What’s New

Showing items tagged notice. Show All

Account data breach: Drizly

Credentials Breach Report

In July 2020, an online alcohol delivery service, Drizly, suffered a data breach. This breach contained 2.5 million customers data that was sold online, and then posted on a hacking forum. The...

Posted: August 24, 2020, 12:27 PM

Account Data Breach: Havenly

Credentials Breach Report

In June 2020, Havenly, an interior design website, suffered a data breach. Approximately 1.4 million members' personal information was exposed. This data includes names, email, phone numbers,...

Posted: August 24, 2020, 12:25 PM

Account Data Breach: Promo

Credentials Breach Report

In June 2020, a marketing video creator website, Promo, suffered a data breach. 22 million users' personal information was leaked on an online hacking forum. This data includes names, email,...

Posted: August 24, 2020, 12:24 PM

Account Data breach: ProctorU

Credentials Breach Report

In June 2020, ProctorU, an online examination service, suffered a data breach. Over 444K user records were exposed and posted to an online hacking community. These records contain names, emails,...

Posted: August 24, 2020, 12:21 PM

Microsoft SharePoint Phishing Scam

A Scam Targeting Microsoft SharePoint Users

Malicious actors are using Covid-19 and current economic conditions to exploit victims with new phishing scams. The article linked below talks about two similar phishing scams. One scam claims to...

Posted: August 24, 2020, 12:20 PM

"Quick Response" - A UMBC Impersonation Scam

A Common Scam That Still Works

Recently DoIT has been notified that an email scammer has been trying to impersonate other UMBC staffers. The email comes from a scammer who is claiming to be someone from UMBC and has the Subject...

Posted: August 24, 2020, 12:19 PM

Account Data Breach: Truefire

Truefire Data Breach

In February 2020, the guitar tuition website TrueFire suffered a data breach. Over 600,000 individuals were affected. Information such as names, emails, addresses, account balances, and passwords...

Posted: August 21, 2020, 12:14 PM

“QUICK REQUEST” UMBC Impersonation Scam

Another Example Of A Gift Card Scam Targeting UMBC accounts

The DoIT has recently been notified of a malicious actor trying to impersonate a UMBC staffer. This scammer is sending emails with the subject line “QUICK REQUEST” and asking victims if they are...

Posted: August 20, 2020, 12:01 AM

“TASK” UMBC Impersonation Scam

An E-mail Exchange With A Scammer

Recently the DoIT has been notified of a malicious actor trying to impersonate a UMBC staffer. The phishing email has the subject line “TASK” and a chain of emails from the scammer can be seen...

Posted: August 18, 2020, 6:00 PM

Office 365 phishing via malicious OAuth apps

You Can Be Tricked Into Giving Access To Your Files

During the pandemic, Microsoft has seen a rise in phishing campaigns. One such campaign uses the Office 365 phishing via malicious OAuth apps. The phishing attack attempts to trick individuals...

Posted: August 18, 2020, 5:53 PM