Security

Major Google Drive phishing attack happening now – May, 3, 2017

A large scale phishing attack is underway. The attack uses a convincing Google Drive shared document email to get users to click a “Open in Docs” button. Upon doing so users are asked to authorize app that gains access to your email and address book.

The design is very similar to the new Google design, but there are a few things you can look for:

  • This attack seems to come from from “hhhhhhhhhhh@”
  • The original email does not meet current share email design
  • The authorize link ends in “.win”
  • The authorize link is not a legitimate google domain

So if you have an email that looks like the image below, delete it. If you’ve clicked and authorized the app, instructions on cleaning your account will be published below shortly.

UPDATE: The Verge has reported that the app may have been de-authorized by Google, but to be safe you can follow the instruction below to double check if your account has the app authorized.

Update 4:15pm: Google has tweeted they are “investigating”

Update 5:50pm: Official statement from google on twitter:

 

The fix…

If you’ve already clicked the button and authorized the app follow the following instructions to remove the malicious app and protect your account.

Remove the app from your connected apps and sites

  1. Access your account app permission list: https://myaccount.google.com/permissions
  2. Look for an app called Google Docs with an Authorization Date of “Just Now” or within the last few hours.
  3. Click “Remove”

Change your password

As always, moments like these are a good time to reset your password, but only do this after de-authorizing the app. Since the app has access to your email it’s good practice to do this second after the app is de-authorized.

  1. Visit your account preferences: https://myaccount.google.com/security#signin
  2. Click “Password”
  3. Verify your account (and 2-step authentication if you have it. If not, this is a great time to implement it.)
  4. Change your password
Daniel Proczko

Daniel Proczko has been working with organizations and individuals to build & grow the entrepreneur community of Kalamazoo, MI. From organizing TEDx events, hack-a-thons, and documentary screenings to engaging with business leaders, Dan strives to inspire individuals with new ideas and better thinking. Having always been interested in tech and understanding the value of innovation through IT, communicating the importance of strategic IT thinking is one of Dan's primary goals within Newmind Group.

Share
Published by
Daniel Proczko

Recent Posts

These 7 AI Trends Are Sweeping the Cybersecurity Realm

Relentless digital innovation has defined the last few years. The symbiotic relationship between AI and…

1 month ago

Online Security: Addressing the Dangers of Browser Extensions

Browser extensions have become as common as mobile apps. People tend to download many and…

1 month ago

How Small Businesses Are Unlocking Growth With Generative AI

Staying ahead in business often means embracing cutting-edge technologies. New tools can unlock new avenues…

1 month ago

Examples of How a Data Breach Can Cost Your Business for Years

In the digital age, data is the lifeblood of businesses. It fuels operations, decision-making, and…

2 months ago

Are Your Smart Home Devices Spying On You? (Experts Say, Yes!)

The integration of smart home devices has become synonymous with modern living. They offer convenience,…

2 months ago

5 Ways to Leverage Microsoft 365’s New AI Innovations

Microsoft 365 has a powerful suite of cloud-based productivity tools. They can help you work…

2 months ago