NEWSLETTER

Sign up to read weekly email newsletter

Science, Space & Technology

Hindupedia
Donate
Search
  • World
  • Business
  • Finance
  • Politics
  • Pages
    • Contact US
    • Search Page
    • 404 Page
Reading: Google Warns 1.8 Billion Gmail Users of Tricky Phishing Scam
Share
HindupediaHindupedia
  • Read History
  • Latest News
  • Finance
  • Politics
  • Education
  • Technology
  • Sports
Search
  • Pages
    • About us
    • Contact Us
    • Editorial Standards
    • Diversity and Inclusion Policy
    • Ownership and Funding Information
    • Privacy Policy
  • Personalized
    • Read History
  • Categories
    • Business
    • Politics
    • Technology
    • Environment
    • Finance
Follow US
Made by ThemeRuby using the Foxiz theme. Powered by WordPress

Home » Tech News » Google Warns 1.8 Billion Gmail Users of Tricky Phishing Scam

Tech NewsSecurity

Google Warns 1.8 Billion Gmail Users of Tricky Phishing Scam

By Rishav Kumar
Last updated: July 22, 2025
4 Min Read
Share

New Delhi, July 22, 2025 – Google is alerting its Gmail users to watch out for a smart phishing scam that’s been hitting inboxes. This campaign started back in mid-April and uses emails that look just like real ones from Google. They trick people into giving away their login details. The emails seem to come from official addresses like no-reply@google.com and even pass security checks that Gmail usually relies on. It’s tough to spot because everything appears legit at first glance.

The scam works by sending messages that mimic Google’s own security alerts. For example, they might say there’s a legal subpoena for your account data or an urgent issue that needs fixing right away. If you click the link inside, it takes you to a fake page hosted on sites.google.com, which is a real Google domain anyone can use. There, it asks for your username and password, pretending it’s to view case details or upload documents. Once you enter them, the bad guys grab your credentials and can take over your account.

Google has confirmed this is a targeted attack from a group called Rockfoils. They use a method called DKIM replay, where they take a real signed email from Google and send it again to new victims. This way, it bypasses filters because the signature checks out. The emails often end up in the same thread as actual Google messages, making them blend in even more.

Scammers use personal details for extortion.
Scammers use fake endorsements.
Scammers send fake invoices.

How the Attack Tricks People

Attackers start by creating a fake Google app with a long name that includes phishing text. When Google sends a security alert about it, they forward that alert without changing it. Tools like Jellyfish SMTP help them do this while keeping the original signature intact. The result? Your inbox shows what looks like a trusted email from Google, complete with passing SPF, DKIM, and DMARC checks.

From what experts say, this isn’t your basic scam. It exploits Google’s own setup, like OAuth and Sites, to seem real. One developer even shared on X how he almost fell for it, thinking it was a subpoena notice. The fake pages copy Google’s login screens closely, so even careful users might slip up.

Google’s Fix and What You Can Do

Google says they’ve been rolling out protections since mid-April. They’re shutting down the ways attackers insert fake text and abuse their platforms. A full fix should be in place soon to block this kind of abuse. But they warn that no system catches everything, so users need to stay sharp.

To protect yourself, don’t click links in emails that push for quick action, even if they look official. Go straight to your Google account settings instead. Turn on two-factor authentication – that adds an extra step like a phone code. If you get a weird email, report it through Gmail’s tools. Experts also suggest using secure email add-ons or switching providers if you’re handling sensitive stuff.

This scam shows how scammers are getting clever with big tech’s tools. Gmail blocks most junk, but this one slipped through cracks. More than a billion people use Gmail, so staying alert is key. Google keeps updating, but your habits make the difference. Keep an eye on official updates from them for the latest.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
[mc4wp_form]
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Leave a Comment Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

SUBSCRIBE NOW

Subscribe to our newsletter to get our newest articles instantly!
[mc4wp_form]

HOT NEWS

Modi and trump

Indian and U.S. diplomats are trying to arrange a meeting of Modi and Trump, But Why?

Politics
January 22, 2025
Rising Suicides Among Married Men Over Marriage-Related Issues – What Reports Reveal

Rising Suicides Among Married Men Over Marriage-Related Issues – What Reports Reveal

December 9, 2024, was a day like any other. People were sharing memes, chatting with…

March 18, 2025
India won the icc champions trophy final 2025

India Lifts Champions Trophy with 5 Wicket Win, Rohit Shines with 76

A Sunday night in Dubai, the stadium packed, and the air buzzing with excitement. India…

March 18, 2025
104-year-old life convict from UP released after 43 years in jail

104-year-old life convict from Uttarpradesh released after 43 years in jail

Today marks a day in history that records an incident, one that not only raises…

May 30, 2025

YOU MAY ALSO LIKE

Microsoft: Chinese hacking groups were part of SharePoint attacks

A major security bug in Microsoft’s SharePoint software has let hackers break into the computer systems of more than 100…

TechnologySecurity
July 23, 2025

Tesla Kicks Off in India with Model Y Launch

Tesla has finally stepped into the Indian market. They opened their first showroom in Mumbai this week and started taking…

TechnologyEVs
July 18, 2025
We use our own and third-party cookies to improve our services, personalise your advertising and remember your preferences.

Follow US: 

Foxiz Quantum US

The Business Centre 132, My Street Kingston, New York 12401 United States
Tel: +1-541-234-3010

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?