Phishing email pretending to be RAC

618 views
Skip to first unread message

Chris Sullivan

unread,
Sep 27, 2023, 10:37:31 AM9/27/23
to York Region Amateur Radio Club
I have had a report of a phishing email that appears to be from RAC, and have also received one myself. The from address is chosen at random and the two messages were different.

The message text begins with:Ā  You've received anĀ seĀ­cuĀ­re meĀ­ssaĀ­gĀ­e frĀ­om Phil A McBride Via Radio Amateurs of Canada.

The subject line is:Ā SpeĀ­ciĀ­al ReĀ­pĀ­ort FrĀ­om Radio Amateurs of Canada 9/27/2023

The message also requests a read receipt.

I strongly suggest you delete the message if you see it, and do not send a read receipt.

73,
Chris

Roger Miller

unread,
Sep 27, 2023, 11:11:28 AM9/27/23
to yrarc...@yrarc.org
Thanks for the Heads UP!!!Ā  EmojiEmoji

Hug a musician--they never get to dance!!

Regards, RogerĀ  šŸŽ·Ā  VE3EZ/VE3ROG


--
You received this message because you are subscribed to the Google Groups "York Region Amateur Radio Club" group.
To unsubscribe from this group and stop receiving emails from it, send an email to yrarc.group...@yrarc.org.
To view this discussion on the web visit https://groups.google.com/a/yrarc.org/d/msgid/yrarc.group/803aef59-a73f-4b11-beee-2ee640f9e634n%40yrarc.org.

Chris Sullivan

unread,
Sep 27, 2023, 2:52:39 PM9/27/23
to York Region Amateur Radio Club
Just received from RAC.

Chris

Cybersecurity Update: Phishing attempt being sent to RAC emails


RAC Bulletin SeptemberĀ  27, 2023:

There have been several recentĀ reports from RAC members of phishing attempts by someone purporting to be from Radio Amateurs of Canada.

Microsoft: "
Phishing attacks come from scammers disguised as trustworthy sources and can facilitate access to all types of sensitive data. As technologies evolve, so do cyberattacks."

Phishing attempts use publicly available information to fake legitimacy. In some cases they use the names and contact information of RAC officials to gain your trust. For example, today's phishing attempt falsely states that it originates from "Phil A McBride" and this is not the case. It also uses the fake heading "Radio Amateurs of Canada Closing Special Report '23" to encourage users to open the document by clicking on a link. Please do not!
Ā 

RAC's Cybersecurity Efforts

To date, there have been no direct successful attacks on the RAC computer system. Unfortunately attempts to defraud people through email messages and phone calls are a part of the world we live in today.

We will continue to take measures to ensure that our computer system is as safe as possible and that our members are provided with information.

Radio Amateurs of Canada is continuing to increase our cybersecurity. We do not keep any financial information and only widely available personal information (such as name, call sign and dates relating to current membership) is available in our system so our risks are considerably less than compared to commercial systems.

Note: Radio Amateurs of Canada collects personally identifiable information about you when you voluntarily provide it. When you apply for membership and subscription services, or provide your personal contact information for publication or product orders, every effort will be made to ensure that the information provided will be securely maintained. For more information please see our Privacy PolicyĀ and our Cybersecurity webpage.
Ā 

Tips on Avoiding Email Scams Ā 

Here are a few tips on how to avoid email scams:

--

1) Filter spam.
2) Don’t trust unsolicited email.
3) Treat email attachments with caution.
4) Don’t click links in email messages unless you are confident you know who the sender is.
5) Install antivirus software and keep it up to date.
6) Install a personal firewall and keep it up to date.
7) Configure your email client for security.

---

In closing, any email claiming to have your @myrac.ca address and password is a scam and should be deleted.
Radio Amateurs of Canada will never ask people to download files from a third-party site in their email communication.
Always check to see if the sender of a suspicious email has an @rac.ca email address as all RAC officials use @rac.
If you are concerned or suspicious always contact the RAC office before opening any files in an email message that appears to come from RAC.
Thank you for continuing to notify us about cybersecurity threats!Ā 

Alan Griffin
RAC MarCom Director


Reply all
Reply to author
Forward
0 new messages