Skip to main content

Security Alert: False "President Pollack" e-mails w/malicious PDF

Date:
2019-01-25 18:14:00
Status:
Closed
Brief Description:
Cornell is receiving an atypical number of phishing messages claiming to be from President Pollack, with "ACTION REQUIRED" and a PDF linking to a malicious external site.
Current Status:
N/A
Services Affected:
Email and Calendar
Full Description:
Cornell is receiving an atypical number of phishing messages claiming to be from President Pollack, with "ACTION REQUIRED" and a PDF linking to a malicious external site.

These messages are actually from a (probably compromised) e-mail account at another university. If you receive unsolicited and seemingly urgent messages from the president, please confirm their authenticity before acting on them. Suspicious message may be forwarded to the IT Security Office for analysis, using the instructions at http://www.it.cornell.edu/services/guides/facstaff_email/headers.cfm and e-mailing security-services@cornell.edu .