"Your Mailbox" Phish


LSU Personnel started receiving a phishing e-mail on February 15th, 2017 related to a email mailbox. 

Subject of the Phishing e-mail - Your Mailbox

Sender Name - Internal LSU User

Sender e-mail address - Internal LSU Address*

*Internal accounts can be compromised and used by malicious actors to send phishing e-mails, in order to appear more authentic.

Content of the phishing email

The content of the message states the following (Links and other descriptors have been removed for security purposes):

Your mail box is cramped with unsolicited mails and has been blocked due to spammed mails, you can no longer send out mails or receive,  to restore your spam filter so you could start sending and receiving mails. Click on Support and log in to validate your email today.

Thank you.

Help-Desk Administrator.

With best regards

LSU © 2017  All Rights Reserved.

Screenshot of the phishing site

The URL provided in the e-mail does not belong to LSU and directs the user to a third-party site. The third party site, looks like below:

screenshot of phishing site

NOTE: ALWAYS verify the URL provided in the e-mail and please note that LSU will not ask you to verify your accounts in such a fashion.