Email Extortion Scam - Hacked Account

Learn about a new phish or scam.

Description of the phish / scam

An email claiming that the recipient's email account has been hacked, that they viewed pornography, and demanding payment (often via crypto-currency like Bitcoin) to keep this from becoming public. 

We have seen that in some instances the account has actually been compromised.  However, the scammer does not have any "evidence" of what the recipient has been "viewing".

How you can tell it is a scam

I think my account is compromised. What should I do?

  1. Report it as a phishing message: http://www.buffalo.edu/ubit/service-guides/safe-computing/report-phishing-attempt.html
  2. Change any passwords on accounts that were involved in the scam

I think I have been scammed. What should I do?

  1. Change any passwords on accounts that were involved in the scam
  2. Contact any financial institutions involved
  3. Make a report to your local law enforcement.  If you are a member of the University at Buffalo, please contact University Police