Phishing takes advantage of Google Search's site redirection feature
A new phishing campaign takes advantage of the ability to easily redirect Google Search web addresses to users.
Users will not doubt when clicking on links with Google domain. Security researchers come across phishing URLs that appear to be trustworthy and point to Google.
However, when analyzing these URLs, it is revealed that hackers have appended the parameters to automatically open HTTP redirection of Google Search. In this way, scammers try to redirect users to fraudulent, malicious websites.
In a recent blog post, Sophos revealed the URL format that appends to Google Search's open redirect parameters:
https://www.google.com/url?sa=t&url=[redacted]&usg=[redacted]
First, the URL looks reliable because it adds a link to Google. Experts often warn users to beware of suspicious links. But in this case, the user doesn't find anything malicious because the destination address is directed to Google. So users still click and ignore security warnings, and this is a security challenge. A few years ago, crooks also abused open navigation holes in Google Maps.
Security researchers also said Google does not consider open redirects to be a security issue. You may need a few notes below to ensure your safety when using the internet:
4 ★ | 4 Vote
You should read it
- Google will completely change how to sell Android smartphones
- Beware of Android scams!
- Google adds accessibility apps for people with disabilities
- The features on iOS 14 that Android should learn
- Identify popular online scams so as not to lose money unfairly
- Android devices will be 'stamped' trademarks
- 5 popular and preventive online shopping scams
- The Toyota subsidiary lost $ 37 million just after an online fraud campaign
- What's the latest version - what's Google's standout Android O Developer Preview?
- Coronavirus stimulus scams are here. How to identify these new online and text attacks
- 7 forms of fraud, popular online fraud
- 10 things to and should not do with Android devices
Maybe you are interested
How to Share Your Exact Location with Google Plus Codes
How to change the default font in Google Docs - Use the font of choice
Manifest V3 rollout to remove Google extensions is being pushed
More than 200 apps containing malicious code were discovered and downloaded millions of times on the Google Play Store.
How to Use Google Drive with Android File Manager
Kaspersky antivirus software suddenly disappears from Google Play Store