The message will request that you follow a link, enter your CalNet username and password, send an expected DUO push, and may redirect the recipient to the legitimate CalCentral app.
It could have any of these subject lines, but they change.
- Issue on your student ID
- issue ith your associate ID
- issue with ѕtudеnt ID
- Isѕue on your ID
- issue with ѕtudеnt ID
- iѕsue with youг associate ID
- Error on your id
- Error on your ID
- Error on lD
What makes this a Phish?
The sender will not be an official campus department. It is often an email address from another higher-ed .edu institution, or possibly a compromised @berkeley.edu account.
Tips if Something Seems Off:
- There is a sense of urgency and often the threat to class enrollment or campus housing eligibility.
- Examining the link will reveal the site is actually a Google site hosted at another university.
- The language of the email does not flow naturally and often seems to be missing key parts.
Follow up with the sender separately
Ifyoudidn’texpectit,rejectitOrfollowupwiththeindividualdirectly via a separate email,call/texttoconfirm
Report and/or flag it
Reporting helps us stop these emails from hitting other students! Your action could help a fellow Bear!
- Open the message
- To the right of the 'Reply' arrow select 'More' (typically denoted with three vertical dots)
- Then 'Report phishing'
- For suspicious messages received by text, please take a screen shot and forward the message to phishing@berkeley.edu(link sends e-mail) For more information visit https://security.berkeley.edu/resources/phishing
Original Message:
