DoD

April 27, 2012

DFAS warns service members of scam emails

Tech. Sgt. Benjamin Rojek
Defense Media Activity

FORT GEORGE G. MEADE, Md. (AFRNS) — Defense Finance and Accounting Service official recently released a statement warning of email scams targeting military members, military retirees and civilian employees.

According to the statement, the most recent email scam indicates that individuals who are receiving disability compensation from the Department of Veterans Affairs may be able to obtain additional funds from the Internal Revenue Service, but only if they send copies of their income tax information.

Scammers have been known to “spoof” DFAS email addresses. Spoofing is a technique designed to extract personal information from individuals for fraudulent use by masquerading as legitimate officials.

“They (Scammers) manage to find a way to appear legitimate when they’re not,” said Edward Peace, the senior cyberwarfare instructor for the 39th Information Operations Squadron at Hurlburt Field, Fla. “In some cases, addresses look similar to legitimate sources, but in other cases if you inspect just a little bit deeper, looking at where the email came from, you would be tipped off right way. But most people don’t look at it; they just look at the content, assume it’s legitimate and they go from there.”

To fool people, Peace said, the scam artist may create a server so the URL is close to a legitimate site, for example using .mic instead of .mil at the end of the web address. People can avoid these scams by closely reading the address from where the email was sent.

Though these scam artists have found ways to spoof the DFAS email address, this does not mean customer accounts have been compromised.

“We have not had an incident threaten our security or the accounts of our customers,” said Steve Burghardt, a DFAS media relations officer. “We are always on the lookout. And we’re taking steps to educate folks.”

With that, DFAS officials are developing pages on their website to highlight their official email policy, examples of scam emails and law enforcement agencies that can initiate an investigation.

DFAS officials are also trying to make this information readily available via myPay, Burghardt said.

“That’s our biggest concern,” he said. “As long as you keep your login credentials private, your account is pretty much assured a fairly decent amount of security. But if you allow your personal information to be compromised, scammers can use your information to get new credentials … I can always impersonate you and say, ‘I lost my login credentials, get me a new one.’”

Besides getting their personal information stolen, people can also fall victim to computer attacks by even opening these emails.

For example, if there are HTML attachments or links in the email, they can drop malware on the computer, usually a Trojan horse, Peace said. If this happens, the Trojan can begin loading more malware on the computer or turn the computer into part of a botnet. In this scenario, one’s computer is taken over by a hacker, made part of a larger network and used mostly for nefarious purposes.

In order to avoid falling victim to these computer viruses and malware, people using commercial email accounts should immediately erase scam emails, Peace said. Service members who receive these types of email on their .mil accounts should immediately notify their network administrator.




All of this week's top headlines to your email every Friday.


 
 

 
U.S. Air Force photo/Sean Dath

Local organization donates packages to March troops

U.S. Air Force photo/Sean Dath Nora Shaw, project coordinator for Sariaya Association of California, puts the final touches on a care package prior to it being sent to deployed servicemembers from March ARB. Deployed service me...
 
 

‘Tis the season to drink responsibly

KEESLER AIR FORCE BASE, Miss. (AFNS) — It’s that time of year when holiday parties and late night celebrations begin to fill our calendars and we look forward to spending time with family and friends to celebrate our own special reasons for the season. Every Christmas Eve, I celebrate my life and I give thanks...
 
 

Good cyber security habits essential during holidays

With so many new methods for cyber theft, it’s important to remember to take extra steps to protect your bank accounts and money this season, as criminals look to take advantage of the increased spending activity. Fortunately, there are steps you can take to protect your identity and your wallet. Here are some tips for...
 

 

Shop and donate wisely this holiday season

California Attorney General Kamala D. Harris recently issued tips on how Californians can protect themselves from identity theft and make the most of their charitable giving throughout this holiday season. Tips for safe shopping: Review your bank and credit card statements frequently for unusual and unfamiliar transactions. In the event of a security breach involving...
 
 
HBI--strength-training-getting-started

Build a better body through strength training

Strength training, also called weight training, boosts your metabolism by adding lean muscle, helping you lose weight and keep it off. It can also prevent diabetes, fight aging, keep your bones strong, protect your memory, lowe...
 
 

Air Force Fitness Management System slated for upgrade

JOINT BASE SAN ANTONIO-RANDOLPH, Texas — Active-duty, Air Force Reserve and Air National Guard officers and enlisted members who want to maintain copies of their pre-July 2010 fitness records need to access the Air Force Fitness Management System (AFFMS) and save or print their records by Dec. 30, Air Force Personnel Center officials said Dec....
 




0 Comments


Be the first to comment!


Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>


Directory powered by Business Directory Plugin