By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Warning to 1,800,000,000 Gmail users over sophisticated scam
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Warning to 1,800,000,000 Gmail users over sophisticated scam
News

Warning to 1,800,000,000 Gmail users over sophisticated scam

News Room
Last updated: 2025/05/21 at 12:33 PM
News Room Published 21 May 2025
Share
SHARE
Don’t let someone else get their hands on your gmail account (Picture: Getty)

Gmail users have been warned about a highly convincing scam email thatappears to come from Google themselves.

The email seems to come from [email protected], which is the address that real security updates come from.

It links to a webpage hosted by Google, too, which is another convincing sign.

But the website was not made by them; it was made by scammers trying to trick you.

The email claims that ‘a subpoena was served on Google LLC requiring us to produce a copy of your Google Account content’.

It links to a sites.google.com domain designed to look like Google’s genuine support page.

However, the real support webpage is on accounts.google.com, while the ‘sites’ domain is one that anyone can build a free webpage on.

@nicksdjohnson ? Apr 16 Recently I was targeted by an extremely sophisticated phishing attack, and I want to highlight it here. It exploits a vulnerability in Google's infrastructure, and given their refusal to fix it, we're likely to see it a lot more. Here's the email I got: **EMAIL AND LINKS PICTURED VIA https://x.com/nicksdjohnson
The scam email which appeared to be sent by Google (Picture: @nicksdjohnson/X)

Ordinary users are unlikely to know or notice this, however, and could inadvertently grant scammers permissions that could allow them access, or target you with malware.

Security software firm Kaspersky said that there are other clues, too.

If you look closer at the email details, the to and mailed-by fields contain a jumble of letters of emails which have nothing to do with Google, showing me[@]googl-mail-smtp-out-198-142-125-38-prod[.]net and  
fwd-04-1.fwd.privateemail[.]com.

The scam was first revealed by tech developer Nick Johnson.

How could they make it so convincing?

The scammers used Google OAuth technology, which is what you see when you use your Google details to sign into a different app.

Those who fell victim to the scam approved the permissions thinking they were giving Google themselves permission.

It is not clear exactly what the scammers hoped to achieve by this, but could involve data theft or infecting the victim with malware.

@nicksdjohnson ? Apr 16 Recently I was targeted by an extremely sophisticated phishing attack, and I want to highlight it here. It exploits a vulnerability in Google's infrastructure, and given their refusal to fix it, we're likely to see it a lot more. Here's the email I got: **EMAIL AND LINKS PICTURED VIA https://x.com/nicksdjohnson
The ‘from’ field looks legit, but not the ‘to’ or ‘mailed-by’ (Picture: @nicksdjohnson/X)

Kapersky said that when an OAuth app is registered, ‘the web application administrator can manually enter completely arbitrary text in the App 
Name field – this is what the criminals apparently took advantage of.’

The mechanism that attackers used to do this has now been shut down, which will prevent this method of attack from working in future.

A Google spokesperson said: ‘We’re aware of this class of targeted attack from this threat actor and have rolled out protections to shut down this avenue for abuse.

‘In the meantime, we encourage users to adopt two-factor authentication and passkeys, which provide strong protection against these kinds of phishing campaigns.’

They recently issued guidance on spotting scams, saying they will not ask for any of your account credentials, including your password, one-time passwords, confirm push notifications, and will not call you.

Get in touch with our news team by emailing us at [email protected].

For more stories like this, check our news page.

Arrow MORE: People are placing bets on which five escaped New Orleans prisoners will be caught last

Arrow MORE: Stalker detective tried to ‘destroy’ ex’s life by lying he was a paedophile

Arrow MORE: School boys deny throwing massive seat over balcony at Westfield

Breaking News

Never miss the biggest stories with breaking news alerts in your inbox.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Beyond the Panic: What Quantum Safety Really Looks Like for Bitcoin | HackerNoon
Next Article Android 16 adds AI-powered weather effects that can make it rain on your photos
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

A real new console? Or a simple evolution?
Mobile
Attaxion Becomes The First EASM Platform To Integrate ENISA’s EU Vulnerability Database (EUVD) | HackerNoon
Computing
Luminar secures up to $200M following CEO departure and layoffs | News
News
Asus Has Rad New Custom Desktop GPUs, Including a Doom-Themed Beauty
News

You Might also Like

News

Luminar secures up to $200M following CEO departure and layoffs | News

3 Min Read
News

Asus Has Rad New Custom Desktop GPUs, Including a Doom-Themed Beauty

7 Min Read
News

Report: Creating a 5-second AI video is like running a microwave for an hour

3 Min Read
News

Why OpenAI’s partnership with Jony Ive isn’t bad news for Apple

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?