• About
  • Landing Page
  • Buy JNews
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result

Phishing scammers now exploiting Google’s infrastructure to target crypto users

SB Crypto Guru News by SB Crypto Guru News
April 16, 2025
in Scam Alert
0 0
0
Phishing scammers now exploiting Google’s infrastructure to target crypto users



Phishing scammers now exploiting Google’s infrastructure to target crypto users

Phishing scams targeting crypto users have become more advanced, with attackers abusing Google’s infrastructure to conduct highly convincing attacks.

On April 16, Nick Johnson, the founder and lead developer of Ethereum Name Service (ENS), raised concerns over a fresh method cybercriminals use to compromise Gmail accounts and potentially target associated crypto wallets.

How phishing attackers are using Google to their advantage

According to Johnson, the attackers exploit a loophole in Google’s ecosystem that allows them to send phishing emails that appear genuine security alerts from the tech giant itself.

These emails are signed with valid DomainKeys Identified Mail (DKIM) signatures, enabling them to bypass spam filters and appear authentic to recipients.

Once opened, these emails direct users to a counterfeit support portal hosted on a Google subdomain. This fake page prompts victims to log in and upload sensitive documents.

However, Johnson warned that the attackers are likely harvesting credentials, which could compromise Gmail accounts and any services linked to those emails.

The phishing sites are built using Google’s Sites platform, which allows custom scripts and embedded content.

While this flexibility benefits legitimate users, it also allows malicious actors to create convincing phishing portals. Even more concerning is that there’s currently no way to report abuse directly through the Google Sites interface, making it easier for attackers to keep their content online.

He said:

“Google long ago realised that hosting public, user-specified content on google.com is a bad idea, but Google Sites has stuck around. IMO they need to disable scrips and arbitrary embeds in Sites; this is too powerful a phishing vector.”

To further enhance the illusion of legitimacy, the scammers create a Google OAuth application that formats and shares the phishing message. These messages are always complete with structured text and what appears to be contact information for Google Legal Support.

Google’s response

Johnson reported that he submitted a bug report to Google about this vulnerability.

Still, the search engine giant reportedly stated that the features work as intended and do not constitute a security issue.

Johnson wrote:

“I’ve submitted a bug report to Google about this; unfortunately they closed it as ‘Working as Intended’ and explained that they don’t consider it a security bug.”

Nevertheless, he urged Google to consider limiting script and embedding functionality to help prevent future abuse.

This incident highlights the increasing sophistication of phishing campaigns within the crypto space. According to Scam Sniffer, nearly 6,000 users lost around $6.37 million to phishing scams in March 2025 alone. In the first quarter of the year, 22,654 victims suffered total losses of $21.94 million.

Mentioned in this article
Latest Alpha Market Report





Source link

Tags: Bitcoin NewsCryptoCrypto NewsCrypto UpdatesExploitingGooglesInfrastructureLatest News on CryptoPhishingSB Crypto Guru NewsScammerstargetusers
Previous Post

Local Chinese Governments Cash In on Confiscated Crypto

Next Post

OKX Relaunches in US with Staged Rollout

Next Post
OKX Relaunches in US with Staged Rollout

OKX Relaunches in US with Staged Rollout

  • Trending
  • Comments
  • Latest
Big XR News from Google, Samsung, Qualcomm, Sony, XREAL, Magic Leap, Lynx, Meta, Microsoft, TeamViewer, Haply

Big XR News from Google, Samsung, Qualcomm, Sony, XREAL, Magic Leap, Lynx, Meta, Microsoft, TeamViewer, Haply

December 13, 2024
Meta Quest Pro Discontinued! Enterprise-Grade MR Headset is No Longer Available

Meta Quest Pro Discontinued! Enterprise-Grade MR Headset is No Longer Available

January 6, 2025
Meta Pumps a Further  Million into Horizon Metaverse

Meta Pumps a Further $50 Million into Horizon Metaverse

February 24, 2025
How to Get Token Prices with an RPC Node – Moralis Web3

How to Get Token Prices with an RPC Node – Moralis Web3

September 3, 2024
Exploring Moonbeam – Why Build on Moonbeam? – Moralis Web3

Exploring Moonbeam – Why Build on Moonbeam? – Moralis Web3

September 11, 2024
How to Get NFT Balances with One RPC Call – Moralis Web3

How to Get NFT Balances with One RPC Call – Moralis Web3

August 30, 2024
Solana price falls 18% in May as SEC scrutiny cuts open interest by 0M

Solana price falls 18% in May as SEC scrutiny cuts open interest by $330M

0
Mary Meeker’s AI Playbook, Gold’s Rise, and Earnings Watch – June 2, 2025

Mary Meeker’s AI Playbook, Gold’s Rise, and Earnings Watch – June 2, 2025

0
NFT Sales Plunge +20% To 2M This Last Week Of May 2025

NFT Sales Plunge +20% To $102M This Last Week Of May 2025

0
Seven years after brutal fire, National Museum of Brazil to partially reopen

Seven years after brutal fire, National Museum of Brazil to partially reopen

0
BitoPro Hit with .5M Crypto Theft

BitoPro Hit with $11.5M Crypto Theft

0
Web3 Is Not Dead. It’s Just Quiet. Here’s Why I’m Still Building | by Kolade Oluwarotimi | The Capital | May, 2025

Web3 Is Not Dead. It’s Just Quiet. Here’s Why I’m Still Building | by Kolade Oluwarotimi | The Capital | May, 2025

0
Robinhood Seals Bitstamp Acquisition, Marks Entry into Crypto Trading

Robinhood Seals Bitstamp Acquisition, Marks Entry into Crypto Trading

June 2, 2025
Seven years after brutal fire, National Museum of Brazil to partially reopen

Seven years after brutal fire, National Museum of Brazil to partially reopen

June 2, 2025
Looking To Buy The Dogecoin Dip Below alt=

Looking To Buy The Dogecoin Dip Below $0.2? Analyst Says Wait For This To Happen First

June 2, 2025
What I Learned From my First Major Crisis as a CEO

What I Learned From my First Major Crisis as a CEO

June 2, 2025
Reitar Logtech Announces .5 Billion Bitcoin Acquisition Plan

Reitar Logtech Announces $1.5 Billion Bitcoin Acquisition Plan

June 2, 2025
ETF Weekly Flows: Bitcoin Loses 7 Million as Ether Rallies With 6 Million Weekly Inflow

ETF Weekly Flows: Bitcoin Loses $157 Million as Ether Rallies With $286 Million Weekly Inflow

June 2, 2025
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse

Find the latest Bitcoin, Ethereum, blockchain, crypto, Business, Fintech News, interviews, and price analysis at SB Crypto Guru News.

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • Mining
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

SITE MAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.