Practice
  • Home
  • News
  • Pin Points
  • Events
  • Programmes
  • Resources
  • About
REFINE YOUR SEARCH
FILTERS
CLEAR FILTERS
Tags
News » Phishing scams and social engineering awareness
Pinnacle news image

Phishing scams and social engineering awareness

Pinnacle Incorporated | 12/11/2020

Social engineering is the art of manipulating people into handing over confidential information. Email phishing is one of the most common forms of social engineering, and healthcare is a popular target.

Most phishing campaigns come in the form of email and are created by people who design fake websites that look just like a trusted organisation – complete with branded email templates. They’re designed to trick you into clicking a link and presenting you with a log in page.

As an example of how easy it can be to be deceived, below we’ve spelt Pinnacle correctly, and then again using a capital I rather than an lowercase L. Can you spot the difference?
PinnacIe/Pinnacle.

More sophisticated campaigns can target specific people, by gathering intelligence on the person then tailoring their campaigns to suit. This can be done by gaining a copy of your credentials, installing malicious software and disclosing other types of confidential information.

It’s easy to be fooled

Scammers are very good at what they do. They will combine a variety of different methods to have the best chance at success - from well-crafted spelling mistakes to links that direct you to fake websites, and everything in between. They will even sit and watch your conversations for months on end to learn who and how you talk to people.

The latest scam involves .xlsm files. Please do not open a .xlsm file someone sends to you - even if you're sure it's really them. There's not a single legitimate reason to send a .xlsm file. 

Phishing scams will continue to be commonplace and can affect any of us – even the most keen eyed individual could easily be deceived when faced with a busy inbox full of emails to read and action.

We encourage you to be really aware of this activity, and discuss it as a practice team. Watch for the signs and acknowledge it can – and will – happen to the best of us. Reporting anything suspicious immediately will help.

What to do if you think you’ve been targeted

  • Please contact the practice systems support team (updated 23.11.23) immediately and let them know your concerns. Time matters significantly in resolving and containing the fall out from a scam. They will alert the appropriate people at Pinnacle, and work with your practice to help investigate and resolve the issue. This includes checking for any potential privacy breach that may need to be notified to the Office of the Privacy Commissioner.
  • Contact your IT provider, providing as many details as you can.
  • DO NOT forward the email any further. Send a screen shot of the email, and await instructions from your IT specialist on next steps.
  • Remember, never open a .xlsm file someone sends to you - even if you're sure you know the sender.

For more tips for staff on staying safe online check out this advice (PDF) from the UK's National Cyber Security Centre.

Tags:
Technology
YOU MAY ALSO BE INTERESTED IN
NEWS
How Otorohanga Medical is encouraging patient portal uptake
Pinnacle Incorporated | 21/03/2019

Otorohanga Medical has experienced a steady rise in the number of patients accessing their patient portal since beginning their push in September 2018.

Read more
Practices Technology
PIN POINTS
Pathlab Eclair upgrade update
Lakes | Taranaki | Waikato | Tairāwhiti | Clinical | 09/04/2025

Some users are experiencing issues with éclair eOrders, including slowness and timeouts. Pathlab has resolved most known issues but is still monitoring for others. There may be some ongoing issues for several weeks around available patient history.

Read more
RESOURCE
New Zealand ePrescription service
Published: 26/08/2020 | 2 links | Website

NZePS provides a secure messaging channel for prescribing and dispensing systems to exchange prescription information electronically.

View resource
Taranaki
47 Molesworth Street
New Plymouth 4310
+64 6 759 4364
Tairāwhiti
Level 1
295-299 Gladstone Road (entrance via Cobden Street)
Gisborne 4010
PO Box 1188
Gisborne 4040
06 863 2661
Lakes
Level 1
95 Te Heuheu Street
Taupō 3330
PO Box 1716
Taupō 3351
+64 7 376 0060
Waikato
Norris Ward McKinnon House
Level 3
711 Victoria Street
Hamilton 3204
PO Box 983
Hamilton 3240
+64 7 839 2888
Facebook @PinnacleIncorporated LinkedIn midlands-health-network
Copyright © 2025 Pinnacle Incorporated
Privacy policy Terms & conditions Practice update dashboard
Copyright © 2025 Pinnacle Incorporated
Privacy policy Terms & conditions Practice update dashboard