<?xml version="1.0"?>
<News hasArchived="false" page="2" pageCount="2" pageSize="10" timestamp="Tue, 04 Aug 2026 18:57:41 -0400" url="https://my3.my.umbc.edu/groups/itsecurity/posts.xml?page=2&amp;tag=phishing">
<NewsItem contentIssues="false" id="147565" important="false" status="posted" url="https://my3.my.umbc.edu/groups/itsecurity/posts/147565">
<Title>Beware of PayPal "New Address" Emails</Title>
<Tagline>New approach (to phishing). Same goal.</Tagline>
<Body>
<![CDATA[
    <div class="html-content">
    <div>
    <p>Cyberattackers constantly evolve their tactics to bypass organizational defenses.  A recent trend involves exploiting PayPal's gift address feature to deliver phishing messages.  These messages may include a fake support number to trick recipients into calling or malicious links designed to steal account credentials.  In either case, the attacker's goal is to compromise your PayPal account.</p>
    <p>If you receive a PayPal notification about account changes or a sent invoice, <strong>do not</strong> click any links in the email. Instead, directly type the official PayPal URL into your web browser to ensure you're interacting with the legitimate PayPal website, not a fraudulent copy.</p>
    </div>To learn more about this new method of attack: <a href="https://www.bleepingcomputer.com/news/security/beware-paypal-new-address-feature-abused-to-send-phishing-emails/" rel="nofollow external" class="bo">https://www.bleepingcomputer.com/news/security/beware-paypal-new-address-feature-abused-to-send-phishing-emails/</a>
    </div>
]]>
</Body>
<Summary>Cyberattackers constantly evolve their tactics to bypass organizational defenses.  A recent trend involves exploiting PayPal's gift address feature to deliver phishing messages.  These messages...</Summary>
<TrackingUrl>https://my3.my.umbc.edu/api/v0/pixel/news/147565/guest@my.umbc.edu/2b59018686410f6eb3b93de02b62bc12/api/pixel</TrackingUrl>
<Tag>phishing</Tag>
<Group token="itsecurity">IT Security - DoIT Cybersecurity Assurance and Digital Trust</Group>
<GroupUrl>https://my3.my.umbc.edu/groups/itsecurity</GroupUrl>
<AvatarUrl>https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xsmall.png?1761588639</AvatarUrl>
<AvatarUrl size="original">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/original.png?1761588639</AvatarUrl>
<AvatarUrl size="xxlarge">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xxlarge.png?1761588639</AvatarUrl>
<AvatarUrl size="xlarge">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xlarge.png?1761588639</AvatarUrl>
<AvatarUrl size="large">https://assets4-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/large.png?1761588639</AvatarUrl>
<AvatarUrl size="medium">https://assets1-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/medium.png?1761588639</AvatarUrl>
<AvatarUrl size="small">https://assets1-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/small.png?1761588639</AvatarUrl>
<AvatarUrl size="xsmall">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xsmall.png?1761588639</AvatarUrl>
<AvatarUrl size="xxsmall">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xxsmall.png?1761588639</AvatarUrl>
<Sponsor>IT Security - DoIT</Sponsor>
<PawCount>2</PawCount>
<CommentCount>0</CommentCount>
<CommentsAllowed>false</CommentsAllowed>
<PostedAt>Mon, 24 Feb 2025 09:09:35 -0500</PostedAt>
</NewsItem>

<NewsItem contentIssues="true" id="147530" important="false" status="posted" url="https://my3.my.umbc.edu/groups/itsecurity/posts/147530">
<Title>Financial Aid and Job Offers Email</Title>
<Tagline>It seemed phishy because it was!</Tagline>
<Body>
<![CDATA[
    <div class="html-content">
    <div>This morning, several individuals received a phishing email disguised as a job opportunity. We want to thank everyone who reported it. Your reports allow us to take immediate action to protect others.</div>
    <div><br></div>
    <div>If you receive a suspicious email, please report it. Google provides the ability to report phishing in your web browser by clicking the three vertical dots next to the email sent date and selecting "Report Phishing." You can also forward the email to <a href="mailto:security@umbc.edu">security@umbc.edu</a>. Both options create a ticket for our team.</div>
    <div><br></div>
    <div>Phishing is the use of deception to obtain sensitive information. In this case, the email attempted to collect your personal information. There were a couple of red flags that make it clear it is phishing:</div>
    <div><ol>
    <li>The email claimed to be from the Career Center but was sent from a personal Gmail address (not @umbc.edu).</li>
    <li>The link to the UMBC application portal redirected you to a Google Form, not UMBC's official portals.</li>
    <li>The Google Form was asking for personal information.</li>
    <li>The email requested that replies be sent to a personal Gmail address instead of the Career Center's UMBC email address.</li>
    </ol></div>
    <div><img src="https://my3.my.umbc.edu/system/shared/attachments/news/000/147/530/47b6ed0b6b6824c8dc892e2e48b462f9/Phishy%20Email.png" style="max-width: 100%; height: auto;"></div>
    <div><br></div>
    <div>Thank you again to all who reported the phish!</div>
    </div>
]]>
</Body>
<Summary>This morning, several individuals received a phishing email disguised as a job opportunity. We want to thank everyone who reported it. Your reports allow us to take immediate action to protect...</Summary>
<AttachmentKind>Image</AttachmentKind>
<AttachmentUrl>https://assets3-my.umbc.edu/system/shared/attachments/b9e5ca32810e993c30f643ec6e07ec41/6a726e65/news/000/147/530/47b6ed0b6b6824c8dc892e2e48b462f9/Phishy Email.png?1740148103</AttachmentUrl>
<Attachments>
<Attachment kind="Image" url="https://my3.my.umbc.edu/groups/itsecurity/posts/147530/attachments/55666"></Attachment>
</Attachments>
<TrackingUrl>https://my3.my.umbc.edu/api/v0/pixel/news/147530/guest@my.umbc.edu/0b9728621d8f27afc862cd897158196f/api/pixel</TrackingUrl>
<Tag>phishing</Tag>
<Group token="itsecurity">IT Security - DoIT Cybersecurity Assurance and Digital Trust</Group>
<GroupUrl>https://my3.my.umbc.edu/groups/itsecurity</GroupUrl>
<AvatarUrl>https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xsmall.png?1761588639</AvatarUrl>
<AvatarUrl size="original">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/original.png?1761588639</AvatarUrl>
<AvatarUrl size="xxlarge">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xxlarge.png?1761588639</AvatarUrl>
<AvatarUrl size="xlarge">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xlarge.png?1761588639</AvatarUrl>
<AvatarUrl size="large">https://assets4-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/large.png?1761588639</AvatarUrl>
<AvatarUrl size="medium">https://assets1-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/medium.png?1761588639</AvatarUrl>
<AvatarUrl size="small">https://assets1-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/small.png?1761588639</AvatarUrl>
<AvatarUrl size="xsmall">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xsmall.png?1761588639</AvatarUrl>
<AvatarUrl size="xxsmall">https://assets3-my.umbc.edu/system/shared/avatars/groups/000/001/660/859c6838736bc30c98279ed45d7fd70a/xxsmall.png?1761588639</AvatarUrl>
<Sponsor>IT Security - DoIT</Sponsor>
<PawCount>7</PawCount>
<CommentCount>0</CommentCount>
<CommentsAllowed>false</CommentsAllowed>
<PostedAt>Fri, 21 Feb 2025 09:37:54 -0500</PostedAt>
<EditAt>Fri, 21 Feb 2025 09:38:22 -0500</EditAt>
</NewsItem>

</News>
