[muglo] Fwd: CIRA - Important Security Advisory
- From: Gerhard <gerhardk@xxxxxxx>
- To: muglo@xxxxxxxxxxxxx
- Date: Wed, 8 Jun 2005 23:35:35 -0400
Some weeks ago there was talk of the security measures CIRA took to
verify your identity. It seems they are well founded as it appears
that there are folks out there trying to compromise your .ca account.
Gerhard
Begin forwarded message:
> From: CIRA-ACEI <members@xxxxxxx>
> Date: June 8, 2005 7:21:15 PM EDT (CA)
> To: gerhardk@xxxxxxx
> Subject: CIRA - Important Security Advisory
> Reply-To: members@xxxxxxx
>
>
> CIRA Reminds Dot-ca Domain Name Holders of Misleading Verification
> Notices.
> Protect your domain name. Do not share your CIRA User Account
> Number or
> Password with anyone!
>
> Ottawa , June 8, 2005 - The Canadian Internet Registration
> Authority (CIRA)
> wishes to remind dot-ca domain registrants (holders of dot-ca
> domain names)
> NOT TO RESPOND OR REPLY TO ANY EMAILS requesting confirmation of
> CIRA User
> Account Numbers and Passwords.
>
> An unknown party appears to be attempting to obtain CIRA User
> Account Numbers
> and Passwords from dot-ca registrants by sending MISLEADING EMAIL
> NOTICES that
> appear to originate from CIRA. These misleading emails request that
> an account
> be confirmed to avoid suspension. The emails appear to originate
> from SUPPORT@xxxxxxxx
>
> If you have replied to an email requesting your CIRA User Account
> Number and
> Password, and have included your CIRA User Account Number and
> Password in your
> reply, PLEASE CONTACT YOUR REGISTRAR IMMEDIATELY to request a new
> CIRA User
> Account Number and Password. If you do not know the name of your
> registrar,
> you may obtain it by entering your dot-ca domain name in the WHOIS
> field
> at http://whois.cira.ca/public .
>
> If you have received an email requesting your CIRA User Account
> Number and
> Password, please forward a copy of the email to security-
> advisory@xxxxxxx with
> the complete header information. Your cooperation with this matter
> will help CIRA
> estimate the number of misleading notices that have been sent to
> unsuspecting
> dot-ca domain name holders and to track the author of the email.
>
> Similar fraudulent email schemes (labeled as ?phishing? or
> ?spoofing?) designed
> to obtain credit card numbers and Internet banking passwords have
> been reported
> by financial institutions since 2002.
>
> CIRA User Account Numbers and Passwords are critical to the
> security of dot-ca
> domain names because they are needed to manage (e.g. renew,
> transfer, update, etc.)
> dot-ca domain names. CIRA does not request, and has never
> requested, that registrants
> provide CIRA User Account Numbers and Passwords by email to confirm
> registrant
> account information.
>
> Those seeking additional information are invited to call CIRA's
> Customer Support Unit
> at 1-877-860-1411 (8:00 to 20:00 Eastern, Monday to Friday).
>
> For additional information: http://www.cira.ca/news-releases/153.html
>
>
_________________________________________________
For information concerning the MUGLO List just click on
http://muglo.on.ca/Pages/joinus.html
Our Archives can be viewed at
http://www.freelists.org/archives/muglo
Don't forget to periodically check our web site at:
http://muglo.on.ca/
Other related posts:
- » [muglo] Fwd: CIRA - Important Security Advisory