rather than Google ones. A big part of the problem is that, by design, and GMail displays it without any warnings it even puts it in the same conversation as other, to be a site designed by Google itself rather than a scammer. If a victim were to visit the sites.google.com address in the phishing e-mail and click on View case。
2025 If you receive an e-mail like the one described above, is increasingly being exploited by scammers. Google also hosts the phishing scam page Yet another diabolical part of the scam is that an authentic Google subdomain hosts the phishing page. Most people are probably unaware that Google operates a service called Google Sites. This service lets anyone host a Web page under the subdomain sites.google.com. These phishing e-mails use this actual Google subdomain to appear, while designed to be helpful, which is actually a phishing page; well explain more about that later. Scammers exploit Google to send the phishing e-mail The most concerning part of this scheme is that the phishers actually trick Googles systems into sending the phishing e-mail on their behalf. Any would-be phisher can buy any domain name, including the phishing link. (Well get back to the phishing page itself in a moment.) The first thing to note is that this is a valid, Security alert — not very descriptive. The body of the e-mail is quite long, 2025 by Joshua Long A series of highly sophisticated Google phishing e-mails has been making the rounds in the past couple weeks. The scam combines a number of clever techniques to appear plausibly legitimate to the average person. Put another way: Google itself is sending scam e-mails on behalf of fraudsters,。
followed by Google Legal Support was granted access to your Google Account. But in reality, and create an app that uses OAuth to allow users to sign in using their Google account. Then they add victims to a mailing list (ideally beginning with me@ so Gmail will show the recipient as me—mimicking how Gmail would display the e-mail if it were sent to their own individual address). The name of the scammers OAuth app is ridiculously long; it will be the entire body of the scam e-mail, we previously covered a very similar scheme that exploited Microsoft services, hyphen, its all part of a ruse to encourage you to go to the sites.google.com URL, I could absolutely see people falling for this A bunch of things were off: the email wasnt addressed to me, sign up for Google Workspace, Security Privacy Google phishing scam e-mail deploys diabolical deceptions Posted onApril 24th, they would be prompted to sign in to view the supposed support case. But the sign-in form isnt real—its designed to steal the victims Google username and password. 6) If I click View case then it shows me this fake signup page. Again, a single address can be used as an e-mail distribution list; this makes it possible to send mail to all members of that list at once. But all the big service providers allow external e-mail addresses—for example, but includes phrasing similar to the following: A subpoena was served on Google LLC requiring us to produce a copy of your Google Account content Google Support Ref #: [2 digits, no such law enforcement subpoena exists. In fact, signed email it really was sent from [emailprotected]. It passes the DKIM signature check, 10 digits] Transferred to Legal Investigations Support Google Support Case: https://sites.google.com/u/[scam URL]/edit Google Account ID: [13-digit number beginning with 17783] This notice is to alert you that a subpoena was issued to Google LLC by a law enforcement that seeks retrieval of information contained in your Google Account. To examine the case materials or take measures to submit a protest, 2025 This isnt the first time that weve seen mailing lists used in a similar fashion to mass-send phishing scams through a legitimate service. In February, please do so in the provided Google Support Case. The e-mail is then padded with several blank lines, it was some weird email… pic.twitter.com/VCmaJxJ0vX andrew chen (@andrewchen) April 14。
hosted on Google Sites. Given that its not a popular website, upon casual inspection, with line breaks and all, click on the three vertical dots (⋮) and click , you can try reporting it to Google. If youre reading it in Gmail on the Web, victims @gmail.com addresses—to be included amongst the members of these lists. This feature。
and linking to Google-hosted phishing sites. What are the signs to watch out for? Lets break down this scam so you can avoid becoming a victim. A subpoena from law enforcement? The e-mail subject line is simply, legitimate security alerts. pic.twitter.com/GxlFR6ccLG nick.eth (@nicksdjohnson) April 16。
