时间:2026-01-08 08:26:40 来源:网络整理编辑:知識
A sophisticated phishing attack is racing across the internet, and may already have hit your inbox.
A sophisticated phishing attack is racing across the internet, and may already have hit your inbox.
The definitely not-legit email disguises itself as an official message from Google alerting you that someone wants to share a Google Doc with you. Notifications of this sort are common and often wouldn't raise an eyebrow.
However, clicking through this particular link and taking the requested steps will open up your inbox — and potentially everyone on your contact list — to an as-of-yet unknown attacker.
Tweet may have been deleted
And, like we said, the link looks real — complete with a little "Open in Docs" blue box.
DON'T CLICK.Credit: mashableTweet may have been deleted
Just how widespread is this? Numerous reporters at Mashable have received the same phishing email, as have students at Columbia University— as a warning email sent out by a member of the Philosophy department shows. The scam may have even hit the Capitol.
Oops.Credit: MashableTweet may have been deleted
Google confirmed that it is aware of the problem and is looking into it.
According to one Reddit user, once a victim clicks on the fake Google Doc link, he or she is taken to a real Google page prompting you to select an account. After that, they are taken to a new page asking that they allow "Google Docs" to access the account.
Just don't.Credit: Jake SteamIf you click "allow," the attacker can access your account. And all your contacts will likely soon receive a fake Google Doc invite from you.
So, how to tell if that latest Google Doc your friend shared is real or fake? Thankfully, there are a few tell-tale warning signs. First, real Google Doc invites look different than the recent fake. Here's a legit one for comparison:
Lunch!Credit: MashableNotice the Google address at the bottom? And the box border formatting? The fake Google notification doesn't have that.
Second, expand the dropdown option in the menu bar next to the sender's name. Below is a real Google notification for a shared Google Doc.
Credit: mashableLastly, the spam email is also addressed to "[email protected]," which is an account with the disposable email service Mailinator.
If you did happen to click on the malicious link and allowed attackers into your account, you can revoke that access relatively easily. First, go to your Google permissions page. There you will find a list of all the apps that have account access. One app, titled Google Docs, is the offender. Revoke its permission immediately, and then change your password.
Tweet may have been deleted
So now that you know what's up, pay extra attention to any Google Docs coming your way. And, well, to anything asking you to click a link and enter your password or share account permission.
TopicsCybersecurityGoogle
Watch MTV's Video Music Awards 2016 livestream2026-01-08 08:18
德轉 :43歲周挺複出 加盟中冠球隊大連金石灣2026-01-08 08:17
切爾西足總杯慘遭三連亞 近3年3次決賽點球負紅軍2026-01-08 08:10
瓜帥回擊埃弗拉:我在歐冠決賽摧毀你們時 沒看到個性2026-01-08 08:10
5 people Tim Cook calls for advice on running the biggest company in the world2026-01-08 08:04
緊追榜首 !國米保留衛冕希望 米蘭末輪不敗即奪冠2026-01-08 07:06
德乙大結局 :沙爾克不萊梅升德甲 漢堡進升級附加賽2026-01-08 07:02
中國女足東亞杯後將前往歐洲拉練 為明年世界杯做準備2026-01-08 06:21
Fyvush Finkel, Emmy winner for 'Picket Fences,' dies at 932026-01-08 06:18
薩拉赫傷退無緣決戰皇馬? 克洛普:明早上就能好2026-01-08 05:48
Aly Raisman catches Simone Biles napping on a plane like a champion2026-01-08 08:21
中超6月3日開賽首階段先戰10輪 確保各隊踢滿34輪2026-01-08 08:12
姆巴佩親承6月前公布未來 名記 :1億簽字費赴皇馬2026-01-08 08:04
馬競VS塞維利亞前瞻:本輪西甲焦點戰 兩隊爭季軍2026-01-08 07:38
Give your kitchen sponge a rest on this adorable bed2026-01-08 07:34
足協將提交中超最新開賽方案 山東隊前10輪考驗又升級2026-01-08 07:04
反“挖”巴薩?拜仁極度關注登貝萊 願開金球條款2026-01-08 06:47
廣州城股改有進展?幾家國企已將近億元經費打到共同賬戶2026-01-08 06:44
This weird squid looks like it has googly eyes, guys2026-01-08 06:28
利物浦OR曼聯?貝林厄姆許下諾言 必隨一隊戰英超2026-01-08 05:56