A new phishing attempt is circulating on campus.  This attempt appears to be sent from Carleton University and appears to have a valid email address and a valid link within the body of the message.  If you have receive this email, please do not respond to it.  Do not click on the link within the body of the email.  Carleton University does not send out these types of email messages.  It is Carleton University’s policy to ‘never’ request this kind of information through email.

This is a phishing email and should be deleted immediately.  If you have already responded to this email, please change your password immediately.

The ITS change password form for Students can be accessed at: https://connect.carleton.ca/newuser.html

The ITS change password form for Staff and Faculty can be accessed at: https://connect.carleton.ca/secure-cgi/passwd.cgi

The ITS change password form for MyCarletonOne for Staff and Faculty can be accessed at:   http://carleton.ca/mycarletonone/staff-phase/changing-your-mycarletonone-password/

Listed below are indicators that your Email messages may be spam or phishing attempts:

  • Generic message greetings, such as “Dear customer or member…” or “Dear Carleton Account User,”
  • Attempts made “On Behalf Of its.service.desk@carleton.ca…” or “On Behalf of Carleton University…”
  • Prompts to “update,” “validate,” or “confirm” your account information.
  • Misspelled or incorrect website address (URL)
  • Requests for immediate action. For example, “Your account will be suspended within 24 hours, if you don’t respond….”
  • Spelling errors

For information on security awareness, please visit our Security Awareness page.

For more information on SPAM and what ITS is doing about it, please visit our SPAM Email Information page.