https://twitter.com/_larry0/status/1092861827296493568?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1092861827296493568&ref_url=https%3A%2F%2Fsecurityaffairs.co%2Fwordpress%2F80835%2Fcyber-crime%2Fgoogle-translate-phishing.html
- _larry0
When Google Translate is used, an email is sent from what appears to be Google, telling users their account was accessed from a new Windows device.
On the email, is a button for the user to 'Consult the Activity' to find out more information about the threat. If the user clicks on the link, it will take them to another page asking for their Google login.
If the user adds their login details, the page will then send them to the attackers via email. The hackers then use these credentials to launch a second phishing attack on the users Facebook account.
It has also been noted that the login page is an older version of the one Google now uses.
Cashdollar concluded that: "Some phishing attacks are more sophisticated than others. In this case, the attack was easily spotted the moment I checked the message on my computer in addition to seeing it on my mobile device. However, other, more clever attacks fool thousands of people daily, even IT and Security professionals."
He goes on to say that "The best defence is a good offence" and that it's important to check these messages carefully.