TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Google Docs Users Targeted by Phishing Scam

117 点作者 ulam2大约 11 年前

10 条评论

zaroth大约 11 年前
What&#x27;s to stop the attacker from going the next step and forwarding the user&#x2F;pass to Google, triggering the SMS for 2FA, and then prompting me to enter it?<p>Now all you can hope is that Google notices the source IP or user-agent of the attacker doesn&#x27;t match up with the user&#x27;s usual pattern.
评论 #7401008 未加载
评论 #7402501 未加载
评论 #7400965 未加载
semenko大约 11 年前
Surprised no one&#x27;s used this opportunity to talk about Google&#x27;s gnubby &#x2F; FIDO &#x2F; U2F plans.<p>Non-phishable two-factor auth token: <a href="http://fidoalliance.org/" rel="nofollow">http:&#x2F;&#x2F;fidoalliance.org&#x2F;</a><p>See presentation: <a href="https://docs.google.com/a/google.com/presentation/d/16mB3Nptab1i4-IlFbn6vfkWYk-ozN6j3-fr7JL8XVyA/edit#slide=id.g19c09a112_2_0" rel="nofollow">https:&#x2F;&#x2F;docs.google.com&#x2F;a&#x2F;google.com&#x2F;presentation&#x2F;d&#x2F;16mB3Npt...</a>
评论 #7401207 未加载
评论 #7401572 未加载
juliann大约 11 年前
This is why EVERYONE should have Two-Step Verification (<a href="https://support.google.com/accounts/answer/180744?hl=en" rel="nofollow">https:&#x2F;&#x2F;support.google.com&#x2F;accounts&#x2F;answer&#x2F;180744?hl=en</a>) enabled if you care a little bit about your Google Account and the data you have stored there. This kind of attack will expose your password, but the attackers wont get in your account anyway.
评论 #7400885 未加载
评论 #7400829 未加载
评论 #7400858 未加载
评论 #7401036 未加载
评论 #7400827 未加载
iancarroll大约 11 年前
It&#x27;s interesting how this is done - and there&#x27;s no real workaround except to force 2FA.
评论 #7400883 未加载
therealmarv大约 11 年前
I think it is important that Symantec should mention how the URL looks like. From reading this news I can only assume that this happens with hosted websites from Google Drive which have an URL like <a href="https://googledrive.com/host/someidhere" rel="nofollow">https:&#x2F;&#x2F;googledrive.com&#x2F;host&#x2F;someidhere</a> This warning could be better.
dhekir大约 11 年前
Since we are talking about phishing in Google&#x27;s domains, can someone explain me why <a href="http://www.blogspot.co.uk" rel="nofollow">http:&#x2F;&#x2F;www.blogspot.co.uk</a> (and .ie, and .fr, etc.) leads to someone&#x27;s specific blog, instead of doing like the <a href="http://www.blogspot.com" rel="nofollow">http:&#x2F;&#x2F;www.blogspot.com</a> site does, which leads to Google&#x27;s login?<p>What prevents this &quot;www&quot; Blogger user from mounting a phishing attack?
评论 #7402991 未加载
brown9-2大约 11 年前
<i>After pressing &quot;Sign in&quot;, the user’s credentials are sent to a PHP script on a compromised web server.</i><p>I might be missing something, but how does this part work?<p>Is it because the document in the Google Drive folder is actually a html document that the browser is loading (and executing javascript of)?
评论 #7401086 未加载
评论 #7400972 未加载
评论 #7401097 未加载
mikeash大约 11 年前
And that&#x27;s why you shouldn&#x27;t serve user content on the same domain as your own stuff.
评论 #7402154 未加载
judk大约 11 年前
&gt; Symantec customers are protected against this threat.<p>How?
mathattack大约 11 年前
I&#x27;ve seen an account hacked already.