{"id":925704,"date":"2025-04-26T11:22:33","date_gmt":"2025-04-26T05:52:33","guid":{"rendered":"https:\/\/telecomlive.in\/web\/?p=925704"},"modified":"2025-04-26T11:22:33","modified_gmt":"2025-04-26T05:52:33","slug":"billions-of-gmail-users-at-risk-developer-shares-email-that-he-says-exploits-vulnerability-in-googles-infrastructure-google-responds","status":"publish","type":"post","link":"https:\/\/telecomlive.in\/web\/2025\/04\/26\/billions-of-gmail-users-at-risk-developer-shares-email-that-he-says-exploits-vulnerability-in-googles-infrastructure-google-responds\/","title":{"rendered":"Billions of Gmail users at Risk: Developer shares email that he says &#8216;exploits vulnerability in Google\u2019s infrastructure&#8217;; Google responds"},"content":{"rendered":"<p>In a highly sophisticated phishing campaign, hackers are said to have successfully exploited Google\u2019s infrastructure to send deceptive emails that appear to come from a legitimate Google address to trick users into handing over their login credentials. The attack, brought to light recently by Nick Johnson, lead developer of the Ethereum Name Service (ENS), involved emails sent from no-reply@google.com that passed DomainKeys Identified Mail (DKIM) authentication &#8212; fooling Gmail into treating them as authentic security alerts.<\/p>\n<p>\u201cThese emails are valid, signed, and display no warnings in Gmail,\u201d Johnson said on X (formerly Twitter). \u201cThey appear in the same thread as real Google security alerts, making them even more convincing.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In a highly sophisticated phishing campaign, hackers are said to have successfully exploited Google\u2019s infrastructure to send deceptive emails that appear to come from a legitimate Google address to trick users into handing over their login credentials. The attack, brought to light recently by Nick Johnson, lead developer of the Ethereum Name Service (ENS), involved emails sent from no-reply@google.com that passed DomainKeys Identified Mail (DKIM) authentication &#8212; fooling Gmail into treating them as authentic security alerts. \u201cThese emails are valid, signed, and display no warnings in Gmail,\u201d Johnson said on X (formerly Twitter). \u201cThey appear in the same thread as [&hellip;]<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[87,4,11],"tags":[],"class_list":["post-925704","post","type-post","status-publish","format-standard","hentry","category-it-2-the-times-of-india","category-newspapers","category-the-times-of-india"],"acf":[],"_links":{"self":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/925704","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/comments?post=925704"}],"version-history":[{"count":0,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/925704\/revisions"}],"wp:attachment":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/media?parent=925704"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/categories?post=925704"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/tags?post=925704"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}