Phishing scam: "Account Suspended. Check Mailbox Now"


There is a phishing email targeting the McGill community, with the subject "Account Suspended. Check Mailbox Now"". The message asks recipients to upgrade to the newest version of Yahoo Mail by clicking on a fraudulent link. See an example of this phishing message below.

Please DO NOT click on the link or reply to the message. Delete this email immediately! It does NOT come from a McGill source.

This email is a fraudulent attempt to gain access to your personal information. If you have already clicked on the link in this email and submitted any personal information, you should change your McGill Password as soon as possible. See the McGill Password Reset Checklist for instructions.

Example of this phishing message:

Sender name & address: <seems to be a valid McGill person>
Subject: Account Suspended. Check Mailbox Now

Dear Valid User,

Your Mail version is outdated,

Failure to Upgrade to the newest Yahoo Mail 7.1 now will result to a permanent account closure.

[fraudulent link] UPGRADE NOW

Yahoo! © Mail Team 2017

What to do when you receive a suspicious email

If you have received a phishing email or suspect that you have:

  1. Check the list of known IT Security Alerts
  2. If you don't see the one you received, itsupport [at] (contact the IT Service Desk) immediately to report it. Be sure to attach the suspicious message so they can verify its content.

Quick links: