Monday, 14 October 2024 04:36

New Gmail security alert for 2.5bn users as AI hack confirmed

Rate this item
(0 votes)

Google has implemented increasingly sophisticated protections against those who would compromise your Gmail account—but hackers using AI-driven attacks are also evolving. According to Google’s own figures, there are currently more than 2.5 billion users of the Gmail service. No wonder, then, that it is such a target for hackers and scammers. Here’s what you need to know.

The Latest AI-Driven Gmail Attack Is Scary Good

Sam Mitrovic, a Microsoft solutions consultant, has issued a warning after almost falling victim to what is described as a “super realistic AI scam call” capable of tricking even the most experienced of users.

It all started a week before Mitrovic realized the sophistication of the attack that was targeting him. “I received a notification to approve a Gmail account recovery attempt,” Mitrovic recounts in a blog post warning other Gmail users of the threat in question. The need to confirm an account recovery, or a password reset, is a notorious phishing attack methodology intended to drive the user to a fake login portal where they need to enter their credentials to report the request as not initiated by them.

Unsurprisingly, then, Mitrovic wasn’t falling for this and ignored the notification that appeared to originate from the U.S. and a missed phone call, pertaining to be from Google in Sydney, Australia, some 40 minutes later. So far, so relatively straightforward and easy to avoid. Then, almost exactly a week later, the fun started in earnest—another notification request for account recovery approval followed by a telephone call 40 minutes later. This time, Mitrovic didn’t miss the call and instead picked up: an American voice, claiming to be from Google support, confirmed that there was suspicious activity on the Gmail account.

“He asks if I’m traveling,” Mitrovic said, “when I said no, he asks if I logged in from Germany, to which I reply no.” All of this to engender trust in the caller and fear in the recipient. This is when things turned dark fast and really rather clever in the overall scheme of phishing things. The so-called Google support person informed Mitrovic that an attacker had accessed his Gmail account for the past 7 days, and had already downloaded account data. This rang alarm bells as Mitrovic recalled the recovery notification and missed call from a week earlier.

Googling the phone number he was being called from while speaking, Mitrovic discovered that it did, indeed, lead to Google business pages. This alone is a clever tactic likely to fool plenty of unsuspecting users caught up in the panic of the moment, as it wasn’t a Google support number but rather about getting calls from Google Assistant. “At the start of the call, you'll hear the reason for the call and that the call is from Google. You can expect the call to come from an automated system or, in some cases, a manual operator,” the 100% genuine page helpfully informs the reader.

 

Forbes

November 14, 2024

NNPC signs 10-year gas sale deal with Dangote Refinery

Nigeria's state oil firm, NNPC Ltd said on Wednesday one of its subsidiaries has agreed…
November 12, 2024

Ex-Gov Aregbesola warns of imminent revolution in Nigeria amid rising misery, hunger, insecurity

Former Osun State Governor Rauf Aregbesola has issued a stark warning about the worsening socio-economic…
November 13, 2024

Why being wrong is good for you - The Economist

“Mistakes are the portals of discovery,” wrote James Joyce in “Ulysses”. In 1888 Lee Kum…
November 09, 2024

Sick man brought to bank on hospital bed to confirm his identity

A severely sick Chinese man was pushed to a local bank branch on a hospital…
November 12, 2024

US court issues fresh arrest warrant for Air Peace CEO Allen Onyema

A United States court has reissued an order for the arrest of Allen Onyema, the…
November 14, 2024

What to know after Day 994 of Russia-Ukraine war

RUSSIAN PERSPECTIVE Ukraine could have nuclear weapon in months – report Ukraine could feasibly raid…
November 11, 2024

Hackers are targeting people who type these six words into their computer, smartphones

Computer users Googling whether Bengal cats are legal to own after finding themselves victims of…
October 27, 2024

Nigeria awarded 3-0 win over Libya after airport fiasco

Nigeria have been awarded a 3-0 victory over Libya, and three vital points, from their…

NEWSSCROLL TEAM: 'Sina Kawonise: Publisher/Editor-in-Chief; Prof Wale Are Olaitan: Editorial Consultant; Femi Kawonise: Head, Production & Administration; Afolabi Ajibola: IT Manager;
Contact Us: [email protected] Tel/WhatsApp: +234 811 395 4049

Copyright © 2015 - 2024 NewsScroll. All rights reserved.