PHISHING ALERT
Incident Report for Duke IT
Resolved
The IT Security Office has received reports of email extortion attacks being circulated through the Duke community.

The latest email claims to have compromised a users device by way of a DDOS vulnerability in some Cisco ASAs (CVE-2018-0296 June 18). They then claim that the users device downloaded the malicious code upon connecting to the Duke network and they have been able to view all of their activity via VNC.

Visit security.duke.edu to view the phishing email.
Posted Nov 10, 2018 - 14:42 EST
This incident affected: Security (Phishing Alert).