[xmca] Use of Katrina tragedy for internet fraud

From: David Daniel Preiss Contreras (davidpreiss@puc.cl)
Date: Fri Sep 02 2005 - 14:15:14 PDT

Watch well where you send your money.

David D. Preiss
home page: http://pantheon.yale.edu/~ddp6/

 ----------Forwarded message ----------
Return-Path: <cio@yale.edu>
Delivered-To: davidpreiss@puc.cl
Received: (qmail 2283 invoked from network); 2 Sep 2005 21:13:42 -0000
Received: from chaiguata.puc.cl (HELO mx2.puc.cl) ([])
         (envelope-sender <cio@yale.edu>)
         by coihuin-smtp.puc.cl (qmail-ldap-1.03) with SMTP
         for <davidpreiss@puc.cl>; 2 Sep 2005 21:13:42 -0000
Received: (qmail 1586 invoked from network); 2 Sep 2005 21:13:41 -0000
Received: from pantheon-po06.its.yale.edu ([])(envelope-sender
        <cio@yale.edu>)by mx2.puc.cl (qmail-ldap-1.03) with DES-CBC3-SHA encrypted
        SMTPfor <davidpreiss@puc.cl>; 2 Sep 2005 21:13:41 -0000
Received: from mr3.its.yale.edu (mr3.its.yale.edu [])by pantheon
        -po06.its.yale.edu (8.12.11/8.12.11) with ESMTP id j82LDU3r027446(version=T
        LSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT);Fri, 2 Sep 2005 1
        7:13:31 -0400
Received: from pantheon-po10.its.yale.edu (pantheon-po10.its.yale.edu [130.1
        32.50.53])by mr3.its.yale.edu (8.12.11/8.12.11) with ESMTP id j82LDSVH03093
        2;Fri, 2 Sep 2005 17:13:29 -0400
Received: from websrv3b.its.yale.edu (websrv3b.its.yale.edu [])
        by pantheon-po10.its.yale.edu (8.12.11/8.12.11) with ESMTP id j82LDQJL00524
        1;Fri, 2 Sep 2005 17:13:28 -0400
Received: from mail pickup service by websrv3b.its.yale.edu with Microsoft S
        MTPSVC;Fri, 2 Sep 2005 17:13:24 -0400
X-Mailer: Microsoft CDO for Windows 2000
List-Software: Yale ITS Message II System (10901)
From: "Philip Long, Chief Information Officer" <cio@yale.edu>
To: "Members of the Yale Community" <itscomm2@yale.edu>
Subject: Protecting Yourself from Internet Fraud
Date: Fri, 2 Sep 2005 17:13:24 -0400
Message-ID: <1a6c01c5b003$27a01440$1a298482@yu.yale.edu>
MIME-Version: 1.0
Content-Type: multipart/alternative;
Thread-Index: AcWwAyebtrZLjwkKQLi3Aep1vsn/iQ==
Content-Class: urn:content-classes:message
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1506
X-OriginalArrivalTime: 02 Sep 2005 21:13:24.0721 (UTC) FILETIME=[27B0B610:01
X-YaleITSMailFilter: Version 1.2b (attachment(s) not renamed)
X-Scanned-By: MIMEDefang 2.52 on
X-imss-version: 2.12
X-imss-result: Passed
X-imss-scores: Clean:32.48629 C:7 M:0 S:5 R:5
X-imss-settings: Baseline:4 C:3 M:4 S:4 R:4 (0.1000 0.1000)

