Security Alert: Office 365 Email Phishing on Campus – October 3, 2018

Risk: High

Details: The Information Security Office has received reports of phishing emails purporting to be from BJC personnel, however, the email addresses are being spoofed and used against Wash U. The phishing samples have had infected DOC files attached referring to Outstanding Invoice or Balance Discrepancies.

Action: Do not try to open any suspicious files you were not expecting. If you receive emails that you believe to be phishing attempts, please notify the Information Security Office via email: infosec@wustl.edu.

About the author