Recent Phish Bowl News Articles
The UCLA Information Security Office would like to raise awareness and urge caution related to an external website impersonating the legitimate UCLA Single Sign On (SSO) Authentication page to carry out credential harvesting attacks. The tactic relies on deceiving individuals to visit the page, often via a phishing email, and then inputting their credentials into the username/password field under the presumption that it is the legitimate UCLA SSO page. We are in the process of collaborating with our partners to shut down the host.
We would like to inform you about a new phishing campaign that targets Microsoft 365 users requesting them to change their password due to account expiration.
Fraudulent Employee Direct Deposit Information Urgent Update Requests
Impersonation of a leader within the UCLA organization requesting they review a fake Google Doc evaluation.