时间:2025-10-08 08:18:19 来源:网络整理编辑:知識
A sophisticated phishing attack is racing across the internet, and may already have hit your inbox.
A sophisticated phishing attack is racing across the internet, and may already have hit your inbox.
The definitely not-legit email disguises itself as an official message from Google alerting you that someone wants to share a Google Doc with you. Notifications of this sort are common and often wouldn't raise an eyebrow.
However, clicking through this particular link and taking the requested steps will open up your inbox — and potentially everyone on your contact list — to an as-of-yet unknown attacker.
Tweet may have been deleted
And, like we said, the link looks real — complete with a little "Open in Docs" blue box.
Tweet may have been deleted
Just how widespread is this? Numerous reporters at Mashable have received the same phishing email, as have students at Columbia University— as a warning email sent out by a member of the Philosophy department shows. The scam may have even hit the Capitol.
Tweet may have been deleted
Google confirmed that it is aware of the problem and is looking into it.
According to one Reddit user, once a victim clicks on the fake Google Doc link, he or she is taken to a real Google page prompting you to select an account. After that, they are taken to a new page asking that they allow "Google Docs" to access the account.
If you click "allow," the attacker can access your account. And all your contacts will likely soon receive a fake Google Doc invite from you.
So, how to tell if that latest Google Doc your friend shared is real or fake? Thankfully, there are a few tell-tale warning signs. First, real Google Doc invites look different than the recent fake. Here's a legit one for comparison:
Notice the Google address at the bottom? And the box border formatting? The fake Google notification doesn't have that.
Second, expand the dropdown option in the menu bar next to the sender's name. Below is a real Google notification for a shared Google Doc.
Lastly, the spam email is also addressed to "[email protected]," which is an account with the disposable email service Mailinator.
If you did happen to click on the malicious link and allowed attackers into your account, you can revoke that access relatively easily. First, go to your Google permissions page. There you will find a list of all the apps that have account access. One app, titled Google Docs, is the offender. Revoke its permission immediately, and then change your password.
Tweet may have been deleted
So now that you know what's up, pay extra attention to any Google Docs coming your way. And, well, to anything asking you to click a link and enter your password or share account permission.
TopicsCybersecurityGoogle
Pole vaulter claims his penis is not to blame2025-10-08 08:11
Lupita Nyong'o is still making Michael B. Jordan do pushups, and it's still hilarious2025-10-08 08:04
Student discovers snake that's slithered into her Gryffindor backpack2025-10-08 07:55
Michelle Obama explains her painfully awkward reaction to Melania Trump's gift2025-10-08 07:53
Australian football makes history with first LGBT Pride Game2025-10-08 07:38
This deeply terrifying mascot is here for a very good reason2025-10-08 06:58
Designers create wireless charging pad for the Tesla Model 32025-10-08 06:57
What LGBTQ Olympians can expect to find in South Korea2025-10-08 06:54
Teacher absolutely nails it with new homework policy2025-10-08 06:26
Like Apple's HomePod, Sonos One and Amazon Echo Dot also leave marks2025-10-08 05:57
Donald Trump's tangled web of Russian influence2025-10-08 07:25
Justin Timberlake's 'Man of the Woods' gets savage review by Pitchfork2025-10-08 06:59
Chadwick Boseman's Rolling Stone front cover is sending Twitter into a thirst frenzy2025-10-08 06:57
'DOS,' the sequel to 'UNO,' is a new take on an old favorite2025-10-08 06:45
Uber's $100M settlement over drivers as contractors may not be enough2025-10-08 06:34
Here's what the iPhone's battery health setting will look like2025-10-08 06:34
Elon Musk: Teslas will soon be able to drive themselves coast to coast2025-10-08 06:28
What's Earth's 'ideal temperature'? That's a misleading question2025-10-08 06:25
5 people Tim Cook calls for advice on running the biggest company in the world2025-10-08 06:16
Will Smith recreates Jaden's 'Icon' video marking 100 million streams2025-10-08 05:51