Close Menu
    Tags
    ai apple BJP cg news Champions Trophy 2025 Chhattisgarh Chhattisgarh News china Congress cricket donald trump elon musk featured google Hindi News Hindustan India ind vs eng IPL IPL 2024 IPL 2025 Israel Israel Hamas War Jammu and Kashmir latest news Lok Sabha elections 2024 Madhya Pradesh Madhya Pradesh news market Narendra Modi News in Hindi Pahalgam Terror Attack Pakistan pm modi Rahul Gandhi Raipur Rohit Sharma samsung Supreme court T20 World Cup 2024 the chhattisgarh United States Virat Kohli whatsapp World Cup 2023
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram YouTube
    The Chhattisgarh
    Member Login
    • World
    • India
    • Chhattisgarh
    • Madhya Pradesh
    • Sports
    • Technology
    The Chhattisgarh
    Home»Technology»Warning for Gmail Users: New Scam Uses Google Subdomains To Steal Login Details — How To Stay Safe |
    Technology

    Warning for Gmail Users: New Scam Uses Google Subdomains To Steal Login Details — How To Stay Safe |

    The ChhattisgarhBy The ChhattisgarhApril 21, 20253 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    Google Gmail Scam: Beware Gmail Users! Tech giant Google has issued an important warning to all Gmail users. This warning has come following the discovery of a highly sophisticated phishing campaign that exploits Google’s own security checks to trick users into handing over their account credentials.  

    This phishing attack is dangerous because it appears to come from Google itself and even shows up in the same email thread as real and genuine alerts from Google. However, Google has acknowledged the phishing campaign and confirmed that it exploited OAuth and DKIM mechanisms in a novel way.  

    Recently I was targeted by an extremely sophisticated phishing attack, and I want to highlight it here. It exploits a vulnerability in Google’s infrastructure, and given their refusal to fix it, we’re likely to see it a lot more. Here’s the email I got: pic.twitter.com/tScmxj3um6
    — nick.eth (@nicksdjohnson) April 16, 2025

    Google Email Look Real? 

    The scam was initially discovered by software developer Nick Johnson, who detailed his experience on X (formerly Twitter). He received an email from no-reply@google.com, stating that a subpoena had been issued for his account data. The email appeared legitimate and contained a link resembling a genuine Google support page.  

    However, the link redirected to a fake Google sign-in page hosted on sites.google.com—Google’s own platform. The aim was to deceive users into entering their login credentials, allowing hackers to steal their Gmail account information. It is important to note that the phishing email uses the company’s branding, has the correct logo, and includes language that sounds official. 

    How Google Email Scam Works? 

    Step 1: You get an official-looking email from no-reply@google.com, claiming a subpoena has been issued against your account. 

    Step 2: The email includes a link that appears to lead to a legitimate Google support page, urging you to log in to respond. 

    Step 3: The link takes you to a cloned Google login page, hosted on a Google subdomain (like sites.google.com), making it look authentic. 

    Step 4: Once you enter your login details, they’re captured by hackers—giving them full access to your Gmail and all connected Google services. 

    How Can Gmail Users Stay Safe From Scam? 

    Step 1: Don’t trust unexpected emails asking you to take urgent action, even if they appear to come from Google or other trusted sources. 

    Step 2: Avoid clicking on links within such emails. These links may lead to fake login pages designed to steal your credentials.

    Step 3: Always visit your Gmail or any other service by typing the official URL (like www.google.com) directly into your browser. 

    Step 4: Add an extra layer of security to your account by enabling 2FA, which requires a second verification step beyond just your password. 

    Step 5: Activate passkeys wherever supported to further protect your account from phishing and credential theft. 

    gmail Gmail Users google Google Email Google emails Google Sign In
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

    Related Posts

    India-Pakistan War Goes Digital: Your WhatsApp, Facebook, Telegram At Cyber Attack Risk; Here’s How To Stay Safe |

    May 9, 2025

    Elon Musk-Led X To Block Over 8,000 Accounts In India After Government Order |

    May 9, 2025

    Is Your Aadhaar Card In Pakistani Hands? How To Check, Report And Stop Misuse |

    May 8, 2025

    AI Surge In India Requires Additional 45-50 Million Sq ft Real Estate: Report |

    May 8, 2025

    Elon Musk’s Starlink One Step Closer To India Launch After DoT Clearance- Details |

    May 8, 2025

    India-Pakistan Tensions: Precautions Every Smartphone Users Should Follow After Operation Sindoor |

    May 7, 2025
    -Advertisement-
    Advertisement
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    © 2025 The Chhattisgarh. All Rights Reserved.
    • Contact Us
    • About Us
    • Terms & Conditions
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.