Important security notice about phishing

UiS is currently being targeted by a new phishing campaign where attackers are sending emails from compromised UiS-accounts. Because the messages come from a seemingly known and legitimate sender, they may appear credible and can be difficult to detect.

Published Updated on

We are aware that several recipients have engaged in dialogue with the attackers, and in at least one case this has resulted in financial loss.

Pay particular attention to

  • Emails asking you to purchase goods, gift cards, or make payments
  • Requests that create a sense of urgency or ask for discretion
  • Requests that deviate from normal routines
  • Messages asking you to continue the conversation via a separate channel or to a different e-mail address. 

Even if the sender appears to be a colleague or an internal account, you should be aware that the account may be compromised.

If you receive such an email

  • Do not reply to the message
  • Do not make purchases, payments, or other financial transactions
  • Do not provide personal data or other sensitive information
  • Report the message to IT-hjelp@uis.no as soon as possible
  • Delete the message after it has been reported

If you have already responded

If you have engaged in communication with the sender, please stop all further communication with them immediately.

We are closely monitoring the situation and continuously working on measures to reduce the risk of similar incidents.

Thank you for helping to protect UiS’ information and assets.