{ads}

Phishers Exploit Google Sites and DKIM Replay to Send Signed Emails, Steal Credentials



April 22, 2025 at 04:20PM

In what has been described as an "extremely sophisticated phishing attack," threat actors have leveraged an uncommon approach that allowed bogus emails to be sent via Google's infrastructure and redirect message recipients to fraudulent sites that harvest their credentials. "The first thing to note is that this is a valid, signed email – it really was sent from no-reply@google.com," Nick Johnson

from The Hacker News https://ift.tt/GwWM0A7

0 Response to "Phishers Exploit Google Sites and DKIM Replay to Send Signed Emails, Steal Credentials"

Post a Comment

Article Top Ads

Central Ads Article 1

Middle Ads Article 2

Article Bottom Ads