San Diego, CA
This is the phishing scam that gets a San Diego identity theft expert ‘really, very angry’
Digital thieves are nothing if not persistent and innovative.
They keep finding new ways to try to part you from your money.
Phishing — where thieves pose as trusted entities or send legitimate looking emails or messages to trick you into giving them access to your accounts — is a widespread method. And it is constantly evolving.
“We’ve seen phishing go through the roof,” said Eva Velasquez, the CEO of the Identity Theft Resource Center, a San Diego-based national nonprofit.
But knowledge is power. So here are three emerging phishing threats to look out for, according to internet safety experts. All three threats target key parts of people’s digital lives: email attachments that lead to fake login pages, multi-factor authentication trickery and deceptive calendar invites.
Spending a few minutes reading these pointers could help you avoid getting your ID or money stolen and save you countless hours of dealing with the fallout.
HTML attachments that open fake login pages
Imagine a busy professional who is in email action mode. In the past 30 minutes on a Saturday morning, he has filled out emailed liability waivers for his seven children’s summer camps, filed an expense report for work, answered a secure portal message from the veterinarian about his sick puppy’s prescription, skimmed 182 email subject lines and paid five bills from his email inbox, including a car insurance premium and his beloved cheese-of-the-month club.
Amid this flurry of inbound emails, ads, invoices and secure messages, he is working on autopilot: opening messages, skimming, clicking and signing in.
What a perfect opportunity.
Scammers are taking advantage of user distraction — and their trust — by sending emails with HTM or HTML attachments. When clicked, those open a browser file that looks like secure, familiar login page. These pages might look like secure invoice viewers, file-sharing services like DocuSign or Dropbox, or sign-in pages to platforms including Microsoft 365.
“Once the user enters their credentials, they are sent surreptitiously to the attacker’s server,” said Vlad Cristescu, the head of cybersecurity with ZeroBounce, a Florida company that helps businesses lower their rate of bounced marketing emails.
Why this method is especially insidious: “There isn’t a clickable link in the email, so standard email security filters (which scan for malicious URLs or attachments like PDFs and ZIPs) may not catch it,” Cristescu added.
To prevent this, he added, companies should “restrict HTML attachments unless essential, and users should treat unfamiliar HTML files the same way they’d treat a suspicious link — don’t open it unless you’re absolutely sure of the sender.”
If you do receive incoming communication with an HTML link or attachment, don’t engage, said Velasquez, with the ITRC.
“Don’t click on links, people. That’s the big, overarching message,” she said. Instead, go to the source: call the phone number on the back of your credit card, visit the bank in person.
Multifactor authentication tricks
If you are one of the many people who uses multifactor authentication, take note.
Multifactor authentication is still very helpful and should be used.
But Cristescu flagged one way that scammers are taking this tool — which is designed to make people’s online accounts more secure — and using it to slither in.
As a refresher, multifactor authentication is an added layer of protection that prevents data thieves from logging into your accounts if they have your username and password. It helps ensure that you’re the one who typed in your password when you log in, and not some scammer in the Philippines or Poughkeepsie.
To use multifactor authentication, you typically download an app, such as Google Authenticator or Microsoft Authenticator. You register your sensitive online accounts, such as Facebook, bank or email, with that app. Then, every time you log into a registered website, the authenticator app generates a new, random code that you enter after your password as a second layer of verification.
With the rise of this protection, a new threat has emerged: Scammers who have your username and password can send log-in requests to your authenticator app. Next, the scammer can pose as an IT expert from your workplace and ask you to approve the log-in request.
If you fall for it, then boom — the scammer is in.
This technique “exploits a user’s frustration and trust in IT. If you’re receiving multiple (authenticator) prompts you didn’t initiate, that’s not a glitch – it’s an attack,” Cristescu said. He recommends pausing, never approving these unexpected requests and flagging the interaction with IT.
Velasquez added that if you get an authenticator notification and you didn’t just log in yourself, “That is a huge red flag. Stop and address it. Don’t ignore it.”
Anytime you interact with IT, be sure you’re the one initiating that contact, she added. If someone from IT calls or emails you, disconnect and reach back out using a trusted method, such as the same phone number you always dial.
Fake calendar invites
A third technique data thieves are using is calendar invites.
“I just get really very angry about this one,” Velasquez said. “It is super hard to detect.”
Here’s what to look out for. If you use an online calendar like Google calendar or the native iPhone calendar app, you might receive an invitation to an event you didn’t see coming. Sometimes these meetings are legitimate. Sometimes, they are not.
Scammers “are now sending meeting requests with malicious links embedded in the invite or ‘join’ button. These invitations sync directly into calendars and often go unquestioned,” according to ZeroBounce.
Scammers use calendar invites because they have “built-in credibility – they’re not usually scrutinized like emails,” Cristescu said. Look for meeting requests from unknown senders and vague event names like “Sync” or “Project Review,” he added.
In some jobs or roles, meetings routinely get added to calendars by other people — clients, prospects, coworkers, bosses, peers.
“I have gotten these repeatedly,” said Velasquez, with the ITRC. “Depending on your lifestyle and your job and how you work, these are going to be particularly challenging. They are real calendar invites. The problem is they have malicious software embedded in them — so when you click on portions of them, ‘Click to join,’ it’s like opening an attachment (or) clicking on a suspicious link. It’s the same principle.”
Cristescu, with ZeroBounce, shared this tip: “Treat those just like a phishing email. Disable auto-accept where possible and review every invite manually before clicking anything.”
