Skip to main content

Gmail on Android now stands between you and suspected phishing links

A person accessing Gmail via their phone and laptop.
Aleksey Boldin/123rf
Google is taking steps to warn and notify Gmail users of suspected phishing attacks after Wednesday’s incident, in which a number of individuals fell victim to a scheme involving a nefarious web app posing as a Google Docs invitation. The invite itself would appear to be sent from one of the user’s Gmail contacts and, when opened, it would automatically distribute itself to each one of their contacts as well.

To combat this, Google has pushed out an update to Gmail for Android that issues a warning every time it recognizes a link in an email that appears to be a forgery. They’re not unlike the suspected site warnings in just about every modern browser, and in similar fashion, you’re allowed to “proceed at your own risk” and ignore them if you please.

Recommended Videos

While Google says the particular attack that was used earlier in the week has since been disabled, it did uncover a vulnerability within Gmail that still remains. As TrendMicro’s Mark Nunnikhoven notes, the method masqueraded as a legitimate Google URL, which allowed it to float undetected by both Gmail and users alike.

“Unlike a typical phishing attack where the goal is to compromise the user’s system,” Nunnikhoven wrote, “the goal here is to compromise their Google Account.”

According to Nunnikhoven, a similar strategy was used last summer to hack the Democratic National Committee. That instance, believed to have been perpetrated by cyber-espionage group Pawn Storm, also leveraged Google’s OAuth authentication system — a technique that appears to be becoming more common among hackers.

As a result, users will only have to become more discerning and careful in screening emails and links. Google account-based invitations aren’t necessarily completely safe anymore, so always question the sender and nature of any links you receive before you click. It could save you — and all your Gmail contacts — a lot of trouble in the future.

Adam Ismail
Former Digital Trends Contributor
Adam’s obsession with tech began at a young age, with a Sega Dreamcast – and he’s been hooked ever since. Previously…
You can now try out Google’s Bard, the rival to ChatGPT
ChatGPT versus Google on smartphones.

Google has just announced the launch of its conversational AI, Bard. Bard is Google's response to the ever-popular ChatGPT, now in use by Microsoft in its own products.

The tech giant rushed to release Bard, and it is now ready for testing. Google is inviting users to test the AI, but as it notes, it might make mistakes.

Read more
These Android apps are spying on you — and there’s no easy way to stop them
Illustration of a giant eye stalking through a phone

Android’s security woes need no introduction, but another threat that hasn’t received its fair share of awareness relates to spyware and stalkerware apps. These apps can secretly be installed on a victim’s phone to monitor their activity and can be exploited to harass victims of domestic abuse and engage in online stalking. All someone needs is physical access to the victim's phone to install these apps, which is not too difficult in cases of domestic abuse.

Call it an app-fueled version of AirTag stalking, but on steroids, because these spyware apps can steal everything including messages, call logs, emails, photos, and videos. Some can even activate the microphone and the camera, and secretly transfer these recordings to a remote server where the abuser can access it. Since Google Play's policies don't allow stalking apps, these apps are sold via third-party websites and need to be sideloaded.

Read more
What is Google Assistant? Here’s the guide you need to get started
Using Google Assistant on the Google Pixel Watch.

Artificial intelligence (AI) is huge news right now, thanks to chatbots like ChatGPT -- but did you know you can already access an AI on your Android phone? Google Assistant is Google's AI-powered voice assistant, and it's available on Android, iOS, and a large number of smart devices (like Google's Nest speakers). While not as capable as ChatGPT (yet), Google Assistant can handle an impressive number of tasks — including pausing and resuming songs and videos, making tasks and reminders, and in some cases, even taking and screening phone calls for you.

That may seem like a lot, but Google Assistant is relatively simple to use. If you've never used a voice assistant before, we've got this guide to help you get to grips with it and take your first steps.
What is Google Assistant?

Read more