ul

0 views
Skip to first unread message

Facunda Ganesh

unread,
May 29, 2024, 3:26:00 PM5/29/24
to vecdubupo

Microsoft prioritizes account security and works to prevent people from signing in without your permission. When we notice a sign-in attempt from a new location or device, we help protect the account by sending you an email message and an SMS alert. If your phone number or email changes, it's important to promptly update the security contact info on the Security basics page so we can work with you to keep your account secure and active.

If you sign in to your account while traveling or if you install a new app that signs in with your account, you may get an alert. We just need you to provide a security code so we know it was you, and that your account is safe.

Text Messages from Microsoft Genuine or Phishing


Download ››››› https://t.co/5CBtzwchzk



If there was an unusual sign-in attempt for your account, you'll get an email or text message. We'll send a message to all your alternate contact methods. To help protect your account, we'll need you to provide a security code from one of these contacts. This step prevents people who aren't you from signing in and lets us know if it was just you signing in from an unusual location or device.

If you aren't sure about the source of an email, check the sender. You'll know it's legitimate if it's from the Microsoft account team at account-security...@accountprotection.microsoft.com.

We may have blocked your sign-in if you're using a new device, if you installed a new app, or if you're traveling or in any new location. This security measure helps keep your account safe in case someone else gets your account information and tries to sign in as you. To unlock your account, follow the instructions on the sign-in screen and select where we can send you a security code. After you've received the code, enter it to access your account.

If you received an email or text alerting you to an unusual sign-in attempt on your account but you haven't done anything different with your account recently, follow these steps to review your account security:

If you think someone else may have accessed your account, go back to the Security basics page and select Change password. Create a strong password that you can remember, and don't share it with anybody else.

Try to reset your password with the instructions listed in When you can't sign in to your Microsoft account. Starting with this step saves you extra effort if you accidentally signed in with a different account than the alert was for.

If that doesn't work, try to sign in to your account again. Select Forgot my password on the sign-in page, and then select I think someone else is using my Microsoft account. Follow the instructions to recover your account.

A phish is fraudulent email pretending to be from a genuine organization you may be familiar with, trying to convince you to give up sensitive information. It may appear to come from your bank, credit card agency, a loan institution, or even the University. The most common phishing seen at the University appears to come from our own email team or Service Desk, but is really someone intent on stealing our information.

Always question anything that asks for your username and password, or any other sensitive information. No one at the university will legitimately ask for that information. If someone does, they're trying to steal your data, misuse your resources, or both.

Messages in a phish usually don't flow very well and contain grammatical errors and spelling mistakes. Legitimate companies with whom you have established a relationship with will often send you emails with a personalized introduction, so if the email begins with a generic greeting like "Dear Customer" inspect the email for other signs of phishing.

If there are links in the message, don't click on them yet. Most phishing messages direct you to click on a link in the message to "verify your identity," but, instead send you to another website that tries to collect your information and even remotely compromise your computer. Before you click on any link, move your mouse pointer over the link, but do not click. Floating the mouse pointer over a link will show you the true destination of the link, regardless if the link says "Click here" or anything else.

Note: If you float your mouse pointer over a link and see owa.uthscsa.edu in the initial part of the URL, make note that Outlook Web Access (OWA) rewrites links to go through a redirector on the OWA server for security reasons. The redirector (/redir.aspx) obfuscates or obscures the mailbox name that would otherwise be in the HTTP headers. Use extreme caution since there is no way to verify the actual destination of the link. Here is an example of a URL that starts with owa.uthscsa.edu but redirects the user to a malicious website:

Does the message include some form of threat? Phishing messages try to generate a sense of urgency by telling you something bad will happen if you don't comply, the most common being that your account will be blocked or canceled.

Many phishing messages claim to come from the "IT Help Desk". The official name of the department is "IMS Service Desk", as shown in Example 1. Example 2 shows a signature block sent on behalf of the Information Security Office.

Clicking on a link in a phish sends you to a web site outside the control of the University. Many phishing sites are well-researched and well-designed to look like the real thing, and some just put fields for the data they want to steal. In either case, many of those sites also have applications running in the background, silently probing your computer for a way in. Your computer could be infected and you wouldn't necessarily know it; this is referred to as a "drive-by infection."

A note from Information Security: It's obvious from above that the best way to deal with a phish is to recognize it when you see it and to notify the appropriate personnel. Clicking in the phishing message or accidentally giving away your login credentials involves a great deal more work for everyone. It is a guaranteed loss of productivity while your computer is off the network and you can't get any work done. Also, once your computer is compromised, data loss or data theft are possible no matter how quickly technical support personnel gets your computer cleaned up.

Web Privacy Links from websites affiliated with The University of Texas Health Science Center at San Antonio's website (uthscsa.edu) to other websites do not constitute or imply university endorsement of those sites, their content, or products and services associated with those sites. The content on this website is intended to be used for informational purposes only. Health information on this site is not meant to be used to diagnose or treat conditions. Consult a health care provider if you are in need of treatment.

Has anyone else been getting these text messages (supposedly) from @Airbnb? I am attaching a screenshot of 3 different texts I have received. The all start out by saying "Your Airbnb verification code is: XXXX." However, they have been delivered during the night when I have been sleeping, and I cannot figure out the correlation to any legitimate activity re my Airbnb account that these codes could possibly be associated with.

I have just finished filing a report with the FTC, and would encourage everyone in the US to file a report as well: , After all, part of their duty, as stated on their website is to protect us from, at the very least, bad business practices. I think we should all be concerned that these texts are the result of some sort of Airbnb hack. As we know, our personal and financial information is tied to our phone numbers on file with Airbnb. If enough people file a complaint with the FTC, at least it will bring a fresh and unbiased set of eyes to this potentially harmful problem. If Airbnb has been hacked, there is no telling where our information will end up or how it will be used. Airbnb's answers of "We don't know" or "It's a test" or "Just block the texts" are all unacceptable and would NEVER BE ACCEPTED by the general public were this another company such as PayPal for example. Airbnb is a platform that has access to our financial information as well as our personal information. They should be held to the same standards as any other company out there!! A "support ambassador" telling us to go read the comments on this community forum, IS NOT A SOLUTION!! If something malicious has been installed or your phone has been infected, this will affect ALL of the information and apps on your phone; not just Airbnb's app.

Don't be intimidated as you start to fill out the FTC form here: Simply select "something else" in order to progress to the next page. Mine is now filed and at least I feel better that I have done something rather than sit around and accept Airbnb's pathetic excuses or explanations,--if they can even be called explanations as it doesn't appear that they know what's going on.

Freaked me out because my tenant just went nuts and hopefully he'll move soon. So I was thinking maybe he signed me up for something as he has my email and phone. I reset my password. Anyway, found this forum googling the text.

We have noticed an increase in fraudulent activity recently, particularly in the form of text messages informing members of large purchases being made on their card, along with a link to a non-UKFCU website. UKFCU will NEVER text you and ask you to click on a link to verify a purchase. If you receive such a text message, please do not click on the link. If you suspect fraud, please give us a call at 1-800-234-8528 or (859) 264-4200.

WhatsApp is an application that allows you to message and call your friends and family worldwide. However, due to a new scam, the next WhatsApp message you receive may come from a cybercriminal instead of a trusted contact.

Previously, you would have only received a personal call from a live agent if fraud was suspected. The new system will allow you to receive an automated text message that easily walks you through reviewing suspicious activity on your account. If we miss your text response, you will receive an automated call and email fraud alert to ensure you have been notified.

bcf7231420
Reply all
Reply to author
Forward
0 new messages