Never stop questioning what lands in your inbox or calendar, Cristescu added. “Always verify the sender’s email address, ensure that any link you click matches the legitimate domain, and look out for subtle red flags like spelling errors or unusual formatting.”
A big picture pointer
“All three of these (scams) are so common that it has probably happened to every single person reading the article — at least one of them. That’s how ubiquitous these are,” Velasquez said.
She shared this broader thought: It’s less important to know how to respond to each scenario and more important to pause, be skeptical, double check.
It’s important to be ever more skeptical, because AI makes it easier and easier for thieves to create convincing ruses, Cristescu and Velasquez both said.
AI “really helps with making these phishing offers look and sound so much more legitimate,” Velasquez said. “And with the amount of data that is out there from public sources and from data breaches, it’s very easy to see what relationships people have.” Where you bank, where you do business — that is all fodder for someone to create a copycat page designed to trick you into logging in.
Adopt an “investigator mindset,” Velasquez said. Use this helpful reminder: the acronym STAR, which stands for Stop. Think. Ask questions or ask for help. Reassess.
The ITRC nonprofit can answer questions, for free, through phone and live chat. Toll-free phone: 888-400-5530. Live chat staffed by people, not bots: https://www.idtheftcenter.org/victim-help-center/
San Diego, CA
Thousands gather at Stonehenge to celebrate the summer solstice
San Diego, CA
How to watch inaugural NASCAR San Diego street race live for free: Start time, lineup
NASCAR will honor the 250th birthday of the United States and the US Navy’s 250th anniversary with a race brand new to the racing calendar.
The Anduril 250 will take place on a road course built on Naval Base Coronado in San Diego, California. The 3.4-mile track has 19 turns. The race is 255 miles total and drivers will do 75 laps.
Shane van Gisbergen, who is widely considered to be NASCAR’s best road course driver, will start in pole position. van Gisbergen has won seven road races in 14 total starts, and he is just two road wins away from tying Jeff Gordon’s record of nine.
nascar anduril 250: what to know
- When: June 21, 4 p.m. ET
- Where: Coronado Street Course (Naval Base Coronado, San Diego, California)
- Channel: Streaming exclusive
- Streaming: Prime Video (30 days free)
Here’s everything you need to know about today’s NASCAR Cup Series race on the Coronado Street Course.
NASCAR Cup race at San Diego start time:
Today’s (June 21) NASCAR race, the Anduril 250, begins at 4 p.m. ET.
What channel is today’s (June 21) NASCAR race on?
Today’s NASCAR race won’t be on traditional television; it will air exclusively on Prime Video.
How to watch the NASCAR Anduril 250 for free:
With Prime Video, you can also take advantage of the streamer’s Shop the Race storefront, exclusively on the Amazon mobile app, to shop gear, flags, and more for your favorite driver.
NASCAR San Diego starting lineup:
- Shane van Gisbergen
- Carson Hocevar
- Ryan Blaney
- Zane Smith
- Todd Gilliland
- Daniel Suárez
- Ryan Preece
- Connor Zilisch
- Michael McDowell
- Austin Hill
- Ty Gibbs
- Bubba Wallace
- Corey Heim
- Kyle Larson
- AJ Allmendinger
- Chris Buescher
- Tyler Reddick
- Austin Dillon
- Joey Logano
- Alex Bowman
- Kevin Magnussen
- Chase Briscoe
- Ross Chastain
- Riley Herbst
- Cole Custer
- Denny Hamlin
- William Byron
- John Hunter Nemechek
- Brad Keselowski
- Chase Elliott
- Austin Cindric
- Noah Gragson
- Ricky Stenhouse Jr.
- Ty Dillon
- Josh Berry
- Jimmie Johnson
- Christopher Bell
- Erik Jones
- Cody Ware
Why Trust Post Wanted by the New York Post
This article was written by Angela Tricarico, Commerce Streaming Reporter for Post Wanted Shopping, Page Six, and Decider.com. Angela keeps readers up to date with cord-cutter-friendly deals, and information on how to watch your favorite sports teams, TV shows, and movies on every streaming service. Not only does Angela test and compare the streaming services she writes about to ensure readers are getting the best prices, but she’s also a superfan specializing in the intersection of shopping, tech, sports, and pop culture. When she’s not writing about (or watching) TV, movies, and sports, she’s also keeping up on the underrated perfume dupes at Bath & Body Works and testing headphones. Prior to joining Decider and The New York Post in 2023, she wrote about streaming and consumer tech at Insider Reviews.
San Diego, CA
Photos: Cooper Family Foundation’s Juneteenth celebration
Copyright 2026 San Diego Union-Tribune. All rights reserved. The use of any content on this website for the purpose of training artificial intelligence systems, algorithms, machine learning models, text and data mining, or similar use is strictly prohibited without explicit written consent.
-
Wyoming51 seconds agoPAIN: Chugwater Wyoming Jalapeno Eating Contest
-
Crypto6 minutes agoWhy Lummis Says the CLARITY Act Will End the ‘Absurdity’ Facing US Software Developers
-
Finance13 minutes ago
OpenAI and Anthropic workers are about to learn the hidden challenge of becoming overnight millionaires
-
Fitness16 minutes agoThis simple three-move routine can build upper-body strength at home for years to come
-
Movie Reviews28 minutes agoStephen King shares his two-line review of 2026’s breakout horror movie
-
World36 minutes agoVideo: First Round of U.S.-Iran Talks End, Mediators Say
-
News43 minutes agoVideo: California Governor Declares State of Emergency for L.A. Warehouse Fire
-
Lifestyle1 hour agoTop 5 Pixar movies, ranked by listeners : Pop Culture Happy Hour
