The security of Gmail has always been one of its biggest selling points, but now one of its most important new security features is actively being used by hackers to scam users.
“The sender found a way to dupe @gmail ’s authoritative stamp of approval, which end users are going to trust,” explains Plummer. “This message went from a Facebook account, to a UK netblock, to O365, to me. Nothing about this is legit.”
Plummer reports that Google initially dismissed his discovery as “intended behaviour” before his tweets about it went viral, and the company acknowledged the error. In a statement to Plummer, Google wrote: “After taking a closer look we realized that this indeed doesn't seem like a generic SPF vulnerability. Thus we are reopening this and the appropriate team is taking a closer look at what is going on.
We apologize again for the confusion and we understand our initial response might have been frustrating, thank you so much for pressing on for us to take a closer look at this!Regards, Google Security Team”Immense credit goes to Plummer, not just for his discovery, but for the lengths he went to to make Google acknowledge the problem.
06/05 Update: security researchers are beginning to understand how Gmail’s checkmark verification system is being tricked and how it applies to other email services. In a“Gmail's
Australia Latest News, Australia Headlines
Similar News:You can also read news stories similar to this one that we have collected from other news sources.
Google is using AI to make searching in Gmail easier, fasterInsider tells the global tech, finance, markets, media, healthcare, and strategy stories you want to know.
Read more »
All 1.8 billion active Gmail users need to read this warning to prevent getting ripped offAll 1.8 billion active Gmail users need to read this warning before opening the next letter in their inbox.
Read more »
Snap hires new head of engineering from GoogleSnap Inc said on Monday it hired a new senior vice president of engineering from Google, the latest in a string of new recruits to advance its advertising business.
Read more »
Apple Maps' new feature on iOS 17 means I can finally ditch Google Maps for goodApple has announced that it is finally adding offline maps to Apple Maps with iOS 17, giving me one last reason to leave Google Maps.
Read more »
Don't trust Gmail's blue checkmarks because some hackers might abuse themGmail rolled out a blue checkmark security indicator, but hackers are already abusing the feature - here's what to do about it.
Read more »
Uncover New Indiana Jones Collectibles with shopDisney’s New RevealsA new Indiana Jones adventure awaits and Disney is bringing collectors some new gear to show their love for the adventurer
Read more »