HomeCoinsEthereumENS founder warns of Google parody, the user exercises with a fake...

ENS founder warns of Google parody, the user exercises with a fake summons

-

The founder and senior developer of the Ethereum Name Service warned his X -Follower about an “extremely sophisticated” phishing attack, who pretended to be Google and tempt users to publish login information.

The phishing attack uses Google's infrastructure to send a fake alarm to users by informing them that their Google data is shared as a result of a summons with the law enforcement authorities, Nick Johnson said in a contribution from April 16 to X.

“There is the DKIM -Signature check and Google Mail shows it without warnings -it even puts it in the identical conversation as other, legitimate security warnings,” he said.

The fake summons seem to return from a Google no-repry domain. Source: Nick Johnson

As a part of the attack, users are offered the potential of displaying the case materials or protest by clicking on a support sides -link, which in response to Johnson uses a tool with which a web site could be created on a Google SubDomain.

“From there you’ll likely harvest your login information and use to compromise your account. I didn't go any further to ascertain,” he said.

The name of Google Domain makes the e -mail appear legitimate, but Johnson points out that there are still clear signs that it’s a phishing fraud -as it’s forwarded from a personal e -mail address.

Fraudsters use Google Systems

In a report dated April 11, the software company Easydmarc explained that the phishing fraud was working through weapons from Google website.

Anyone with a Google account can create a web site that appears legitimate and is hosted under a trustworthy Google domain.

You also use the Google Oauth app, during which the important thing trick is you could insert every thing you wish within the App-Name field in Google, and use a website via name-ceap you could use to output “no-reply@Google account as from the address and the reply address could be”.

Source: Nick Johnson

“Finally, they forward the message to their victims. Because DKIM only checks the message and her header and never the envelope, the message hands over the signature validation and shows as legitimate message within the user's inbox – also in the identical thread as legitimal security warnings,” said Johnson.

Google will soon prepare countermeasures

In an interview with CoinTelegraph, a Google spokesman said that they’re aware of the issue and the mechanism with which the attacker inserts the “any length text”, inserting the mechanism that can prevent the attack method from working in the longer term.

“We are aware of this class of the targeted attack by the threat actor, rockfoils, and have introduced protective measures last week. These protective measures will soon be fully used, which implies that this possibility is closed for abuse,” said the speaker.

“In the meantime, we encourage users to take over two-factor authentication and passkeys who offer strong protection against such phishing campaigns.”

The spokesman added that Google won’t ever ask for personal account registration information-in one thing-one in a single person, one-off passwords or push notifications or upper users.

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

Sui Dex restarts that move to the open source parade after a large exploit

Cetus Protocol, a Sui-native decentralized exchange that suffered an enormous exploit of $ 220 million in May, says that after its recent relaunch it's now...

'Bitcoin Family' revises the safety in line with Krypto -Criminal wave

Didi Taihuttu, patriarch of the so-called "Bitcoin family", has revised his digital asset security setup after a wave of violent attacks on crypto owners. The...

Upbit lists Ravencoin (RVN) and LAGRANGE (LA)

Upbit, a cryptocurrency exchange in South Korea, listed two recent digital assets on - Ravencoin (RVN) and Lagrange (LA) - The platform RVN/KrW trading couple...

Sui Dex restarts that move to the open source parade after an enormous exploit

Cetus Protocol, a Sui-native decentralized exchange that suffered an enormous exploit of $ 220 million in May, says that after its recent relaunch it's now...

Most Popular

bitcoin
Bitcoin (BTC) $ 105,521.27 0.05%
ethereum
Ethereum (ETH) $ 2,486.12 1.15%
tether
Tether (USDT) $ 1.00 0.00%
xrp
XRP (XRP) $ 2.23 0.70%
bnb
BNB (BNB) $ 649.28 0.14%
solana
Solana (SOL) $ 150.16 0.16%
usd-coin
USDC (USDC) $ 1.00 0.00%
dogecoin
Dogecoin (DOGE) $ 0.180952 1.88%
tron
TRON (TRX) $ 0.284878 0.29%
cardano
Cardano (ADA) $ 0.659149 0.60%