Blue cybersecurity graphic with glowing padlock, network icons over cityscape

Phishing Attempts Target UC Davis Accounts

As we begin a new academic year, UC Davis is warning students, faculty and staff to be vigilant against phishing scams. Scams aimed at taking over accounts and redirecting payroll deposits are on the rise. These attempts may come in the form of emails from real, but compromised, UC Davis accounts and may look legitimate.

Do not respond! Responding to a phishing scam puts you, your data, your identity and your finances at risk.

Recommended Next Steps

  1. Employees: Log in to UCPath (https://ucpath.ucdavis.edu/) and confirm your direct deposit information. It's best to type in the correct URL instead of depending on search results as they can be hijacked.
  2. Keep your password/passphrase, login information and authentication codes private. Do not share them via phone, text or email with anyone. 
  3. Deny Duo (multi-factor authentication) requests you did not initiate or are not expecting. 
  4. Update your password or passphrase.
  5. Use your UC Davis email only for university matters. Use a separate email for personal matters. 
  6. Report suspicious messages to [email protected] (UC Davis campus) or [email protected] (UC Davis Health). 
  7. If you believe your information has been compromised, contact:

    1. IT Express for UC Davis campus at 530-754-HELP (4357), Monday through Friday, 7 a.m. - 6 pm. PST.
    2. Technology Operations Center for UC Davis Health at 916-734-HELP (4357), 24 hours 7 days a week.

How to Spot a Phishing Scam 

  • Legitimate-looking sender: The email, call or text may come from someone claiming to be UC Davis staff or support asking for your login information. 
  • Threats or time-sensitive requests: Scammers want you to react impulsively. Requests for personal or login information are time-sensitive and have negative consequences.
  • Fake web links: Go directly to official websites and avoid clicking links in messages you are not expecting or suspect to be scams.
  • Spelling and layout errors: The message contains poor grammar, sentence structure, spelling errors and/or formatting issues.

Tags