Welcome to or welcome back to campus!
Yale has tremendous resources at your disposal, including an excellent
research and teaching network with outstanding Internet connectivity.
It is unfortunate that the start of this academic year is also marked by the
devastation of Hurricane Katrina to Louisiana, Mississippi and Alabama.
Scam artists are now attempting to profit from this misfortune by tricking
individuals wishing to make donations online. Already in several cases
contributions have been solicited via malicious emails that are pointing
users to phony websites.
If you wish to make donations online safely, please do not directly use
email based web links from uncertain sources - instead, manually connect
with the intended site by entering or looking up the web address yourself in
your own browser. Yale has created a website at http://www.yale.edu/katrina
so that you may connect safely with various agencies regarding the relief
Within the past year identity theft has become a significant problem on the
Internet and is now known as phishing -- the use of bogus but
realistic-looking websites and mass-mailed forged email messages. For more
information on this increasing Internet risk, please visit the following
Yale websites:
regarding identify theft: http://www.yale.edu/its/security/idtheft.htm
regarding phishing: http://www.yale.edu/its/security/phish.html
Always be wary of any electronic mail requests which ask for any personal
information such as passwords, credit card or bank account numbers. Note
that in the past year, several Yale web sites and services have been the
subject of phishing attempts.
This phishing serves as a stark reminder that we all must be alert to the
risks of using the Internet; please keep in mind the following issues for
using Yale's network responsibly and securely:
1. All of Yale's electronic resources are governed by applicable laws and
policies, including Yale's IT Appropriate Use Policy, which is available
along with other IT policies at http://www.yale.edu/its/policy/.
As continuing law suits remind us, the sharing of copyrighted material is
illegal and - obviously - against Yale policies; violators will be subject
to appropriate discipline. There are now many options for legal access to
music via the Internet and, for the past year, Yale has had an arrangement
for an easy legal access to digital music and movies via the "CTrax" service
2. Although the Internet is part of daily life for most of us, all forms of
network communications, such as email and web browsing, have some associated
risks. Each year has brought marked increases in security breaches, virus
infections, and computer vulnerabilities across the Internet and at Yale.
Please remember that we may have to disconnect a compromised computer from
the network to protect the community. You can minimize risk to yourself and
to our community by keeping your machine well managed. Everyone should make
arrangements for keeping your computer up-to-date with security patches,
regardless of what operating system the computer is running. Most of you
obtain professional IT support from a local provider (please see
http://www.yale.edu/its/supportgroups.html for a list of standard support
contacts in each of the schools and departments). For those of you who
maintain your own machine, please refer to best practices for managing your
own machine at http://www.yale.edu/its/security/compsecure.htm.
Among best practices, Yale provides Symantec Anti-Virus for Windows and
Macintosh users which should be installed on all computers (at home and on
the road as well as at Yale - available at http://www.yale.edu/software ).
Symantec AV version 10 now includes protection against new malicious
software threats such as 'spyware'.
3. Finally, Email is one of the most active sources of computer infections
and annoying messages. While there are currently no technological panaceas
to eliminate spam, many virus infected messages and a considerable amount of
spam can be kept out of your email inbox (and therefore at no risk to your
local computer) by using the Virus Quarantine and Spam Management services
available via the Email Account Tool web site at:
https://config.mail.yale.edu . (New students, faculty and staff please
note: these services are "ON" by default; please be sure to see
http://www.yale.edu/email/helpdocs/folder_review.html for information on how
to review the central server-based folders containing your filtered spam and
virus email).
Yale's network provides access to a tremendous suite of resources but
Internet use does carry some risk. A little basic attention can greatly
minimize your exposure.
All of us at Information Technology Services hope you will have a productive
and satisfying year at Yale.
Philip Long, Mailto:Philip.Long@yale.edu
Information Technology Services, Yale University
175 Whitney Avenue, Box 208276
New Haven, Connecticut 06520-8276
Phone: 203.432.3262, 203.432.3330 (fax)
NOTE: This official Yale University message can be viewed at YaleInfo and
the following site:

   Welcome to or welcome back to campus!

   Yale has tremendous resources at your disposal, including an excellent research and teaching network with outstanding Internet connectivity.

   It is unfortunate that the start of this academic year is also marked
   = by the devastation of Hurricane Katrina to Louisiana, Mississippi
   and = Alabama. Scam artists are now attempting to profit from this misfortune by tricking individuals wishing to make donations online. Already in several cases contributions have been solicited via malicious emails that are pointing users to phony websites.

   If you wish to make donations online safely, please do not directly use email based web links from uncertain sources - instead, manually connect with the intended site by entering or looking up the web
   address = yourself in your own browser. Yale has created a website at
   [1]http://www.yale.edu/katrina so = that you may connect safely with
   various agencies regarding the relief = effort.

   Within the past year identity theft has become a significant problem on the Internet and is now known as phishing -- the use of bogus but realistic-looking websites and mass-mailed forged email messages. For more information on this increasing Internet risk, please visit
   the = following Yale websites:

     regarding identify theft: [2]http://www.yale.edu /its/security/idtheft.htm

     regarding phishing: [3]http://www.yale.edu/ its/security/phish.html

   Always be wary of any electronic mail requests which ask for any personal information such as passwords, credit card or bank account numbers. Note that in the past year, several Yale web sites and services have been the subject of phishing attempts.

   This phishing serves as a stark reminder that we all must be alert to
   = the risks of using the Internet; please keep in mind the following issues for using Yale's network responsibly and securely:

   1. All of Yale's electronic resources are governed by applicable laws
   = and policies, including Yale's IT Appropriate Use Policy, which is available along with other IT policies at
   [4]http://www.yale.edu/its/policy/<= /A>.
   As continuing law suits remind us, the sharing of copyrighted material is illegal and - obviously - against Yale policies; violators
   = will be subject to appropriate discipline. There are now many options for legal access to music via the Internet and, for the past year, Yale has had an arrangement for an easy legal access to digital
   = music and movies via the "CTrax" service [5]http:// www.yale.edu/amt/director/faq/cdigix_welcome.html .

   2. Although the Internet is part of daily life for most of us, all forms of network communications, such as email and web browsing, have
   = some associated risks. Each year has brought marked increases in security breaches, virus infections, and computer vulnerabilities
   across = the Internet and at Yale. Please remember that we may have
   to = disconnect a compromised computer from the network to protect the
   = community. You can minimize risk to yourself and to our community by keeping your machine well managed. Everyone should make arrangements for keeping your computer up-to-date with security
   patches, = regardless of what operating system the computer is
   running. Most = of you obtain professional IT support from a local
   provider (please see = [6]http://www.yale.edu/i= ts/supportgroups.html
   for a list of standard support contacts in = each of the schools and
   departments). For those of you who = maintain your own machine,
   please refer to best practices for managing = your own machine at
   [7]http://www.yale.= edu/its/security/compsecure.htm.

   Among best practices, Yale provides Symantec Anti-Virus for Windows and Macintosh users which should be installed on all computers (at
   home = and on the road as well as at Yale - available at
   [8]http://www.yale.edu/software&nb= sp;). Symantec AV version 10 now
   includes protection against new = malicious software threats such as

   3. Finally, Email is one of the most active sources of computer infections and annoying messages. While there are currently no technological panaceas to eliminate spam, many virus infected messages
   = and a considerable amount of spam can be kept out of your email
   inbox = (and therefore at no risk to your local computer) by using the
   Virus = Quarantine and Spam Management services available via the
   Email Account = Tool web site at: [9]https://config.mail.yale.edu&nb sp;. (New students, faculty and staff please note: these services are "ON" by default; please be sure to see [10]http://www yale.edu/email/helpdocs/folder_review.html for information on how = to
   review the central server-based folders containing your filtered spam
   = and virus email).

   Yale's network provides access to a tremendous suite of resources but
   = Internet use does carry some risk. A little basic attention can greatly minimize your exposure.

   All of us at Information Technology Services hope you will have a productive and satisfying year at Yale.

   Philip Long, [11]Mailto:Philip.Long@yale.edu
   I= nformation Technology Services, Yale University
   175 Whitney Avenue, = Box 208276
   New Haven, Connecticut 06520-8276
   Phone: 203.432.3262, = 203.432.3330 (fax)

   NOTE: This official Yale University message can be viewed at
   [12]YaleInfo and the following = site:


   1. 3D"http://www.yale.edu/katrina"
   2. 3D"http://www.yale.edu/its/security/idtheft.htm"
   3. 3D"http://www.yale.edu/its/security/phish.html"
   4. 3D"http://www.yale.edu/its/policy/"
   5. 3D"http://www.yale.edu/amt/director/faq/cdigix_welcome.html"
   6. 3D"http://www.yale.edu/its/supportgroups.html"
   7. 3D"http://www.yale.edu/its/security/compsecure.htm"
   8. 3D"http://www.yale.edu/software"
   9. 3D"https://config.mail.yale.edu"/
  10. 3D"http://www.yale.edu/email/helpdocs/folder_review.html"
  11. 3D"mailto:Philip.Long@yale.edu"
  12. 3D"http://www.yale.edu/yaleinfo"
  13. 3D"https://light.its.yale.edu/messages/UnivMsgs/detail.asp?Msg=108

xmca mailing list

This archive was generated by hypermail 2b29 : Sat Oct 01 2005 - 01:00:10 PDT