Nyongesa Sande
No Result
View All Result
  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
Nyongesa Sande
  • About Us
    • Nyosake Designers
      • Nyosake Webmasters
      • Nyosake Investment
  • Contact Us
    • Newsroom Contact
  • Ownership Disclosure
  • Advertise
No Result
View All Result
Nyongesa Sande
No Result
View All Result
  • News
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
ADVERTISEMENT

Home » Hackers Send Phishing Emails via [email protected]

Hackers Send Phishing Emails via [email protected]

Phishing campaign abuses Google OAuth and DKIM to bypass filters

NyongesaSande News Desk by NyongesaSande News Desk
1 year ago
in Google
Reading Time: 3 mins read
A A
Hackers Send Phishing Emails via no-reply@google.com

Hackers Send Phishing Emails via [email protected]

A disturbing new campaign has emerged, where phishing emails from [email protected] are making their way into users’ Gmail inboxes—appearing completely authentic and evading all conventional spam filters. This sophisticated attack uses a combination of Google OAuth manipulation and DKIM replay attacks to hijack Google’s own email infrastructure for malicious purposes.

  • Hackers Send Phishing Emails via [email protected]
    • 🎯 How the Attack Works
      • 1. Baiting via OAuth
      • 2. Google Triggers the Email
      • 3. Authenticated and Undetectable
      • 4. Fake Support Pages on Google Sites
    • ⚠️ Why It’s So Dangerous
    • 🛡️ Google’s Response
    • 🔐 How to Stay Safe
    • 🔍 Final Thoughts

🎯 How the Attack Works

1. Baiting via OAuth

Hackers create a Google Workspace account and register a fake OAuth app. They disguise phishing content by placing it directly in the app name field.

2. Google Triggers the Email

Once a user interacts with this fake app, Google automatically sends a security email to the user warning of new app access. The phishing message is embedded within this email’s metadata—disguised as the app name.

ADVERTISEMENT

3. Authenticated and Undetectable

The email is digitally signed with DKIM, confirming it was genuinely sent by Google. This signature allows it to bypass all spam filters effortlessly.

4. Fake Support Pages on Google Sites

Users are redirected to spoofed Google Sites pages that mimic official Google help pages, where login details are silently harvested.

ADVERTISEMENT

⚠️ Why It’s So Dangerous

  • Trusted Source: Comes directly from a Google server ([email protected]).
  • Properly Authenticated: Carries a valid DKIM signature—used by spam filters to verify legitimate messages.
  • Hosted on Google’s Own Platforms: The phishing page sits on sites.google.com, making it seem even more official.
  • Difficult to Detect: Even tech-savvy users may fall victim due to the familiar format and trusted URLs.

🛡️ Google’s Response

Initially dismissing the attack as “working as intended,” Google has since acknowledged the misuse after cybersecurity experts like Nick Johnson raised the alarm. The company has confirmed that mitigation steps are now underway to block such abuse vectors.


🔐 How to Stay Safe

✅ Enable Two-Factor Authentication (2FA): Use passkeys or an authenticator app to protect against credential theft.
✅ Review Third-Party Access: Navigate to Google Account → Security → Third-party apps and remove suspicious apps.
✅ Scrutinize Email Links: Hover over links to preview them before clicking. When in doubt, visit the website manually.
✅ Be Wary of Urgency: Watch out for threatening language like “Account compromised”—a known phishing tactic.
✅ Report Phishing: Use Gmail’s “Report phishing” option to alert Google.


🔍 Final Thoughts

This phishing campaign is a masterclass in exploiting trust, leveraging Google’s infrastructure to trick even the most cautious users. As phishing emails from [email protected] continue to circulate, it’s more important than ever to stay alert and follow cybersecurity best practices.

Tags: DKIM replay attackGmail phishing 2025Google OAuth abuseGoogle phishing scamGoogle Sites phishingPhishing Emails From [email protected]
Google Add as a Preferred Source on Google
Previous Post

Samsung Delays Galaxy Z Flip FE and Tri-Fold to Q4 2025

Next Post

AI-Powered Budgeting: Smart Finance Tools in 2025

NyongesaSande News Desk

NyongesaSande News Desk

Nyongesa Sande offers diverse content across news, technology, entertainment, and more, aiming to provide readers with a wide range of informative and engaging articles. NYONGESA SANDE's dedicated team provides our audience not only with the highly relevant news but also with outstanding interactive experience.

Related Posts

Google Meet CarPlay support rolls out
Google

Google Meet CarPlay support rolls out

2 months ago
How Many Devices Are Running Android 16? A Look at Google’s Latest Data
Google

How Many Devices Are Running Android 16? A Look at Google’s Latest Data

4 months ago
NotebookLM & Gemini 3 Combine to Turn Research into Decks, Visuals & Clean Data
Google

NotebookLM & Gemini 3 Combine to Turn Research into Decks, Visuals & Clean Data

6 months ago
Affinity Global Advertising Pvt. Ltd.
Google Ad Manager

Certified Publishing Partners are trained experts on Google Ad Manager, Google AdSense, and/or Google AdMob.

6 months ago
Aleph Holding
Google Ad Manager

Aleph Holding

6 months ago
Airfind
Google Ad Manager

Airfind

6 months ago
Load More
Next Post
ChatGPT AI Image Tool Delayed for Free Users

AI-Powered Budgeting: Smart Finance Tools in 2025

How to Turn Study Notes into Quizzes Using AI

Can AI Help You Become More Productive in 2025?

ADVERTISEMENT

Who We Are

Nyongesa Sande

NyongesaSande.com is a digital news and media platform covering breaking news, business, technology, AI, politics, sports, world affairs and African innovation.

News Sections

  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live

Editorial Standards

  • Editorial Policy
  • Fact Checking Policy
  • Corrections Policy
  • Ethics Policy
  • AI Usage Policy
  • News Tips
  • Submit Press Release

Legal

  • Privacy Policy
  • Terms of Use
  • Cookie Policy
  • Disclaimer
  • Risk Disclaimer
  • DMCA
  • Ad Choices

Our Company

  • About Us
    • Nyosake Designers
      • Nyosake Webmasters
      • Nyosake Investment
  • Contact Us
    • Newsroom Contact
  • Ownership Disclosure
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
  • Disclaimer
  • Risk Disclaimer
  • DMCA
  • Ad Choices

NyongesaSande.com is an independent digital news and media platform covering Africa, business, technology, AI, politics and global developments.

© 2026 NyongesaSande.com. All rights reserved.

No Result
View All Result
  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live

NyongesaSande.com is an independent digital news and media platform covering Africa, business, technology, AI, politics and global developments.

© 2026 NyongesaSande.com. All rights reserved.