Phishing message example:
In this type of scenario, the scammer is looking to see if the user responds to the spoofed supervisor’s email. At that point, the scammer starts up a conversation to get the target’s phone number and then text them that they need the email recipient to obtain something on the spoofed supervisor’s behalf, usually gift cards, with the promise they will be paid back.
Sample of email correspondence with the scammer:
Clues that it is a phishing message:
- The sender is spoofing an SMU email account.
- The email is pressuring with a sense of urgency.
- While there are no clickable links in this message, they are waiting for the user to respond to see if they took the bait. More information on this type of phishing is available at https://blog.smu.edu/itconnect/2019/01/25/gift-card-phishing-scam-fake-supervisor-email-address/
What to do now?
If you are the recipient of this scam or a similar one, please DO NOT respond any further or click on any URLs you may have been sent. If you have provided gift card numbers or financial information, please contact the SMU Police Department immediately at 214-768-3388.
Whether or not you responded to the scam, please forward the message (with the email headers) to spam@smu.edu. We will also keep track of any other information you submit about the scammers, such as their phone numbers. If you have any further questions, please feel free to email them to infosec@smu.edu.