
Beware of Gmail Users: This Sophisticated Phishing Attack
Artificial intelligence has created a new way of reaching people using Gmail with new methods of phishing with the aim of obtaining their information. The company’s recommendations of the risks involved in using the social platform reached the entire membership strength that is estimated to be 2.5 billion.
Key Highlights
- AI Phishing: Hackers have begun using AI to develop phishing messages whose nature is very hard to distinguish from actual ones that are genuine.
- Phishing Scam involving Google Support: The criminals are calling users directly and sending them very well-fabricated emails supposedly from Google Support, informing them that their accounts have been hacked.
- Phishing: Users are provided with recovery codes, which are not recovery codes but are linked with the Gmail user and his/her account by the attacker.
- Consequently, over 2.5 billion Gmail account users are under the threat; users from different parts of the world can become targets of these complex phishing scams.
- Safety Precautions: Google recommends authentication, a strong password, and skepticism when receiving urgent notifications from fake Google support.
The malicious technique is the human cloning, whereby an artificial intelligence system imitates human interaction appropriately. Customers report to Google that there are scammers who claim to work for Google support before guiding the victims through actions that degrade their accounts. This is because the attackers continue to use phone numbers or email addresses that look genuine.
Google commits resources in cooperation with DNS Research Federation and Global Anti-Scam Alliance to create the Global Signal Exchange, needed for the collaboration against the fraud actions.
As stated by the agreements between the security specialists, the users cannot be isolated and passive during protection from attacks. Because it is simple to create a fake recovery request users should ensure that all these cases are legitimate while two two-factor identification should be implemented while signing into an account. From this paper’s point of view, current users should be very cautious of the resources that they think are AI-operated, as phishing scams are gradually becoming more complicated.