's wording attempts to trick victims into click on a malicious link.

On October 26th, 2021, a password expiration themed phishing email was sent out from external non-DePaul email account(s).

The malicious email claims that the recipient's password will soon expire, and that they need to update it by clicking on a link.

The link takes victims to a non-DePaul website, which is set up by the malicious actors to harvest the credentials of victims. The credential harvesting website uses some Microsoft logos in an attempt to make the page look more legitimate.

It is always important to remain vigilant when handling email, even when it appears to come from a DePaul email address or other official looking email address. Email addresses and login portals can be spoofed and imitated. Compromised email accounts (e.g. if a fellow DePaul community member fell victim to phishing) are often used to target the community. Keeping your DePaul account secure helps keep the entire community secure.

Some indicators that this email is malicious:
- Grammatical errors​
- An attempt to create a sense of urgency
- A link to a non-DePaul website
- Impersonation of DePaul departments
- Incorrect contact information

Anyone who has entered their credentials into this scam should immediately change their password and report the incident to​