Phishing Attacks – Now Trying to Hook Students

Written by: Abigail Julias

While fishing is an enjoyable offline activity, a much more sinister activity is being run online – phishing.

Phishing is a type of scam where bad actors try to trick people into revealing sensitive information or installing malicious software. More broadly, it’s a type of social engineering, where attackers use manipulation to trick people into giving up information, rather than exploiting computer vulnerabilities.

Students might not seem like the likeliest targets for a phishing attack, but in truth, anyone can be targeted. Over the summer, I received several emails, all offering job opportunities that seemed incredible on the surface. Of course, none of these were real, and Student Services promptly sent reminders warning against these emails. But if they were sent to me, they were surely sent to other students, and the more informed you are about phishing attempts, the better.

To show an example of what a phishing attempt may look like, a copy of an email I received is provided here:

Dear Students,

Student Job Placement Services is currently accepting applications for a flexible Work-Study Support Program designed to help students gain practical work experience while earning supplemental income during their academic studies.

This opportunity is ideal for students seeking a remote, part-time position that can easily fit around their class schedules.

Position: Personal AssistantEmployment Type: Part-Time (Remote)Work Schedule: 1–3 hours per day, up to 3 days per weekCompensation: $550 per week (bonuses may apply)

Selected applicants will assist with basic administrative and personal support tasks such as scheduling, online errands, and communication support. Full details about responsibilities will be provided after the application review process.

Students who are interested in this opportunity are encouraged to apply through the link below.

Apply Here: [Insert Application Link: [Google Form Link Removed]]

Important Notice:Applications are reviewed on a rolling basis, and positions are limited. Early applications are strongly encouraged.

Best regards,Student Job Placement Services©️ 2026 Job Board Trustees

The first red flag is the formatting. Spacing errors such as “AssistantEmployment” or “Notice:Applications” should give some pause. The application link, which has been removed from the copied email, was also a plain Google Forms link – and the “Insert Application Link” looks like a placeholder that wasn’t properly removed. The position itself should also ring some alarm bells – 1-3 hours a week, up to 3 days a week, all for $550 a week? If a job seems too good to be true, it likely is. To make you fear losing out on this golden opportunity, phishing attempts often try to conjure a sense of urgency, as this one did by strongly encouraging early applications.

This phishing attempt might’ve been more obvious, but well-done phishing attempts may not have all of (or any of) these tells. Even if an email looks perfect on the surface, one should always make sure the email they’re reading is legitimate. Be extra careful with work emails, as well – companies may send phishing tests to verify you wouldn’t fall for the real thing.

Even when following best practices, everyone slips up from time to time. If you fall for a phishing attack, or are unsure about an email’s validity, contact the T-Wolves Assistance line at 716-614-6730. And if you do receive a phishing email, report it to the assistance email at TWolvesAssistance@niagaracc.suny.edu.


Posted

in

by

Tags:

Comments

Leave a comment