All Gmail users at risk from clever replay attack

Discussion in 'Off-Topic Discussions' started by Lerner, Apr 28, 2025.

Loading...
  1. Lerner

    Lerner Well-Known Member

    All Gmail users at risk from clever replay attack

    Cybercriminals are abusing Google’s infrastructure, creating emails that appear to come from Google in order to persuade people into handing over their Google account credentials.


    This attack, first flagged by Nick Johnson, the lead developer of the Ethereum Name Service (ENS), a blockchain equivalent of the popular internet naming convention known as the Domain Name System (DNS).


    Nick received a very official looking security alert about a subpoena allegedly issued to Google by law enforcement to information contained in Nick’s Google account. A URL in the email pointed Nick to a sites.google.com page that looked like an exact copy of the official Google support portal.
     

Share This Page