This TELUS Email Scam Is Interesting… Let Me Tell You Why

Last night I was watching an episode of Terhan on Apple TV+ which is my favourite show on that streaming platform when I got this email on my iPhone:

Now I did my usual check whether this was real or not by checking the email address. And based on this, this email appeared to be real:

I also checked the headers and that confirmed that this was real. And the links in the email went to TELUS as well as evidenced by this example:

So this email meant that someone was trying to log into my TELUS account. That was interesting as I haven’t been a customer with TELUS for almost a year as I moved my cell phone service to Freedom Mobile to cut my telco costs about this time last year. And there should be no billing information stored by TELUS as I always paid my TELUS bill using my credit card the second the bill arrived. I confirmed that by logging into my TELUS account via going directly to the web page and not clicking on any of the links in the email. I did that because even though the email appeared to be real, it could have been an extremely good fake that was fooling me. Another thing to note is that TELUS uses two factor authentication for their accounts which is a good thing as it makes it far less likely that a threat actor could break into your account. Combine that with the fact that I had a very strong password that I would have changed if I could as I could find no way to change my password either via the TELUS website or mobile app, I decided to make this a tomorrow problem.

I woke up this morning and I found this in my junk email:

This is your classic phishing email. As evidenced by the fact that TELUS didn’t send this email:

And the “Pay The Bill” which by the way is language that a major company like TELUS would never use in a customer facing email has a link that isn’t going to TELUS:

Thus I have to wonder if the events of last night are somehow connected to this phishing email? I say that because it seems coincidental that both events would happen within hours of each other. I cannot say for sure, and to add to that I wasn’t able to further investigate this phishing scam as it looks like the web page was taken down. But what is clear is that TELUS customers are being targeted by a threat actor. And it is possible that this threat actor is more sophisticated than the usual phishing email scammers that are out there. Thus you need to stay on your toes to avoid being scammed.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading