Chủ Nhật, 27 tháng 5, 2018

A phishing effort that objectives Google Docs, Drive clients



Symantec has recognized a phishing effort that exploits Google Drive, which clients discover hard to distinguish as phishing.

Potential casualties get an email with a feature saying "Documentation" with the motivator to tap on a connection to a vital reason report, composed Nick Johnston of Symantec in a post. on the blog.

Tapping on the connection will take the client to Google Docs, yet to the same login page as utilized for some, Google administrations.

The phony login page was "really facilitated on Google's servers and served over SSL [Secure Socket Layer], making the site much all the more persuading," Johnston composed.

"The tricksters have quite recently made an index inside their Google Drive account, checked it open, transferred a record there, and after that utilized the review highlight of Google Drive to get freely available URLs. to acquire their message. "

On the off chance that clients get draw, their logins and passwords are sent to a PHP content on a traded off Web server, Johnston composes. The phony login page at that point sidetracks to the Google Docs report.

"A Google Account is an important focus for con artists, as they can be utilized to get to numerous administrations including Gmail and Google Play, which can be utilized to buy applications and administrations. Android content, "Johnston composed.

Không có nhận xét nào:

Đăng nhận xét