Phishing and Spam

UNC Asheville will never require you to log in and “verify” your account.  This is a common tactic that criminals use to attempt to get you to submit your user name and password to a website that looks like ours, but is fake.

If you are unsure about a link and want to see where the link will take you without clicking on it, you can move your mouse over the link.  The web address will then show up in the lower-left corner of the screen.  This is an easy and safe way to tell what web site a link is sending you to.  If you don’t recognize the address, don’t click on it!

As with most large organizations, the university is often the target of phishing and spam emails. The university’s Google Mail system provides both phishing and spam protection, but some spam will inevitably arrive in your Inbox. Here are a few tips to help you recognize these bogus messages:

Does the email sender’s address end in @unca.edu?

All legitimate email coming from the university has an email address ending in @unca.edu. If the sender’s address doesn’t end in @unca.edu the message is probably not legitimate.

Does the message ask you for your account information?

ITS will never ask for your password. Not via email, over the phone, or in person. If anyone asks for your password, do not give it to them. In fact, it is against university policy to share your account information with anyone.